Find published dossiers by topic, company, product or technology.

Showing 221–240 of 275 dossiers

OpenSSH 10.6 turns on hybrid post-quantum signatures and disables compression to cut side-channel risk

The release is more than routine maintenance. OpenSSH is changing cryptographic defaults, sacrificing some compression effectiveness for side-channel safety, and warning that AI-assisted security reports are pushing it toward a faster release cadence.

X has replaced Creator Revenue Sharing with Original Content Rewards — and U.S. payouts now require X Money

X’s replacement creator program is now live enough to expose a new dependency: U.S. creators must route Original Content Rewards payouts through X Money, and one X Money account can connect to only one X account. Eligibility and qualified-impression rules remain unchanged.

Amazon joins YouTube Shopping so creators can tag products instead of relying on description links

The integration brings Amazon’s catalog into YouTube’s native shopping layer. It reduces the gap between product recommendation and purchase compared with description links, but access currently requires both YouTube and Amazon affiliate eligibility and is still limited to a select group of creators.

Cloudflare Containers exposed previous tenants’ disk data through unzeroed blocks

This was not a Firecracker escape or access to a live victim disk. It was a storage-isolation failure underneath the sandbox: researchers recovered foreign directory structures, database pages and complete SQLite databases from reused blocks, and Cloudflare had to fix allocation plus retire existing disks and cached snapshots.

Railway makes MySQL automatic failover generally available with Group Replication and HAProxy

Railway’s managed MySQL path can now gain automatic failover without rebuilding the database elsewhere. The trade-off is real operational complexity: conversion briefly drops connections, hard-coded URLs need manual repair, replicas are for failover rather than read scaling, and each extra database/proxy node consumes billable resources.

Railway has stopped new services adopting Config as Code ahead of the December 1 hard cutoff

The August 28 transition is now active, and Railway’s current documentation removes an earlier ambiguity about new services in existing projects. Config as Code is legacy-only from here; production users should migrate and validate `.railway/railway.ts` before the December hard cutoff.