Security firm Edera discovered a critical logic vulnerability, dubbed TARmageddon (CVE-2025-62518), in the tokio-tar library that allows attackers to “smuggle” malicious files into nested TAR archives, posing a risk to applications like Python’s uv package manager. Technology journalist Steven J. Vaughan-Nichols writes that the flaw shows even Rust’s memory-safety guarantees do not prevent logic bugs.
Sudden write stalls were causing unpredictable performance in TiKV. Learn how we boosted performance and predictability under load.
TiKV is an open source, distributed and transactional key-value database. Growing applications demand consistent performance, and unexpected write latency spikes, especially during Sorted String Table (SST) file ingestion, were hurting predictability in TiKV. Yet we found...
From Friction to Flow: Shifting How Developers Leverage Observability
In this live webinar, Dynatrace will join The New Stack to explore how AI-powered observability transforms the developer experience from friction-filled to flow-driven. You’ll walk away with practical insights to simplify workflows, accelerate innovation, and unlock developer productivity.
If we secure the infrastructure powering AI with the same discipline we apply to cloud, we can stay ahead of risk while keeping innovation moving fast.
In this article, Darryl breaks down the Feds' stance on C/C++: using memory-unsafe languages in new critical infrastructure software is now labeled a dangerous "bad practice."
Kubernetes: From a Federation of Bazaars to the AI Frontier
The platform we built together is more than just code. It is a robust, open and evolving foundation for the next generation of intelligent applications.