Skip to main content

Practical DevOps, Cloud, AI & Linux engineering guides

Featured Article

GitLab's New Rate Limits: What to Fix Before Oct 19

GitLab is capping unauthenticated API calls at 60 an hour starting October 19, and the preview windows land before most teams will have noticed.

KU
Kiril UrbonasAI Engineer
|Oct 4, 2026
GitLab's New Rate Limits: What to Fix Before Oct 19

Most read

  1. 01
  2. 02
  3. 03
  4. 04
  5. 05

Topics

Latest Articles

View All →
A field-tested workflow for finding which process burns your CPU and whether the time is user, system, or iowait.
••2 months ago

Tracking Down High CPU on Linux

A field-tested workflow for finding which process burns your CPU and whether the time is user, system, or iowait.

KU
Kiril Urbonas·2 min read·51
Read article
Most API breaches aren't exotic exploits. They're missing authorization checks on endpoints that already require a login and a valid token.
••2 months ago

API Security Best Practices

Most API breaches aren't exotic exploits. They're missing authorization checks on endpoints that already require a login and a valid token.

KU
Kiril Urbonas·2 min read·24
Read article
A practical guide to defending against CSRF with SameSite cookies, synchronizer tokens, and double-submit, plus knowing when you don't need any of it.
••2 months ago

CSRF Protection Done Right

A practical guide to defending against CSRF with SameSite cookies, synchronizer tokens, and double-submit, plus knowing when you don't need any of it.

KU
Kiril Urbonas·3 min read·18
Read article
A practical guide to hashing passwords, adding MFA, hardening sessions, and avoiding the JWT mistakes that break production auth.
••2 months ago

Secure Authentication and Session Best Practices

A practical guide to hashing passwords, adding MFA, hardening sessions, and avoiding the JWT mistakes that break production auth.

KU
Kiril Urbonas·3 min read·25
Read article
The kernel killed your process to save the box, and the log looks like noise until you know exactly which fields to read.
••2 months ago

The Linux OOM Killer — Why It Fired and How to Prevent It

The kernel killed your process to save the box, and the log looks like noise until you know exactly which fields to read.

KU
Kiril Urbonas·2 min read·70
Read article
A practical method for reading free, top, and ps correctly so you attribute Linux memory to a real cause instead of guessing.
••2 months ago

Find What's Eating Your RAM on Linux

A practical method for reading free, top, and ps correctly so you attribute Linux memory to a real cause instead of guessing.

KU
Kiril Urbonas·2 min read·35
Read article
Load average counts more than CPU demand, so a high number needs a diagnostic path before you reach for a fix.
••2 months ago

Diagnosing High Load Average on Linux

Load average counts more than CPU demand, so a high number needs a diagnostic path before you reach for a fix.

KU
Kiril Urbonas·2 min read·39
Read article
A practical guide to stopping SQL injection with parameterized queries, ORM safety, least privilege, and layered defenses that actually hold up.
••2 months ago

How to Prevent SQL Injection (For Real)

A practical guide to stopping SQL injection with parameterized queries, ORM safety, least privilege, and layered defenses that actually hold up.

KU
Kiril Urbonas·2 min read·31
Read article
A working engineer's tour of the OWASP Top 10, each risk paired with the concrete fix that actually closes it in production.
••2 months ago

The OWASP Top 10 Explained (With Fixes)

A working engineer's tour of the OWASP Top 10, each risk paired with the concrete fix that actually closes it in production.

KU
Kiril Urbonas·2 min read·19
Read article
A practical guide to stopping XSS through contextual output encoding, framework escaping, sanitization, CSP, and Trusted Types.
••2 months ago

How to Prevent XSS (Cross-Site Scripting)

A practical guide to stopping XSS through contextual output encoding, framework escaping, sanitization, CSP, and Trusted Types.

KU
Kiril Urbonas·2 min read·22
Read article
A production-focused CircleCI guide: orbs, reusable commands and executors, workflows with fan-in/fan-out, contexts and OIDC for secrets, layered caching, test splitting, approval jobs, and dynamic config — with copy-paste examples.
••2 months ago

CircleCI Best Practices in 2026: Fast, Safe Pipelines

A production-focused CircleCI guide: orbs, reusable commands and executors, workflows with fan-in/fan-out, contexts and OIDC for secrets, layered caching, test splitting, approval jobs, and dynamic config — with copy-paste examples.

KU
Kiril Urbonas·4 min read·12
Read article
A field guide to reclaiming Linux disk space when df reports full but du can't find where the bytes actually went.
••2 months ago

Fix "No Space Left on Device" When df and du Disagree

A field guide to reclaiming Linux disk space when df reports full but du can't find where the bytes actually went.

KU
Kiril Urbonas·2 min read·49
Read article
Page 13 of 47 · 559 posts