並び順

ブックマーク数

期間指定

  • から
  • まで

1 - 11 件 / 11件

新着順 人気順

postmortemの検索結果1 - 11 件 / 11件

タグ検索の該当結果が少ないため、タイトル検索結果を表示しています。

postmortemに関するエントリは11件あります。 セキュリティsecurityポストモーテム などが関連タグです。 人気エントリには 『A postmortem of three recent issues』などがあります。
  • A postmortem of three recent issues

    Published Sep 17, 2025 This is a technical report on three bugs that intermittently degraded responses from Claude. Below we explain what happened, why it took time to fix, and what we're changing. Between August and early September, three infrastructure bugs intermittently degraded Claude's response quality. We've now resolved these issues and want to explain what happened. In early August, a num

      A postmortem of three recent issues
    • ポストモーテムの基礎知識と最新事例 / Fundamentals of Postmortem

      2023/10/20 ゆるSRE勉強会 #2 https://yuru-sre.connpass.com/event/293783/

        ポストモーテムの基礎知識と最新事例 / Fundamentals of Postmortem
      • Postmortem: TanStack npm supply-chain compromise | TanStack Blog

        by Tanner Linsley on May 11, 2026. Status (2026-05-15): All clear ✅ After a three-day full security sweep and hardening pass, we're issuing an official all-clear on TanStack repo and package security. Only the Router/Start repo was affected — 42 monorepo packages, 2 versions each. All were deprecated within the hour and removed by npm shortly after. All other TanStack repos and packages were unaff

          Postmortem: TanStack npm supply-chain compromise | TanStack Blog
        • builderscon 2025 Postmortem - builderscon::blog

          10月4日のbuilderscon 2025の開催に向けて準備を進めていましたが、2025年9月12日、中止を決定しました。 ご支援いただきましたスポンサー、個人スポンサーの皆様、登壇者の皆様、プロポーザルを出していただいた皆様、そして参加者の皆様のご期待に沿えず、大変申し訳ありません。 大きな原因として主催者の一身上の都合がありました。予定通りに活動をできなかった結果として、企画、告知、チケットの販売、スポンサーへの連絡を含むすべての対応が大きく遅れました。 開催中止となるとスポンサーや登壇者、参加者の皆さんにも大きなご迷惑をおかけすることとなるため、開催を前提にスタッフと議論および調整を進めましたが、開催を決行した場合に大きなマイナス収支が見込まれること、見込み参加者数がスポンサーや登壇者を募集した際の資料に記載した参加者数に対して大きく未達となることなどから総合的に検討し、最終的に開

            builderscon 2025 Postmortem - builderscon::blog
          • 組織に失敗学でPostmortem文化の定着を試みた話 - 電通総研 テックブログ

            これは電通国際情報サービス アドベントカレンダーの12日目の記事です。 こんにちは。電通国際情報サービス 金融ソリューション事業部 石沢です。 本記事は当部門で5年ほど前から継続している組織としてのPostmortem(ポストモーテム)活動「失敗学」をご紹介します。様々な用語で類似の活動をされている組織も多いと思いますが、良きシステム開発を実施するためのヒントとなれば幸いです。 Postmortem(トラブル事後分析)文化について Postmortemは直訳すると検死解剖ですが、システム開発の文脈では現在「トラブルの事後分析」という意味で使われています。有名なところでは サイトリライアビリティエンジニアリング The DevOps ハンドブック 理論・原則・実践のすべて 他多数の書籍で紹介されている概念です。 簡単にいうと、 システムやサービスにおいて発生したインシデント(障害等)の対応が

              組織に失敗学でPostmortem文化の定着を試みた話 - 電通総研 テックブログ
            • Axiosサプライチェーン攻撃の手口をPostmortemで読んだら、まるでルパン三世だった - Qiita

              影響バージョン:axios@1.14.1 と axios@0.30.4 axios本体のコードは一切変更なし。package.jsonに偽の依存パッケージを1行追加しただけ その偽パッケージのpostinstallスクリプトがRAT(遠隔操作マルウェア)を展開する仕組み 検知から削除まで約3時間 3時間で対応できたのはコミュニティの力ですが、逆にいえば3時間は世界中でnpm installが走っていたわけです。 侵入方法 ここがルパン三世だなと思ったところ。 ① 2週間かけて仮面をつくる 実在する会社の創業者を完全に偽装(顔写真・ロゴ・LinkedIn投稿をコピー) 本物そっくりのSlackワークスペースを作成(CI/CDツール名までブランド化) ワークスペース内に偽のチームメンバーを配置(他のOSSメンテナーの偽プロフィールまで用意) メンテナー本人の証言: they reached o

                Axiosサプライチェーン攻撃の手口をPostmortemで読んだら、まるでルパン三世だった - Qiita
              • Postmortem on Next.js Middleware bypass

                Last week, we published CVE-2025-29927 and patched a critical severity vulnerability in Next.js. Here’s our post-incident analysis and next steps. Copy link to headingTimelineCopy link to heading2025-02-27On 27 Feb 2025 06:03:00 GMT, the vulnerability was disclosed to the Next.js team through GitHub private reporting. The researchers also emailed security@vercel.com. The initial report disclosed t

                  Postmortem on Next.js Middleware bypass
                • Postmortem: Nx Console v18.95.0 supply-chain compromise | Nx Blog

                  :first-child]:mt-0 [&>:last-child]:mb-0">The malicious version of Nx Console (v18.95.0) is no longer available from any marketplace.The current published version, v18.100.5, and all versions since v18.100.0, are safe.Anyone who installed v18.95.0 during the exposure window (2026-05-18, 12:30-13:09 UTC) should treat their machine as compromised and rotate credentials.The compromise originated from

                    Postmortem: Nx Console v18.95.0 supply-chain compromise | Nx Blog
                  • ポストモーテム運用を支える文化と技術 / Culture and Technology Supporting Postmortem Operations

                    https://findy.connpass.com/event/273197/

                      ポストモーテム運用を支える文化と技術 / Culture and Technology Supporting Postmortem Operations
                    • nrb2026/POSTMORTEM.md at main · KOBA789/nrb2026

                      Claude Code (Opus 4.7, 1M context) — 主ドライバ。作問期間中に 53 個の主セッション + 10 個の worktree セッションを記録している。 Codex CLI (OpenAI) — smart-friend という skill 経由で呼び出す「セカンドオピニオン」 係。CLAUDE.md にレビューを必須としている (後述)。 superpowers plugin (claude-plugins-official) — brainstorming / writing-plans / subagent-driven-development / using-git-worktrees / requesting-code-review 等の skill バンドル。docs ブートストラップの 2 日間 (5/5〜5/6) は brainstormin

                        nrb2026/POSTMORTEM.md at main · KOBA789/nrb2026
                      • This shouldn't have happened: A vulnerability postmortem

                        Posted by Tavis Ormandy, Project Zero Introduction This is an unusual blog post. I normally write posts to highlight some hidden attack surface or interesting complex vulnerability class. This time, I want to talk about a vulnerability that is neither of those things. The striking thing about this vulnerability is just how simple it is. This should have been caught earlier, and I want to explore w

                          This shouldn't have happened: A vulnerability postmortem
                        1

                        新着記事