Blog
Insights, analysis, and updates from the AI agent economy. Browse by tag · Browse the archive.

AI-Linked Crypto Scams Extract 4.5× More Per Operation. Build a Defense That Doesn’t Depend on Spotting a Deepfake
AI-linked crypto scams extracted 4.5 times more revenue per operation in 2025. Here is a practical control map for stopping deepfake, identity, and payment fraud without betting everything on detection.

Aave's December Brand Vote: What the Numbers Show—and What They Cannot Prove
A source-led reconstruction of Aave's December 2025 brand vote separates the published result and $15M purchase statement from claims about wallet control, coordination, and intent.

Kubernetes v1.36 Deprecated Service ExternalIPs: A Bare-Metal PaaS Migration Plan Before v1.40
Kubernetes v1.36 deprecated Service externalIPs ahead of planned kube-proxy disablement in v1.40. Use this migration plan to replace insecure tenant-selected addresses with MetalLB, Gateway API, controlled routing, and tested rollback.

The $18.7B Bitcoin ETF Inflow That Wasn't: Q1 2026 Audited
Q1 2026 U.S. spot Bitcoin ETFs posted net outflows, not $18.7B of inflows. Fund flows and 13F filings show which professional cohorts bought and sold.

Four npm Compromises in 77 Days: A Build-Sandbox Blueprint for Self-Hosted PaaS
Axios, node-ipc, Red Hat, and Mastra expose why lockfiles alone fail—and how isolated builds, denied egress, script policy, and SBOMs contain poisoned dependencies.

Run GLM and Kimi Security Scans with Bex Security
Run GLM and Kimi security scans on a real codebase with Bex Security. Use one evidence-driven workflow for discovery, validation, remediation, and review.

Temps Wants to Fix Coolify and Dokploy: Why a 99.9% Reliable One-Box PaaS Still Isn't a Fleet
Temps arrived January 2026 promising 99.9% deployment reliability by fixing the bugs that plague Coolify and Dokploy. It's the latest polished one-box self-hoster in a crowded field — and the clearest proof that a more reliable single server is still a single server.

Native Histograms Hit Kubernetes 1.37: The ~10x Prometheus Shrink Your Self-Hosted Fleet Pays For in Disk
Classic histograms turn every latency metric into N+2 time series. Native histograms collapse that to one — a ~10x storage win landing in the Kubernetes 1.37 cycle. A worked recompute for a self-hosted PaaS fleet on Hetzner, plus the scrape-config migration that gets there without re-instrumenting.

Kubernetes 1.37 Will Brick Your Fleet on Upgrade Day: ipvs, Static Pods, and cgroup v1
Kubernetes 1.37 lands August 26 with three fleet-breaking changes hiding behind deprecation warnings — ipvs enters a removal clock, static Pods can no longer reference Secrets, and cgroup v1 nodes refuse to start without an override.
Subscribe
New posts land in your reader as soon as they publish. Pick a format — all three carry the same posts.
Current feeds keep roughly two days of posts so daily polling does not miss a burst. Older entries stay reachable from the feed's next-page link in readers that follow it, or from the blog archive.
Following one topic instead? Browse tags