2023/05/03 - Latest Engineering Blogs
This newsletter collects 6 latest engineering blogs from Facebook, Spotify, Uber, Databricks, Pinterest and Netflix. You also can go to https://www.techblogsearch.dev/ to search engineering blogs from different IT companies.
[Facebook] [2023/05/03] The malware threat landscape: NodeStealer, DuckTail, and more
[Spotify] [2023/05/03] Fleet Management at Spotify (Part 2): The Path to Declarative Infrastructure
[Uber] [2023/05/03] Bootstrapping Uber’s Infrastructure on arm64 with Zig
[Databricks] [2023/05/02] Securing Databricks cluster init scripts
[Pinterest] [2023/05/02] Large-scale User Sequences at Pinterest
[Netflix] [2023/04/27] Improved Alerting with Atlas Streaming Eval
[Facebook] [2023/05/03] The malware threat landscape: NodeStealer, DuckTail, and more
TL; DR
Problem. Detecting and disrupting malware campaigns targeting business users is a never ending battle in Meta’s security team.
Solution. This blog shared the latest research and technical analysis on fighting malware campaigns (like Ducktail, NodeStealer and newer malware posing as ChatGPT) at Meta.
[Spotify] [2023/05/03] Fleet Management at Spotify (Part 2): The Path to Declarative Infrastructure
TL; DR
Problem. Spotify is looking for a new solution to control all infrastructure, and depart from the host-oriented configuration management of the past.
Solution. This blog proposed a declarative infrastructure paradigm to evolve Spotify’s infrastructure platform’s configuration management and control plane approach, allowing engineers to manage hundreds of thousands of cloud resources at scale.
[Uber] [2023/05/03] Bootstrapping Uber’s Infrastructure on arm64 with Zig
TL; DR
Problem. Uber engineers wanted to evaluate arm64 for services written in either Go or Java.
Solution. The blog described a C++ toolchain powered by zig for both server architectures (x86_64 and arm64) that Uber uses for production code.
[Databricks] [2023/05/02] Securing Databricks cluster init scripts
TL; DR
Problem. At the end of January 2023, Databricks received a report about a potential privilege escalation issue that may allow an authenticated, low-privileged user of a cluster to elevate privileges and gain admin-level access to other clusters within the boundary of the same workspace and organization.
Solution. Databricks accelerated the sunsetting of certain deprecated legacy features (legacy global init scripts) and the adoption of a new feature, workspace files.
[Pinterest] [2023/05/02] Large-scale User Sequences at Pinterest
TL; DR
Problem. Understanding and responding to user actions and preferences is critical to Pinterest delivering a personalized, high quality user experience.
Solution: This blog discussed an initiative across multiple teams to build a new large-scale, highly-flexible, and cost-efficient user signal platform service, which indexes the relevant user events in near real-time, constructs them into user sequences, and makes it super easy to use both for online service requests and for ML training & inferences.
[Netflix] [2023/04/27] Improved Alerting with Atlas Streaming Eval
TL; DR
Problem. Netflix’s Engineers want their alerting system to be realtime, reliable, and actionable. Reliability is the most important for the alerting system.
Solution. Netflix evaluates alerts via real-time streaming metrics.
If you have any questions or comments, please contact plussmart2018@gmail.com.