# virtualization

Virtualization is the creation of software-based abstractions of physical computing resources, enabling them to be partitioned, pooled, and shared across isolated environments such as virtual machines and containers.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## First VMmark 4.1 Power-Performance and VMware Cloud Foundation 9.1 Results

DevFeed: [First VMmark 4.1 Power-Performance and VMware Cloud Foundation 9.1 Results](<https://devfeed.tech/articles/first-vmmark-4-1-power-performance-and-vmware-cloud-foundation-9-1-results-31416.md>)

Original publisher: [Read original article](<https://blogs.vmware.com/cloud-foundation/2026/09/16/first-vmmark-4-1-power-performance-and-vcf-9-1-results/>)

Author: vmwareblogs

Published: 2026-09-16T18:20:25Z

Content type: release

Language: en

Sources: [VMware Blogs](<https://devfeed.tech/sources/vmware-blogs.md>)

Topics: [vcf 9.1](<https://devfeed.tech/topics/vcf-9-1.md>), [benchmarking](<https://devfeed.tech/topics/benchmarking.md>), [Benchmark](<https://devfeed.tech/topics/benchmark.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [Hardware](<https://devfeed.tech/topics/hardware.md>)

Tags: [benchmarking](<https://devfeed.tech/tags/benchmarking.md>), [benchmarks](<https://devfeed.tech/tags/benchmarks.md>), [cloud-infrastructure](<https://devfeed.tech/tags/cloud-infrastructure.md>), [dell](<https://devfeed.tech/tags/dell.md>), [efficiency](<https://devfeed.tech/tags/efficiency.md>), [home-page](<https://devfeed.tech/tags/home-page.md>), [performance](<https://devfeed.tech/tags/performance.md>), [vcf-9-1](<https://devfeed.tech/tags/vcf-9-1.md>), [vmmark](<https://devfeed.tech/tags/vmmark.md>), [vmware](<https://devfeed.tech/tags/vmware.md>), [vmware-cloud-foundation](<https://devfeed.tech/tags/vmware-cloud-foundation.md>), [vsphere](<https://devfeed.tech/tags/vsphere.md>), [vsphere-9-1](<https://devfeed.tech/tags/vsphere-9-1.md>)

### AI overview

VMware reports Dell Technologies benchmark results using VMware Cloud Foundation 9.1 and VMmark 4.1. The article describes VMmark 4.1's power-performance measurement and reports higher performance and tile count for VCF 9.1 than VCF 5.2 in the tested environment.

### Source excerpt

We're excited to announce two new VMmark results today from Dell Technologies: First VCF 9.1 Benchmarks: These are the first results using VMware Cloud Foundation (VCF) 9.1. VCF 9.1 maximizes hardware efficiency using a Next-Gen Topology-Aware CPU Scheduler that optimizes memory and cache locality for intensive enterprise workloads. A separate VCF 9.1 evaluation demonstrated a ... Continued The post First VMmark 4.1 Power-Performance and VMware Cloud Foundation 9.1 Results appeared first on VMware Blogs.

## TrueNAS Releases a Native Proxmox VE Plugin for Managing VM Storage

DevFeed: [TrueNAS Releases a Native Proxmox VE Plugin for Managing VM Storage](<https://devfeed.tech/articles/truenas-just-fixed-one-of-proxmox-s-biggest-storage-headaches-31456.md>)

Original publisher: [Read original article](<https://www.virtualizationhowto.com/2026/09/truenas-just-fixed-one-of-proxmoxs-biggest-storage-headaches/>)

Author: Brandon Lee

Published: 2026-09-16T13:40:55Z

Content type: article

Language: en

Sources: [Virtualization Howto](<https://devfeed.tech/sources/virtualization-howto.md>)

Topics: [truenas](<https://devfeed.tech/topics/truenas.md>), [Proxmox](<https://devfeed.tech/topics/proxmox.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [NVMe](<https://devfeed.tech/topics/nvme.md>)

Tags: [bug](<https://devfeed.tech/tags/bug.md>), [home-lab](<https://devfeed.tech/tags/home-lab.md>), [home-server](<https://devfeed.tech/tags/home-server.md>), [nvme](<https://devfeed.tech/tags/nvme.md>), [proxmox](<https://devfeed.tech/tags/proxmox.md>), [release](<https://devfeed.tech/tags/release.md>), [testing](<https://devfeed.tech/tags/testing.md>), [truenas](<https://devfeed.tech/tags/truenas.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>), [zfs](<https://devfeed.tech/tags/zfs.md>)

### AI overview

TrueNAS released an official Proxmox VE storage plugin that lets administrators provision and manage TrueNAS-backed VM disks through Proxmox workflows. The plugin supports iSCSI, NVMe over TCP, and OpenZFS snapshots, but the article describes it as an early-adopter release that is not yet recommended for production workloads.

### Source excerpt

It really feels like Proxmox is on fire lately with announcements and momentum behind the solution. We just came off the heels of Proxmox announcing they were bringing on 24x7... The post TrueNAS Just Fixed One of Proxmox's Biggest Storage Headaches appeared first on Virtualization Howto.

## AMD Sends Out Linux Patches For Enabling SEV-TIO TDISP With PCIe 6.0

DevFeed: [AMD Sends Out Linux Patches For Enabling SEV-TIO TDISP With PCIe 6.0](<https://devfeed.tech/articles/amd-sends-out-linux-patches-for-enabling-sev-tio-tdisp-with-pcie-6-0-31406.md>)

Original publisher: [Read original article](<https://www.phoronix.com/news/AMD-SEV-TIO-TDISP-Linux-Patches>)

Author: Michael Larabel

Published: 2026-09-16T13:02:52Z

Content type: news

Language: en

Sources: [Phoronix](<https://devfeed.tech/sources/phoronix.md>)

Topics: [Linux Kernel](<https://devfeed.tech/topics/linux-kernel.md>), [pcie](<https://devfeed.tech/topics/pcie.md>), [trusted-execution-environment](<https://devfeed.tech/topics/trusted-execution-environment.md>), [Confidential Computing](<https://devfeed.tech/topics/confidential-computing.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [Security](<https://devfeed.tech/topics/security.md>), [Encryption](<https://devfeed.tech/topics/encryption.md>), [MERN](<https://devfeed.tech/topics/mern.md>)

Tags: [amd](<https://devfeed.tech/tags/amd.md>), [arm](<https://devfeed.tech/tags/arm.md>), [attestation](<https://devfeed.tech/tags/attestation.md>), [confidential-computing](<https://devfeed.tech/tags/confidential-computing.md>), [cpu](<https://devfeed.tech/tags/cpu.md>), [desktop-linux](<https://devfeed.tech/tags/desktop-linux.md>), [encryption](<https://devfeed.tech/tags/encryption.md>), [intel](<https://devfeed.tech/tags/intel.md>), [kernel](<https://devfeed.tech/tags/kernel.md>), [linux](<https://devfeed.tech/tags/linux.md>), [linux-benchmarking](<https://devfeed.tech/tags/linux-benchmarking.md>), [linux-hardware-benchmarks](<https://devfeed.tech/tags/linux-hardware-benchmarks.md>), [linux-hardware-reviews](<https://devfeed.tech/tags/linux-hardware-reviews.md>), [linux-how-to](<https://devfeed.tech/tags/linux-how-to.md>), [linux-kernel](<https://devfeed.tech/tags/linux-kernel.md>), [linux-performance](<https://devfeed.tech/tags/linux-performance.md>), [linux-server-benchmarks](<https://devfeed.tech/tags/linux-server-benchmarks.md>), [open-source-graphics](<https://devfeed.tech/tags/open-source-graphics.md>), [pcie](<https://devfeed.tech/tags/pcie.md>), [phoronix](<https://devfeed.tech/tags/phoronix.md>), [phoronix-test-suite](<https://devfeed.tech/tags/phoronix-test-suite.md>), [processors](<https://devfeed.tech/tags/processors.md>), [risc-v](<https://devfeed.tech/tags/risc-v.md>), [security](<https://devfeed.tech/tags/security.md>), [ubuntu-benchmarks](<https://devfeed.tech/tags/ubuntu-benchmarks.md>), [ubuntu-hardware](<https://devfeed.tech/tags/ubuntu-hardware.md>)

### AI overview

AMD submitted 17 Linux kernel patches to enable SEV-TIO TDISP for PCIe 6.0 and newer. The work is intended to secure direct I/O device assignment for confidential-computing environments, including AMD Secure Encrypted Virtualization guest VMs, and includes a common TEE Security Manager developed with Intel, Arm, and RISC-V.

### Source excerpt

The newest Linux kernel patches out of AMD for enhancing the upstream support with the new AMD EPYC 9006 "Venice" processors is for enabling SEV-TIO TDISP that is supported with PCI Express 6.0 and beyond...

## I Turned My Proxmox Server Into a NAS Without Installing TrueNAS

DevFeed: [I Turned My Proxmox Server Into a NAS Without Installing TrueNAS](<https://devfeed.tech/articles/i-turned-my-proxmox-server-into-a-nas-without-installing-truenas-10492.md>)

Original publisher: [Read original article](<https://www.virtualizationhowto.com/2026/09/i-turned-my-proxmox-server-into-a-nas-without-installing-truenas/>)

Author: Brandon Lee

Published: 2026-09-10T12:46:18Z

Content type: article

Language: en

Sources: [Virtualization Howto](<https://devfeed.tech/sources/virtualization-howto.md>)

Topics: [Proxmox](<https://devfeed.tech/topics/proxmox.md>), [Homelab](<https://devfeed.tech/topics/homelab.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [hosting](<https://devfeed.tech/topics/hosting.md>), [Linux](<https://devfeed.tech/topics/linux.md>), [Debian](<https://devfeed.tech/topics/debian.md>)

Tags: [ceph](<https://devfeed.tech/tags/ceph.md>), [debian](<https://devfeed.tech/tags/debian.md>), [home-lab](<https://devfeed.tech/tags/home-lab.md>), [home-server](<https://devfeed.tech/tags/home-server.md>), [hosting](<https://devfeed.tech/tags/hosting.md>), [linux](<https://devfeed.tech/tags/linux.md>), [nas](<https://devfeed.tech/tags/nas.md>), [proxmox](<https://devfeed.tech/tags/proxmox.md>), [self-hosted](<https://devfeed.tech/tags/self-hosted.md>), [self-hosting](<https://devfeed.tech/tags/self-hosting.md>), [server](<https://devfeed.tech/tags/server.md>), [storage](<https://devfeed.tech/tags/storage.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

The article presents ANAS, a project that adds native storage-management panels to the existing Proxmox VE web interface. It aims to let Proxmox manage storage using the underlying Debian/Linux capabilities without installing TrueNAS or introducing a separate management interface.

### Source excerpt

Proxmox is really good with all types of storage and I have used it as a dedicated NAS appliance many times. I have used dedicated NAS devices. I have also... The post I Turned My Proxmox Server Into a NAS Without Installing TrueNAS appeared first on Virtualization Howto.

## QNAP TVS-hx77AX Brings NFS over RDMA and U.2 NVMe to Desktop ZFS NAS

DevFeed: [QNAP TVS-hx77AX Brings NFS over RDMA and U.2 NVMe to Desktop ZFS NAS](<https://devfeed.tech/articles/qnap-tvs-hx77ax-brings-nfs-over-rdma-and-u-2-nvme-to-desktop-zfs-nas-12374.md>)

Original publisher: [Read original article](<https://www.storagereview.com/news/qnap-tvs-hx77ax-brings-nfs-over-rdma-and-u-2-nvme-to-desktop-zfs-nas>)

Author: Lyle Smith

Published: 2026-09-09T17:18:09Z

Content type: news

Language: en

Sources: [StorageReview.com](<https://devfeed.tech/sources/storagereview-com.md>)

Topics: [systems](<https://devfeed.tech/topics/systems.md>), [networking](<https://devfeed.tech/topics/networking.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [cpu](<https://devfeed.tech/topics/cpu.md>), [Network](<https://devfeed.tech/topics/network.md>), [GPU](<https://devfeed.tech/topics/gpu.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>)

Tags: [10gbase-t](<https://devfeed.tech/tags/10gbase-t.md>), [2-5gbe](<https://devfeed.tech/tags/2-5gbe.md>), [amd](<https://devfeed.tech/tags/amd.md>), [cpu](<https://devfeed.tech/tags/cpu.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [gpu](<https://devfeed.tech/tags/gpu.md>), [medium-nas](<https://devfeed.tech/tags/medium-nas.md>), [memory](<https://devfeed.tech/tags/memory.md>), [nas](<https://devfeed.tech/tags/nas.md>), [networking](<https://devfeed.tech/tags/networking.md>), [nvme](<https://devfeed.tech/tags/nvme.md>), [pcie](<https://devfeed.tech/tags/pcie.md>), [qnap](<https://devfeed.tech/tags/qnap.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

QNAP introduced the TVS-hx77AX series of desktop ZFS NAS systems, combining AMD Ryzen 7000 processors, DDR5 memory, U.2 NVMe storage, and NFS over RDMA. The 16-, 12-, and 8-bay models target video collaboration, virtualization, and small-scale AI workloads.

### Source excerpt

QNAP has introduced the TVS-hx77AX series, a new line of desktop ZFS NAS systems combining AMD Ryzen 7000 series processors with DDR5 memory, U.2 NVMe storage, and NFS over RDMA support. The family includes the 16-bay TVS-h1677AX, 12-bay TVS-h1277AX, and 8-bay TVS-h877AX, and QNAP is aiming all three at video collaboration, virtualization, and small-scale AI The post QNAP TVS-hx77AX Brings NFS over RDMA and U.2 NVMe to Desktop ZFS NAS appeared first on StorageReview.com.

## Using Proxmox Resource Mappings for GPU Passthrough Across Cluster Nodes

DevFeed: [Using Proxmox Resource Mappings for GPU Passthrough Across Cluster Nodes](<https://devfeed.tech/articles/i-changed-how-i-do-gpu-passthrough-in-proxmox-after-finding-this-feature-10488.md>)

Original publisher: [Read original article](<https://www.virtualizationhowto.com/2026/09/i-changed-how-i-do-gpu-passthrough-in-proxmox-after-finding-this-feature/>)

Author: Brandon Lee

Published: 2026-09-09T12:43:14Z

Content type: tutorial

Language: en

Sources: [Virtualization Howto](<https://devfeed.tech/sources/virtualization-howto.md>)

Topics: [Proxmox](<https://devfeed.tech/topics/proxmox.md>), [Homelab](<https://devfeed.tech/topics/homelab.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [configuration](<https://devfeed.tech/topics/configuration.md>), [Hardware](<https://devfeed.tech/topics/hardware.md>)

Tags: [configuration](<https://devfeed.tech/tags/configuration.md>), [hardware](<https://devfeed.tech/tags/hardware.md>), [home-lab](<https://devfeed.tech/tags/home-lab.md>), [home-server](<https://devfeed.tech/tags/home-server.md>), [proxmox](<https://devfeed.tech/tags/proxmox.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

This tutorial explains how Proxmox Resource Mappings can represent passthrough hardware as logical resources across cluster nodes. It contrasts this approach with assigning a VM a fixed PCI address, which may fail when the VM moves to a node where the device has a different address.

### Source excerpt

Many home labbers are starting to experiment with AI in the home lab and are using things like GPU passthrough on their Proxmox hosts. But passthrough is not just something... The post I Changed How I Do GPU Passthrough in Proxmox After Finding This Feature appeared first on Virtualization Howto.

## I Was Running Redundant VMs on the Same Proxmox Host Without Realizing It

DevFeed: [I Was Running Redundant VMs on the Same Proxmox Host Without Realizing It](<https://devfeed.tech/articles/i-was-running-redundant-vms-on-the-same-proxmox-host-without-realizing-it-10493.md>)

Original publisher: [Read original article](<https://www.virtualizationhowto.com/2026/09/i-was-running-redundant-vms-on-the-same-proxmox-host-without-realizing-it/>)

Author: Brandon Lee

Published: 2026-09-08T12:19:53Z

Content type: opinion

Language: en

Sources: [Virtualization Howto](<https://devfeed.tech/sources/virtualization-howto.md>)

Topics: [Proxmox](<https://devfeed.tech/topics/proxmox.md>), [Homelab](<https://devfeed.tech/topics/homelab.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [systems](<https://devfeed.tech/topics/systems.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [home-lab](<https://devfeed.tech/tags/home-lab.md>), [proxmox](<https://devfeed.tech/tags/proxmox.md>), [server](<https://devfeed.tech/tags/server.md>), [servers](<https://devfeed.tech/tags/servers.md>), [systems](<https://devfeed.tech/tags/systems.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

The article describes discovering that two supposedly redundant VMs were running on the same Proxmox host. It explains how shared failure domains can make apparently resilient home-lab architectures fail together and recommends auditing workload placement across hosts and dependencies.

### Source excerpt

If you have spent a lot of time over the years building redundancy into your home lab, you probably have looked at many of the same layers that I have.... The post I Was Running Redundant VMs on the Same Proxmox Host Without Realizing It appeared first on Virtualization Howto.

## Leaving VMware Just Got Harder After Broadcom Pulled VDDK Downloads

DevFeed: [Leaving VMware Just Got Harder After Broadcom Pulled VDDK Downloads](<https://devfeed.tech/articles/leaving-vmware-just-got-harder-after-broadcom-pulled-vddk-downloads-10495.md>)

Original publisher: [Read original article](<https://www.virtualizationhowto.com/2026/09/leaving-vmware-just-got-harder-after-broadcom-pulled-vddk-downloads/>)

Author: Brandon Lee

Published: 2026-09-07T12:07:37Z

Content type: news

Language: en

Sources: [Virtualization Howto](<https://devfeed.tech/sources/virtualization-howto.md>)

Topics: [virtualization](<https://devfeed.tech/topics/virtualization.md>), [migration](<https://devfeed.tech/topics/migration.md>), [Azure](<https://devfeed.tech/topics/azure.md>), [SDKs](<https://devfeed.tech/topics/sdks.md>), [Microsoft](<https://devfeed.tech/topics/microsoft.md>)

Tags: [azure](<https://devfeed.tech/tags/azure.md>), [developer](<https://devfeed.tech/tags/developer.md>), [home-lab](<https://devfeed.tech/tags/home-lab.md>), [home-server](<https://devfeed.tech/tags/home-server.md>), [microsoft](<https://devfeed.tech/tags/microsoft.md>), [migration](<https://devfeed.tech/tags/migration.md>), [proxmox](<https://devfeed.tech/tags/proxmox.md>), [tool](<https://devfeed.tech/tags/tool.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>), [vmware](<https://devfeed.tech/tags/vmware.md>)

### AI overview

Broadcom has removed public download access to VMware's Virtual Disk Development Kit (VDDK), creating a potential obstacle for customers migrating away from VMware. The library is used by migration tools including Microsoft Azure Migrate, Red Hat's Migration Toolkit, Nutanix Move, VMware-to-KVM products, virt-v2v, and nbdkit. The article notes that affected links return errors and that no formal transition notice, deprecation announcement, or replacement has been identified.

### Source excerpt

Just when we thought that Broadcom wouldn't be able to slow down customers moving off of vSphere to another platform. They may just now have done something that will have... The post Leaving VMware Just Got Harder After Broadcom Pulled VDDK Downloads appeared first on Virtualization Howto.

## 7 Weekend Projects That Make Your Home Lab Less Dependent on You

DevFeed: [7 Weekend Projects That Make Your Home Lab Less Dependent on You](<https://devfeed.tech/articles/7-weekend-projects-that-make-your-home-lab-less-dependent-on-you-10487.md>)

Original publisher: [Read original article](<https://www.virtualizationhowto.com/2026/09/7-weekend-projects-that-make-your-home-lab-less-dependent-on-you/>)

Author: Brandon Lee

Published: 2026-09-06T12:32:10Z

Content type: article

Language: en

Sources: [Virtualization Howto](<https://devfeed.tech/sources/virtualization-howto.md>)

Topics: [Homelab](<https://devfeed.tech/topics/homelab.md>), [Automation](<https://devfeed.tech/topics/automation.md>), [Git](<https://devfeed.tech/topics/git.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [automation](<https://devfeed.tech/tags/automation.md>), [documentation](<https://devfeed.tech/tags/documentation.md>), [git](<https://devfeed.tech/tags/git.md>), [home-lab](<https://devfeed.tech/tags/home-lab.md>), [home-server](<https://devfeed.tech/tags/home-server.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

The article presents weekend projects for making a home lab more understandable, recoverable, resilient, and predictable when its owner is unavailable. The supplied text covers documenting the lab and moving configurations into Git, including recording hosts, IP addresses, VLANs, and architecture.

### Source excerpt

I have been pretty focused on automation in the home lab. But there is also mindset changes I needed to make to keep from having to baby sit my lab... The post 7 Weekend Projects That Make Your Home Lab Less Dependent on You appeared first on Virtualization Howto.

## Proxmox Enterprise Support Goes 24/7 on October 19; North American Subsidiary Opens in Kingston

DevFeed: [Proxmox Enterprise Support Goes 24/7 on October 19; North American Subsidiary Opens in Kingston](<https://devfeed.tech/articles/proxmox-enterprise-support-goes-24-7-on-october-19-north-american-subsidiary-opens-in-kingston-12373.md>)

Original publisher: [Read original article](<https://www.storagereview.com/news/proxmox-enterprise-support-goes-24-7-on-october-19-north-american-subsidiary-opens-in-kingston>)

Author: Lyle Smith

Published: 2026-09-03T14:57:12Z

Content type: news

Language: en

Sources: [StorageReview.com](<https://devfeed.tech/sources/storagereview-com.md>)

Topics: [Proxmox](<https://devfeed.tech/topics/proxmox.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>)

Tags: [2026](<https://devfeed.tech/tags/2026.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [customers](<https://devfeed.tech/tags/customers.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [outages](<https://devfeed.tech/tags/outages.md>), [production](<https://devfeed.tech/tags/production.md>), [proxmox](<https://devfeed.tech/tags/proxmox.md>), [software](<https://devfeed.tech/tags/software.md>), [ssh](<https://devfeed.tech/tags/ssh.md>), [support](<https://devfeed.tech/tags/support.md>)

### AI overview

Proxmox will begin offering 24/7 global enterprise support on October 19, 2026, covering Proxmox Virtual Environment, Proxmox Backup Server, and Proxmox Datacenter Manager. It is also establishing Proxmox North America Inc. in Kingston, Ontario, to support customers and partners in the United States and Canada. Premium subscribers will receive around-the-clock coverage, while Standard subscribers are scheduled for a later Q4 2026 onboarding window.

### Source excerpt

Proxmox is making a major expansion to its enterprise operations, moving to 24/7 global support beginning October 19, 2026, while establishing a new North American subsidiary in Kingston, Ontario. The new support covers Proxmox Virtual Environment, Proxmox Backup Server, and Proxmox Datacenter Manager, giving enterprise customers direct access to Proxmox engineers at any time of The post Proxmox Enterprise Support Goes 24/7 on October 19; North American Subsidiary Opens in Kingston appeared first on StorageReview.com.

## Xen on RISC-V just ran on real hardware!

DevFeed: [Xen on RISC-V just ran on real hardware!](<https://devfeed.tech/articles/xen-on-risc-v-just-ran-on-real-hardware-12826.md>)

Original publisher: [Read original article](<https://xcp-ng.org/blog/2026/09/03/xen-on-risc-v-just-ran-on-real-hardware/>)

Author: Baptiste Le Duc

Published: 2026-09-03T08:00:27Z

Content type: article

Language: en

Sources: [XCP-ng Blog](<https://devfeed.tech/sources/xcp-ng-blog.md>)

Topics: [RISC-V](<https://devfeed.tech/topics/riscv.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [systems](<https://devfeed.tech/topics/systems.md>), [ci](<https://devfeed.tech/topics/ci.md>), [cpu](<https://devfeed.tech/topics/cpu.md>), [Emulator](<https://devfeed.tech/topics/emulator.md>)

Tags: [ci](<https://devfeed.tech/tags/ci.md>), [cpu](<https://devfeed.tech/tags/cpu.md>), [qemu](<https://devfeed.tech/tags/qemu.md>), [risc-v](<https://devfeed.tech/tags/risc-v.md>), [systems](<https://devfeed.tech/tags/systems.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

Xen now boots a guest domain on physical RISC-V hardware using a HiFive Premier P550. Supporting changes accommodate the board's pre-ratification hypervisor extension and add reproducible hardware-based CI that boots Xen and a Linux guest.

### Source excerpt

Xen now boots a guest domain on physical RISC-V hardware, not just in QEMU. The board we used ships a CPU designed before the hypervisor extension was ratified, which turned out to be the whole challenge.

## Networking Aspects of Running VMs in Containers

DevFeed: [Networking Aspects of Running VMs in Containers](<https://devfeed.tech/articles/networking-aspects-of-running-vms-in-containers-11436.md>)

Original publisher: [Read original article](<https://blog.ipspace.net/2026/09/running-virtual-machines-in-containers/>)

Published: 2026-09-02T05:44:00Z

Content type: article

Language: en

Sources: [ipSpace.net blog](<https://devfeed.tech/sources/ipspace-net-blog.md>)

Topics: [Containers](<https://devfeed.tech/topics/containers.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [networking](<https://devfeed.tech/topics/networking.md>), [Linux](<https://devfeed.tech/topics/linux.md>), [Orchestration](<https://devfeed.tech/topics/orchestration.md>)

Tags: [bridge](<https://devfeed.tech/tags/bridge.md>), [containers](<https://devfeed.tech/tags/containers.md>), [docker](<https://devfeed.tech/tags/docker.md>), [ethernet](<https://devfeed.tech/tags/ethernet.md>), [linux](<https://devfeed.tech/tags/linux.md>), [netlab](<https://devfeed.tech/tags/netlab.md>), [networking](<https://devfeed.tech/tags/networking.md>), [podman](<https://devfeed.tech/tags/podman.md>), [qemu](<https://devfeed.tech/tags/qemu.md>), [virtual-machines](<https://devfeed.tech/tags/virtual-machines.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

The article explains how vrnetlab and a containerlab fork package virtual machines, especially network devices, as containers so container orchestration can provision network topologies. It focuses on connecting QEMU virtual network interfaces, Linux tap interfaces, bridges, and container veth pairs, including why data-plane and management interfaces require different handling.

### Source excerpt

The vrnetlab project and its containerlab fork implement a wonderful idea: let's package virtual machines (primarily network devices that cannot be containerized) as containers to use reliable orchestration tools like containerlab to provision network topologies. That approach might have a few drawbacks (depending on how the container images are built), but the obvious elephant in the room is: how do you make the virtual network plumbing work? Read more ...

## AWS Launches Graviton5-Based EC2 R9g and R9gd Memory-Optimized Instances

DevFeed: [AWS Launches Graviton5-Based EC2 R9g and R9gd Memory-Optimized Instances](<https://devfeed.tech/articles/aws-launches-graviton5-based-ec2-r9g-and-r9gd-memory-optimized-instances-12359.md>)

Original publisher: [Read original article](<https://www.storagereview.com/news/aws-launches-graviton5-based-ec2-r9g-and-r9gd-memory-optimized-instances>)

Author: Harold Fritts

Published: 2026-09-01T18:42:59Z

Content type: news

Language: en

Sources: [StorageReview.com](<https://devfeed.tech/sources/storagereview-com.md>)

Topics: [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Amazon EC2](<https://devfeed.tech/topics/amazon-ec2.md>), [Arm](<https://devfeed.tech/topics/arm.md>), [cpu](<https://devfeed.tech/topics/cpu.md>), [Hardware](<https://devfeed.tech/topics/hardware.md>), [Nitro System](<https://devfeed.tech/topics/nitro-system.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [Nitro Isolation Engine](<https://devfeed.tech/topics/nitro-isolation-engine.md>), [Database](<https://devfeed.tech/topics/database.md>), [Caching](<https://devfeed.tech/topics/caching.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [Formal verification](<https://devfeed.tech/topics/formal-verification.md>)

Tags: [amazon-ec2](<https://devfeed.tech/tags/amazon-ec2.md>), [amazon-eks](<https://devfeed.tech/tags/amazon-eks.md>), [arm](<https://devfeed.tech/tags/arm.md>), [aws](<https://devfeed.tech/tags/aws.md>), [c-plus-plus](<https://devfeed.tech/tags/c-plus-plus.md>), [caching](<https://devfeed.tech/tags/caching.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [database](<https://devfeed.tech/tags/database.md>), [docker](<https://devfeed.tech/tags/docker.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [formal-verification](<https://devfeed.tech/tags/formal-verification.md>), [go](<https://devfeed.tech/tags/go.md>), [hardware](<https://devfeed.tech/tags/hardware.md>), [java](<https://devfeed.tech/tags/java.md>), [microservices](<https://devfeed.tech/tags/microservices.md>), [nitro-isolation-engine](<https://devfeed.tech/tags/nitro-isolation-engine.md>), [nitro-system](<https://devfeed.tech/tags/nitro-system.md>), [node-js](<https://devfeed.tech/tags/node-js.md>), [nvme](<https://devfeed.tech/tags/nvme.md>), [processors](<https://devfeed.tech/tags/processors.md>), [python](<https://devfeed.tech/tags/python.md>), [time](<https://devfeed.tech/tags/time.md>)

### AI overview

AWS has generally released the Amazon EC2 R9g and R9gd instances, powered by AWS Graviton5 processors. These Arm-based, memory-optimized instances offer higher per-vCPU performance, faster memory, larger cache capacity, and increased networking and Amazon EBS bandwidth for database, caching, analytics, container, and microservices workloads. R9gd adds local NVMe SSD storage for low-latency local capacity. Both families use the AWS Nitro System and Nitro Isolation Engine, with AWS citing formal verification for the isolation properties.

### Source excerpt

AWS has made its Amazon EC2 R9g and R9gd instances generally available, introducing memory-optimized systems powered by AWS Graviton5 processors. The new Arm-based instances target database, caching, analytics, container, and microservices workloads that require high memory bandwidth and improved per-vCPU performance. Compared with Graviton4-based R8g instances, AWS states that R9g can deliver up to 25% The post AWS Launches Graviton5-Based EC2 R9g and R9gd Memory-Optimized Instances appeared first on StorageReview.com.

## Patching at Fleet Scale, Twice: How DigitalOcean Closed Januscape and the AMD Safe RET Issue Without Customer Impact

DevFeed: [Patching at Fleet Scale, Twice: How DigitalOcean Closed Januscape and the AMD Safe RET Issue Without Customer Impact](<https://devfeed.tech/articles/patching-at-fleet-scale-twice-how-digitalocean-closed-januscape-and-the-amd-safe-ret-issue-without-customer-impact-19928.md>)

Original publisher: [Read original article](<https://www.digitalocean.com/blog/patching-januscape-amd-safe-ret>)

Author: Tim Lisko

Published: 2026-08-24T21:25:19Z

Content type: article

Language: en

Sources: [DigitalOcean](<https://devfeed.tech/sources/digitalocean.md>)

Topics: [Digital Ocean](<https://devfeed.tech/topics/digital-ocean.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [vulnerability](<https://devfeed.tech/topics/vulnerability.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>), [cloud security](<https://devfeed.tech/topics/cloud-security.md>), [Security](<https://devfeed.tech/topics/security.md>), [Exploit](<https://devfeed.tech/topics/exploit.md>), [Kernel](<https://devfeed.tech/topics/kernel.md>), [Linux](<https://devfeed.tech/topics/linux.md>)

Tags: [cloud](<https://devfeed.tech/tags/cloud.md>), [cloud-computing](<https://devfeed.tech/tags/cloud-computing.md>), [cve](<https://devfeed.tech/tags/cve.md>), [digitalocean](<https://devfeed.tech/tags/digitalocean.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [exploit](<https://devfeed.tech/tags/exploit.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [kernel](<https://devfeed.tech/tags/kernel.md>), [linux](<https://devfeed.tech/tags/linux.md>), [security](<https://devfeed.tech/tags/security.md>), [trust-security](<https://devfeed.tech/tags/trust-security.md>), [update](<https://devfeed.tech/tags/update.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>), [vulnerability](<https://devfeed.tech/tags/vulnerability.md>)

### AI overview

DigitalOcean describes how it responded to two serious vulnerabilities affecting its hypervisor fleet: Januscape, a KVM nested-virtualization flaw, was addressed with fleet-wide livepatching, while a separate AMD hypervisor vulnerability required kernel updates and reboots across roughly 1,600 hypervisors. The article reports zero confirmed customer-facing impact.

### Source excerpt

Setting the stakes In early July, security researcher Hyunwoo Kim discovered Januscape (CVE-2026-53359), a flaw in KVM's handling of nested virtualization that could allow a malicious guest to escape into the host hypervisor. It was disclosed publicly on July 6 via the Linux oss-security mailing list. For a cloud provider, a guest-to-host escape is the most serious class of vulnerability there is: the hypervisor is the boundary that keeps each customer's workloads isolated from each other, and from our infrastructure itself. We responded, patched the entire fleet in eight days with zero confirmed customer-facing impact, and drafted a post about how we did it. Then, before we could hit publish, it happened again. In late July we learned of a second and unrelated vulnerability affecting our entire AMD hypervisor fleet, that could not be livepatched. Roughly 1,600 hypervisors needed a kernel update and a reboot. So now this story is about two responses, three weeks apart. The first built the muscle. The second proved it was repeatable, at a larger scale, and on a harder constraint. Here's how both played out, and why two of the most serious vulnerability classes in cloud computing ended up feeling like just another couple of weeks for us. Act one: Januscape The fast path: fleet-wide livepatching Our response kicked off the same night the vulnerability was disclosed. When public exploit code surfaced late in the evening of July 6, the Kernel Engineering team was paged and dug in immediately. Engineers reproduced the exploit in an isolated environment, confirmed which kernel lines were affected, and built the first working livepatch before 1 AM, roughly 45 minutes after answering the page. Livepatching lets us fix a running kernel in place, with no reboot, no migration, and no observed disruption to the customer. A few hours later, patches for the kernel versions (6.1 and 6.12) that run the majority of our hypervisor fleet were ready to ship. For the remainder, we had to

## AAOS SDV - Secure by Design

DevFeed: [AAOS SDV - Secure by Design](<https://devfeed.tech/articles/aaos-sdv-secure-by-design-22687.md>)

Original publisher: [Read original article](<http://android-developers.googleblog.com/2026/08/aaos-sdv-secure-by-design.html>)

Author: Android Developers (noreply@blogger.com)

Published: 2026-08-24T16:00:31Z

Content type: article

Language: en

Sources: [Android Developers Blog](<https://devfeed.tech/sources/android-developers-blog-3.md>)

Topics: [Android](<https://devfeed.tech/topics/android.md>), [Security](<https://devfeed.tech/topics/security.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [virtual machines](<https://devfeed.tech/topics/virtual-machines.md>), [SELinux](<https://devfeed.tech/topics/selinux.md>), [POSIX](<https://devfeed.tech/topics/posix.md>), [Processes](<https://devfeed.tech/topics/processes.md>), [Google](<https://devfeed.tech/topics/google.md>)

Tags: [android](<https://devfeed.tech/tags/android.md>), [android-security](<https://devfeed.tech/tags/android-security.md>), [article](<https://devfeed.tech/tags/article.md>), [google](<https://devfeed.tech/tags/google.md>), [posix](<https://devfeed.tech/tags/posix.md>), [process](<https://devfeed.tech/tags/process.md>), [security](<https://devfeed.tech/tags/security.md>), [selinux](<https://devfeed.tech/tags/selinux.md>), [virtual-machines](<https://devfeed.tech/tags/virtual-machines.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

This article explains the security design of Android Automotive Operating System for Software Defined Vehicle (AAOS SDV). It describes virtualization for domain isolation, UID-based application and service sandboxing, POSIX capabilities, SELinux deny-by-default enforcement, and Android's vulnerability management and disclosure processes.

### Source excerpt

Posted by Markus Vill, Software Engineer, Sean Keys, Security Engineer, and Istvan Nador, Software Engineer, Android Auto At Google, we believe our products should be secure by design, which is why we built the Android Automotive Operating System for Software Defined Vehicle (AAOS SDV) on existing, market-proven platforms, leveraging virtualization technologies like Cuttlefish. While our release announcements focused on the features, this blog post outlines some of the security concepts. Foundation: Domain IsolationVirtualization to isolate co-hosted instances The current trend of consolidating Electronic Control Units (ECUs) into a single chip reduces isolation by running multiple domains side-by-side. While AAOS SDV instances provide internal isolation mechanisms, it is often preferable to run logical domains independently. For instance, a cluster and an infotainment system have distinct requirements. We use virtual machines to run multiple instances in parallel, ensuring that sharing remains explicit and isolation is the default behavior. Inherited Android Security AAOS SDV evolved from Microdroid, a minimalistic Android version optimized for privacy virtual machines (pVM). This lineage provides Android platform engineers with established security features they already know. Process Isolation & Deny by Default AAOS SDV follows Android's User ID (UID)-based isolation model to set up a sandbox for each application. Each service runs in a dedicated process with a unique UID to manage access rights, data directories, and other restrictions. We employ Portable Operating System Interface (POSIX) capabilities to strictly limit operations and pair this with Security-Enhanced Linux (SELinux) to enforce a "deny-by-default" posture. This approach restricts each service to the absolute minimum required, meaning missing configurations block access rather than creating an over-permissive system. We apply this same strategy to our communication permission system, as explained l

## AAOS SDV - Secure by Design

DevFeed: [AAOS SDV - Secure by Design](<https://devfeed.tech/articles/aaos-sdv-secure-by-design-4230.md>)

Original publisher: [Read original article](<https://android-developers.googleblog.com/2026/08/aaos-sdv-secure-by-design.html>)

Author: Android Developers (noreply@blogger.com)

Published: 2026-08-24T16:00:31Z

Content type: article

Language: en

Sources: [Android Developers Blog](<https://devfeed.tech/sources/android-developers-blog.md>), [Android Developers Blog](<https://devfeed.tech/sources/android-developers-blog-2.md>)

Topics: [Android](<https://devfeed.tech/topics/android.md>), [Security](<https://devfeed.tech/topics/security.md>), [SELinux](<https://devfeed.tech/topics/selinux.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [vulnerability management](<https://devfeed.tech/topics/vulnerability-management.md>), [Process](<https://devfeed.tech/topics/process.md>), [Resilience](<https://devfeed.tech/topics/resilience.md>), [Google](<https://devfeed.tech/topics/google.md>)

Tags: [android](<https://devfeed.tech/tags/android.md>), [android-security](<https://devfeed.tech/tags/android-security.md>), [article](<https://devfeed.tech/tags/article.md>), [automotive](<https://devfeed.tech/tags/automotive.md>), [blog](<https://devfeed.tech/tags/blog.md>), [deep-dive](<https://devfeed.tech/tags/deep-dive.md>), [google](<https://devfeed.tech/tags/google.md>), [process](<https://devfeed.tech/tags/process.md>), [resilience](<https://devfeed.tech/tags/resilience.md>), [security](<https://devfeed.tech/tags/security.md>), [selinux](<https://devfeed.tech/tags/selinux.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>), [vulnerability-management](<https://devfeed.tech/tags/vulnerability-management.md>)

### AI overview

AAOS SDV is presented as a secure-by-design platform for software-defined vehicles. The article explains how virtualization isolates co-hosted domains, while Android UID-based process sandboxes, POSIX capabilities, and SELinux enforce least privilege and deny-by-default access. It also describes vulnerability response, penetration testing, security audits, and architectural reviews.

### Source excerpt

Posted by Markus Vill, Software Engineer, Sean Keys, Security Engineer, and Istvan Nador, Software Engineer, Android Auto At Google, we believe our products should be secure by design, which is why we built the Android Automotive Operating System for Software Defined Vehicle (AAOS SDV) on existing, market-proven platforms, leveraging virtualization technologies like Cuttlefish. While our release announcements focused on the features, this blog post outlines some of the security concepts. Foundation: Domain IsolationVirtualization to isolate co-hosted instances The current trend of consolidating Electronic Control Units (ECUs) into a single chip reduces isolation by running multiple domains side-by-side. While AAOS SDV instances provide internal isolation mechanisms, it is often preferable to run logical domains independently. For instance, a cluster and an infotainment system have distinct requirements. We use virtual machines to run multiple instances in parallel, ensuring that sharing remains explicit and isolation is the default behavior. Inherited Android Security AAOS SDV evolved from Microdroid, a minimalistic Android version optimized for privacy virtual machines (pVM). This lineage provides Android platform engineers with established security features they already know. Process Isolation & Deny by Default AAOS SDV follows Android's User ID (UID)-based isolation model to set up a sandbox for each application. Each service runs in a dedicated process with a unique UID to manage access rights, data directories, and other restrictions. We employ Portable Operating System Interface (POSIX) capabilities to strictly limit operations and pair this with Security-Enhanced Linux (SELinux) to enforce a "deny-by-default" posture. This approach restricts each service to the absolute minimum required, meaning missing configurations block access rather than creating an over-permissive system. We apply this same strategy to our communication permission system, as explained l

## The post-VMware playbook: what to move first, what to leave for last

DevFeed: [The post-VMware playbook: what to move first, what to leave for last](<https://devfeed.tech/articles/the-post-vmware-playbook-what-to-move-first-what-to-leave-for-last-17498.md>)

Original publisher: [Read original article](<https://www.giantswarm.io/blog/post-vmware-migration-playbook>)

Author: manuel@giantswarm.io (Manuel Gawert)

Published: 2026-08-18T09:25:47Z

Content type: tutorial

Language: en

Sources: [Giant Swarm Blog](<https://devfeed.tech/sources/giant-swarm-blog.md>)

Topics: [migration](<https://devfeed.tech/topics/migration.md>), [Proxmox](<https://devfeed.tech/topics/proxmox.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Azure](<https://devfeed.tech/topics/azure.md>)

Tags: [cost](<https://devfeed.tech/tags/cost.md>), [cost-optimization-in-kubernetes](<https://devfeed.tech/tags/cost-optimization-in-kubernetes.md>), [migration](<https://devfeed.tech/tags/migration.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [platform-engineering](<https://devfeed.tech/tags/platform-engineering.md>), [proxmox](<https://devfeed.tech/tags/proxmox.md>), [time](<https://devfeed.tech/tags/time.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

This article presents a migration playbook for teams evaluating a move away from VMware. It focuses on sequencing workloads, deciding among Proxmox, Azure, and AWS, and accounting for workload fit, risk, time, and cost. It emphasizes making the infrastructure decision before moving workloads because migrations can stall when that decision is unresolved.

### Source excerpt

The post-VMware playbook: what to move first, what to leave for last, and what each option costs in risk, time, and money. (Giant Swarm)

## We rebuilt the Linux microVM stack on Apple Silicon

DevFeed: [We rebuilt the Linux microVM stack on Apple Silicon](<https://devfeed.tech/articles/we-rebuilt-the-linux-microvm-stack-on-apple-silicon-17799.md>)

Original publisher: [Read original article](<https://encore.dev/blog/firecracker-apple-silicon>)

Author: Ivan Cernja

Published: 2026-08-18T00:00:00Z

Content type: article

Language: en

Sources: [Encore Updates](<https://devfeed.tech/sources/encore-updates.md>)

Topics: [Firecracker](<https://devfeed.tech/topics/firecracker.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [macOS](<https://devfeed.tech/topics/macos.md>), [Linux](<https://devfeed.tech/topics/linux.md>), [Dockerfile](<https://devfeed.tech/topics/dockerfile.md>), [Go Language](<https://devfeed.tech/topics/go-language.md>)

Tags: [docker](<https://devfeed.tech/tags/docker.md>), [firecracker](<https://devfeed.tech/tags/firecracker.md>), [go](<https://devfeed.tech/tags/go.md>), [linux](<https://devfeed.tech/tags/linux.md>), [macos](<https://devfeed.tech/tags/macos.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

Encore rebuilt its Linux microVM development stack to work on Apple Silicon. The article describes crackling, an API that uses Firecracker on Linux and Apple's hypervisor on macOS, along with the tooling needed to run the same build system on developer laptops and in production.

### Source excerpt

Maybe we should have just moved everyone to Linux.

## Test Days for Fedora 45: Help Us Test the Big Changes

DevFeed: [Test Days for Fedora 45: Help Us Test the Big Changes](<https://devfeed.tech/articles/test-days-for-fedora-45-help-us-test-the-big-changes-12395.md>)

Original publisher: [Read original article](<https://fedoramagazine.org/test-days-for-fedora-45-help-us-test-the-big-changes/>)

Author: Petr Sklenar

Published: 2026-08-14T17:22:24Z

Content type: article

Language: en

Sources: [Fedora Magazine](<https://devfeed.tech/sources/fedora-magazine.md>)

Topics: [Fedora](<https://devfeed.tech/topics/fedora.md>), [boot](<https://devfeed.tech/topics/boot.md>), [ci](<https://devfeed.tech/topics/ci.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [Internationalization (i18n)](<https://devfeed.tech/topics/i18n.md>), [Confidential Computing](<https://devfeed.tech/topics/confidential-computing.md>), [dnf](<https://devfeed.tech/topics/dnf.md>), [TLS (Transport Layer Security)](<https://devfeed.tech/topics/tls.md>), [Matrix](<https://devfeed.tech/topics/matrix-org.md>)

Tags: [article](<https://devfeed.tech/tags/article.md>), [community](<https://devfeed.tech/tags/community.md>), [developers](<https://devfeed.tech/tags/developers.md>), [dnf](<https://devfeed.tech/tags/dnf.md>), [events](<https://devfeed.tech/tags/events.md>), [fedora-project-community](<https://devfeed.tech/tags/fedora-project-community.md>), [graphics](<https://devfeed.tech/tags/graphics.md>), [kernel](<https://devfeed.tech/tags/kernel.md>), [new-in-fedora](<https://devfeed.tech/tags/new-in-fedora.md>), [python](<https://devfeed.tech/tags/python.md>), [qa](<https://devfeed.tech/tags/qa.md>), [test-day](<https://devfeed.tech/tags/test-day.md>), [testing](<https://devfeed.tech/tags/testing.md>), [tls](<https://devfeed.tech/tags/tls.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

This article invites the Fedora community to test Fedora 45 system-level changes on real hardware and virtual machines. It highlights testing for GNOME 51, RPM 6.1, OpenSSL 4.0, rebuilt boot and live media, kmscon, Python 3.15, GRUB EFI for Confidential Computing, and internationalization changes. Community testing is intended to find regressions that automated tests may miss and to support reproducible bug reports.

### Source excerpt

Fedora 45 has several system-level changes that need testing on real hardware. The first test day up is GNOME 51, starting on 17 August, with more events planned for RPM 6.1, installation media and others. You can participate with a VM for most tests; some hardware-specific testing is more useful on a real machine. Details [...]

## QEMU version 11.1.0 released

DevFeed: [QEMU version 11.1.0 released](<https://devfeed.tech/articles/qemu-version-11-1-0-released-32658.md>)

Original publisher: [Read original article](<https://www.qemu.org/2026/08/11/qemu-11-1-0/>)

Published: 2026-08-11T23:56:00Z

Content type: release

Language: en

Sources: [QEMU](<https://devfeed.tech/sources/qemu.md>)

Topics: [qemu](<https://devfeed.tech/topics/qemu.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [version](<https://devfeed.tech/topics/version.md>), [Availability](<https://devfeed.tech/topics/availability.md>), [Arm](<https://devfeed.tech/topics/arm.md>), [cpu](<https://devfeed.tech/topics/cpu.md>), [RISC-V](<https://devfeed.tech/topics/riscv.md>), [virtio](<https://devfeed.tech/topics/virtio.md>)

Tags: [announce](<https://devfeed.tech/tags/announce.md>), [arm](<https://devfeed.tech/tags/arm.md>), [availability](<https://devfeed.tech/tags/availability.md>), [bugs](<https://devfeed.tech/tags/bugs.md>), [cache](<https://devfeed.tech/tags/cache.md>), [changelog](<https://devfeed.tech/tags/changelog.md>), [ci](<https://devfeed.tech/tags/ci.md>), [cpu](<https://devfeed.tech/tags/cpu.md>), [documentation](<https://devfeed.tech/tags/documentation.md>), [gui](<https://devfeed.tech/tags/gui.md>), [qemu](<https://devfeed.tech/tags/qemu.md>), [qemu-11-1](<https://devfeed.tech/tags/qemu-11-1.md>), [release](<https://devfeed.tech/tags/release.md>), [releases](<https://devfeed.tech/tags/releases.md>), [risc-v](<https://devfeed.tech/tags/risc-v.md>), [testing](<https://devfeed.tech/tags/testing.md>), [version](<https://devfeed.tech/tags/version.md>), [virtio](<https://devfeed.tech/tags/virtio.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

QEMU 11.1.0 has been released with more than 3,200 commits from 285 authors. The release adds or improves emulation, virtualization, GUI, architecture, firmware, and accelerator support, including UFS features, ARM and RISC-V capabilities, nested virtualization, and new machine and board support.

### Source excerpt

We'd like to announce the availability of the QEMU 11.1.0 release. This release contains 3200+ commits from 285 authors.

## Containing Locally Running AI Agents with Layered Security Controls

DevFeed: [Containing Locally Running AI Agents with Layered Security Controls](<https://devfeed.tech/articles/agent-lockdown-37513.md>)

Original publisher: [Read original article](<https://blog.apartment304.com/agent-lockdown/>)

Author: Spencer Reeves

Published: 2026-08-10T18:00:00Z

Content type: tutorial

Language: en

Sources: [Apartment 304](<https://devfeed.tech/sources/apartment-304.md>)

Topics: [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Security](<https://devfeed.tech/topics/security.md>), [Containers](<https://devfeed.tech/topics/containers.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [macOS](<https://devfeed.tech/topics/macos.md>), [npm](<https://devfeed.tech/topics/npm.md>)

Tags: [agent](<https://devfeed.tech/tags/agent.md>), [ai-agents](<https://devfeed.tech/tags/ai-agents.md>), [apartment-304](<https://devfeed.tech/tags/apartment-304.md>), [apple](<https://devfeed.tech/tags/apple.md>), [credentials](<https://devfeed.tech/tags/credentials.md>), [custom-software-solutions](<https://devfeed.tech/tags/custom-software-solutions.md>), [devops](<https://devfeed.tech/tags/devops.md>), [devops-engineer](<https://devfeed.tech/tags/devops-engineer.md>), [macos](<https://devfeed.tech/tags/macos.md>), [networking](<https://devfeed.tech/tags/networking.md>), [npm](<https://devfeed.tech/tags/npm.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [sandboxing](<https://devfeed.tech/tags/sandboxing.md>), [security](<https://devfeed.tech/tags/security.md>), [software-architecture](<https://devfeed.tech/tags/software-architecture.md>), [software-development](<https://devfeed.tech/tags/software-development.md>), [software-engineer](<https://devfeed.tech/tags/software-engineer.md>)

### AI overview

This article presents a layered security approach for running AI agents locally. It focuses on sandboxing the agent, restricting internet access, and protecting secrets and environment files, with container isolation as the foundation.

### Source excerpt

Running an agent locally gives it a foothold on your machine -- here's how we keep it contained.

## 2.5x Faster x86\_64 Linux Builds on macOS with Rosetta

DevFeed: [2.5x Faster x86\_64 Linux Builds on macOS with Rosetta](<https://devfeed.tech/articles/2-5x-faster-x86-64-linux-builds-on-macos-with-rosetta-32450.md>)

Original publisher: [Read original article](<https://nixcademy.com/posts/rosetta-linux-builder-macos/>)

Author: Jacek Galowicz

Published: 2026-08-10T00:00:00Z

Content type: article

Language: en

Sources: [Nixcademy Blog](<https://devfeed.tech/sources/nixcademy-blog.md>)

Topics: [macOS](<https://devfeed.tech/topics/macos.md>), [Nix](<https://devfeed.tech/topics/nix.md>), [virtualization](<https://devfeed.tech/topics/virtualization.md>), [qemu](<https://devfeed.tech/topics/qemu.md>), [x86](<https://devfeed.tech/topics/x86.md>), [Linux](<https://devfeed.tech/topics/linux.md>)

Tags: [apple-silicon](<https://devfeed.tech/tags/apple-silicon.md>), [install](<https://devfeed.tech/tags/install.md>), [macos](<https://devfeed.tech/tags/macos.md>), [qemu](<https://devfeed.tech/tags/qemu.md>), [rosetta](<https://devfeed.tech/tags/rosetta.md>), [run](<https://devfeed.tech/tags/run.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>), [x86-64](<https://devfeed.tech/tags/x86-64.md>)

### AI overview

The article explains a new nix-darwin Linux builder backend that uses Apple's Virtualization.framework and exposes Rosetta to guest VMs. On Apple Silicon Macs, it supports x86_64 Linux builds and is reported to be roughly 2.5 times faster than QEMU-based emulation.

### Source excerpt

Build x86_64 Linux packages 2.5x faster on your Apple Silicon Mac with the new Rosetta-based linux-builder, a drop-in replacement in nix-darwin.

## Xen 4.22: Strengthening Open Source Virtualization for Cloud, Embedded, and Automotive Systems

DevFeed: [Xen 4.22: Strengthening Open Source Virtualization for Cloud, Embedded, and Automotive Systems](<https://devfeed.tech/articles/xen-4-22-strengthening-open-source-virtualization-for-cloud-embedded-and-automotive-systems-12836.md>)

Original publisher: [Read original article](<https://xenproject.org/blog/xen-4-22-release/>)

Author: Cody Zuschlag

Published: 2026-08-05T15:18:36Z

Content type: article

Language: en

Sources: [Blog - Xen Project](<https://devfeed.tech/sources/blog-xen-project.md>)

Topics: [virtualization](<https://devfeed.tech/topics/virtualization.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>), [Hardware](<https://devfeed.tech/topics/hardware.md>), [Scalability](<https://devfeed.tech/topics/scalability.md>), [Arm](<https://devfeed.tech/topics/arm.md>), [RISC-V](<https://devfeed.tech/topics/riscv.md>)

Tags: [arm](<https://devfeed.tech/tags/arm.md>), [automotive](<https://devfeed.tech/tags/automotive.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [developers](<https://devfeed.tech/tags/developers.md>), [embedded](<https://devfeed.tech/tags/embedded.md>), [hardware](<https://devfeed.tech/tags/hardware.md>), [improvements](<https://devfeed.tech/tags/improvements.md>), [lifecycle](<https://devfeed.tech/tags/lifecycle.md>), [maintenance](<https://devfeed.tech/tags/maintenance.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [performance](<https://devfeed.tech/tags/performance.md>), [platform](<https://devfeed.tech/tags/platform.md>), [release](<https://devfeed.tech/tags/release.md>), [releases](<https://devfeed.tech/tags/releases.md>), [risc-v](<https://devfeed.tech/tags/risc-v.md>), [safety](<https://devfeed.tech/tags/safety.md>), [security](<https://devfeed.tech/tags/security.md>), [standards](<https://devfeed.tech/tags/standards.md>), [systems](<https://devfeed.tech/tags/systems.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>), [xen-4-22](<https://devfeed.tech/tags/xen-4-22.md>)

### AI overview

Xen 4.22 is presented as the latest Xen hypervisor release, adding modern hardware support, Arm virtualization improvements, continued RISC-V progress, and Xenstore scalability updates. The Xen Project also introduces a consistent five-year security support lifecycle for Xen 4.20 and later releases.

### Source excerpt

Xen 4.22 adds modern hardware support, Arm improvements, continued RISC-V progress, Xenstore scalability updates, and a five-year security support lifecycle.

## The hyperscale blueprint: Why cloud giants prioritize VMs for Kubernetes over bare metal

DevFeed: [The hyperscale blueprint: Why cloud giants prioritize VMs for Kubernetes over bare metal](<https://devfeed.tech/articles/the-hyperscale-blueprint-why-cloud-giants-prioritize-vms-for-kubernetes-over-bare-metal-12238.md>)

Original publisher: [Read original article](<https://platformengineering.org/blog/the-hyperscale-blueprint-why-cloud-giants-prioritize-vms-for-kubernetes-over-bare-metal>)

Author: Jack Wallen

Published: 2026-07-23T05:40:01Z

Content type: article

Language: en

Sources: [Platform Engineering Blog](<https://devfeed.tech/sources/platform-engineering-blog.md>)

Topics: [virtualization](<https://devfeed.tech/topics/virtualization.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [Containers](<https://devfeed.tech/topics/containers.md>), [Scalability](<https://devfeed.tech/topics/scalability.md>), [Security](<https://devfeed.tech/topics/security.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Nitro System](<https://devfeed.tech/topics/nitro-system.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>)

Tags: [aws](<https://devfeed.tech/tags/aws.md>), [containers](<https://devfeed.tech/tags/containers.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [nitro-system](<https://devfeed.tech/tags/nitro-system.md>), [scalability](<https://devfeed.tech/tags/scalability.md>), [security](<https://devfeed.tech/tags/security.md>), [virtual-machines](<https://devfeed.tech/tags/virtual-machines.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

Cloud providers generally run Kubernetes and other containerized workloads on virtual machines rather than bare metal because virtualization offers security, isolation, flexibility, scalability, and near-bare-metal performance. AWS Nitro and Firecracker help reduce virtualization overhead, while bare metal remains reserved for specialized performance or hardware-access requirements.

### Source excerpt

Why do cloud giants use VMs for Kubernetes? Learn why AWS, Azure, and Google prioritize Virtual Machines for containerized workloads over bare metal, focusing on security and scalability.

[Next page](<https://devfeed.tech/topics/virtualization.md?cursor=WyIyMDI2LTA3LTIzVDA1OjQwOjAxKzAwOjAwIiwgImFkYjEyNmM0LWRlNzMtNGVjMC05MzBhLTg5NjYwZTZmZjQ2MCJd>)