In this issue, November 5, 2024 View it in your browser.

PostgreSQL 17, Prompt Injections, Slack Chef Architecture, Cloudflare Workflows, OpenJDK News, .NET Aspire 9.0 RC1, Uber Copilot, gRPC Migration, Start-Up to Scale-Up, Strategic Thinking

QCon San Francisco 2024 (Nov 18-22). Final early bird pricing extended until November 15.

Learn from active senior practitioners driving innovation and change in software. Get the practical inspiration and best practices you need to implement emerging software trends directly from senior software developers at early adopter companies. Book before November 15 and save with early bird prices. Register now!

 

Sponsored by Scrum.org

Guide | Evidence-Based Management - Sponsored by Scrum.org

Guide | Evidence-Based Management

Many organizations have increased the value gained from software using the Scrum framework and Agile principles. Now, evidence-based management practices promise further gain. Learn more.

https://res.infoq.com/podcasts/generally-ai-do-robots-dream/en/smallimage/generally-ai-logo-small-100x100-1729513251317.jpg

Generally AI - Season 2 - Episode 5: Do Robots Dream of Electric Pianos?

Hosts discuss the use of simulation of both musical instruments and robots. They explore how software and sampling techniques allow musicians to replicate the sounds of real instruments and to design better pianos before manufacturing. They discuss how robot simulations allow testing code safely in virtual environments, avoiding costly or dangerous real-world consequences. (Podcast)

https://res.infoq.com/podcasts/philosophical-implications-technology/en/smallimage/engineering-culture-podcast-logo-1730194433787.jpeg

The Philosophical Implications of Technology: A Conversation with Anders Indset

In this podcast, Shane Hastie, Lead Editor for Culture & Methods spoke to Anders Indset, a Norwegian-born philosopher focusing on the implications of technology for humanity. (Podcast)

TOP AI, ML & Data Engineering NEWS HEADLINES

  1. PostgreSQL 17 Released with Improved Vacuum Process and Performance Gains

  2. Meta Spirit LM Integrates Speech and Text in New Multimodal GenAI Model

  3. PyTorch 2.5 Release Includes Support for Intel GPUs

  4. Rhymes AI Unveils Aria: Open-Source Multimodal Model with Development Resources

Manipulating the Machine: Prompt Injections and Countermeasures

Georg Dresler discusses various methods to perform prompt injection to extract system prompts and documents used by GPTs, and ways to integrate countermeasures to protect against stealing information. (Presentation with transcript included)

Poetry4Shellz – Avoiding Limerick Based Exploitation and Safely Using AI in Your Apps

Rich Smith provides a case study of a real world LLM based app that is vulnerable to a variety of attack vectors that illustrate the challenges to account for when integrating today's LLM technologies. (Presentation with transcript included)

Sponsored by Inngest

Hidden Costs of Traditional Queues: 5 Developer Challenges - Sponsored by Inngest

Hidden Costs of Traditional Queues: 5 Developer Challenges

Feeling stuck with queuing systems? Learn common pitfalls & solve them with Inngest. Gain durable execution, built-in observability & flexible workflows. Scale apps & streamline AI development—effortlessly. Learn more.

TOP DevOps NEWS HEADLINES

  1. Slack Evolves Chef Architecture for Safety and Stability

Cloudflare Overhauls Logging Pipeline with OpenTelemetry

Internet infrastructure and security company Cloudflare has documented how it significantly upgraded its logging pipeline by moving from syslog-ng to OpenTelemetry Collector. (News)

TOP Cloud NEWS HEADLINES

  1. Cloudflare Introduces Short-Lived SSH Access, Eliminating the Need for SSH Credentials

  2. Cloudflare Introduces Workflows for Building Scalable Resilient Multi-Step Applications

  3. Google Cloud Cost Attribution Solution to Enhance Cloud Cost Visibility

AWS Lambda Introduces a Visual Studio Code-Based Editor with Advanced Features and AI Integration

AWS Lambda's new console features a VS Code OSS-integrated editor, enhancing code editing with customizable settings and support for larger function packages. It includes a split-screen layout for simultaneous viewing of code and outputs, real-time log tracking, and AI-driven suggestions via Amazon Q Developer. (News)

Sponsored by DoiT

Generative AI on AWS - Sponsored by DoiT

Your must-have resource for building GenAI on AWS

Learn practical ways to apply GenAI to your business with this hands-on guide. Get Generative AI on AWS, compliments of the cloud experts at DoiT, today.

TOP Java NEWS HEADLINES

  1. Java News Roundup: Apache Pulsar 4.0, Jakarta EE 11, Open Liberty, Helidon, JHipster, Apache Camel

  2. OpenJDK News Roundup: Stream Gatherers, Scoped Values, Generational Shenandoah, ZGC Non-Gen Mode

Spring News Roundup: Release Candidates for Spring Boot, Security, Auth Server, Modulith

There was a flurry of activity in the Spring ecosystem during the week of October 21st, 2024, highlighting first release candidates of: Spring Boot, Spring Security, Spring Authorization Server, Spring Integration, Spring Modulith, Spring Batch, Spring AMQP, Spring for Apache Kafka and Spring for Apache Pulsar. (News)

TOP .NET NEWS HEADLINES

  1. .NET Aspire 9.0 RC1: Simplified Setup, Azure Functions Support Added, and Other Improvements

Central Package Management Now Available in .NET Upgrade Assistant

The .NET Upgrade Assistant team has recently introduced a significant upgrade: the Central Package Management (CPM) feature. This new capability enables .NET developers to manage dependencies more effectively, streamlining the upgrade process and maintaining consistency across various projects within a solution. (News)

TOP Architecture & Design NEWS HEADLINES

  1. RAG-Powered Copilot Saves Uber 13,000 Engineering Hours

Securing Cell-Based Architecture in Modern Applications

Securing cell-based architecture is essential to fully capitalize on its benefits while minimizing risks. To achieve this, comprehensive security measures must be put in place. Organizations can start by isolating and containing cells using sandbox environments and strict access control mechanisms like role-based and attribute-based access control. (Article)

gRPC Migration Automation at LinkedIn

Karthik Ramgopal and Min Chen discuss how LinkedIn changed the remote procedure calls (RPC) protocol for 50,000 production endpoints from Rest.li to Google's gRPC. (Presentation with transcript included)

TOP Culture & Methods NEWS HEADLINES

  1. Staying Innovative on a Journey from Start-Up to Scale-Up

Jump into the Demoscene: Where Logic, Creativity, and Artistic Expression Merge

The demoscene is a vibrant, creative subculture where you can use mathematics, algorithms, creativity, and a wee bit of chaos to express yourself. In this article, I want to inspire you to grab the opportunity to get your voice and vision on the table, and show you that the demoscene is not only for mathematical wizards. (Article)

Strategic Thinking for Staff+ Engineers

Shweta Saraf discusses a framework for developing strategic thinking at any career stage, with a special focus on Staff+ engineers. (Presentation with transcript included)

InfoQ Call for Contributors

Write for InfoQ: Share knowledge, connect with the global software development community, and grow your career

Are you an experienced senior software engineer or technical leader that is passionate about innovation, adoption of technologies, and the learning and sharing of knowledge with your peers?

InfoQ content is written exclusively by software practitioners like yourself, with the goal of sharing inspiring content from real-world use cases, best practices used by innovator and early adopter companies, and news on emerging trends.

Join the InfoQ Writing Team

SPONSORED CONTENT

Latest Sponsored Resources

document Designing Data Intensive Applications (By O'Reilly)

document Architecture Through Different Lenses

document Design a Resilient API Strategy with GraphQL

document The State of AI Report 2024 - In Production, Real Use Cases & The AI Stack