Cloudflare's R2 object storage and related services were down for 59 minutes on February 6 due to human error in handling an abuse report ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌  ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ 

TLDR

Together With SUSE

TLDR DevOps 2025-02-10

Get discounted tickets for SUSECON 2025—where open source innovation meets business impact (Sponsor)

Happening next month in Orlando! Join SUSE customers, partners and community members at the global annual SUSECON conference: four packed days exploring the latest advancements in Linux and open source software, and how to use them to drive business results.

💡 Learn about the latest innovations in open source infrastructure: Linux, multi-Linux support, cloud native, edge and AI.

💪 Build practical skills in interactive labs and earn certifications with SUSE's leading industry exams.

100+ sessions. Exceptional keynotes. Exclusive announcements. Networking opportunities.

Use code DevOpsSCDC20 at checkout for 20% off

📱

News & Trends

Reshape your AWS CloudFormation stacks seamlessly with stack refactoring (2 minute read)

AWS CloudFormation has introduced a new stack refactoring feature that allows you to reorganize resources across stacks by moving, splitting, or renaming them. This streamlines re-architecting processes, improving speed and safety while enabling seamless adaptation to evolving needs.
Docker Bake is Now Generally Available in Docker Desktop 4.38! (6 minute read)

Docker has announced the General Availability of Docker Bake with Docker Desktop 4.38, offering a declarative build orchestration tool that simplifies complex builds and enhances performance by leveraging BuildKit's parallelization and optimization features. The new update introduces support for entitlements to control privileged operations and validation rules for variables and makes it easier to manage multiple related Docker images from a single source, ensuring faster and more efficient builds.
Cloudflare incident on February 6, 2025 (7 minute read)

Cloudflare's R2 object storage and related services were down for 59 minutes on February 6 due to human error in handling an abuse report, which led to the unintended disablement of the R2 Gateway service. This caused a complete failure of R2 operations and impacted multiple dependent services like Stream, Images, and Cache Reserve, though no data was lost. Cloudflare is implementing stricter safeguards, including improved validation, access controls, and two-party approval processes, to prevent similar incidents in the future.
🚀

Opinions & Tutorials

How to Manage Large OpenTofu/Terraform State Files (6 minute read)

This post explores different Infrastructure as Code topologies for managing OpenTofu/Terraform state efficiently as infrastructure scales. It compares approaches like All-In-One, Workspaces, Multi-Unit, and Stacks, highlighting their trade-offs in performance, maintainability, and complexity.
The LLM Curve of Impact on Software Engineers (5 minute read)

The usefulness of LLMs for software engineers follows a curve: they significantly boost junior engineers by helping with code and troubleshooting, assist mid-level engineers with speed but struggle with complex tasks, and have limited impact on senior engineers who require deep domain expertise. However, LLMs regain usefulness at the Staff+ level by accelerating proof-of-concept development, making them valuable for high-level experimentation and prototyping.
Organizational best practices for implementing EKS Anywhere at scale (8 minute read)

This post outlines best practices for successfully implementing Amazon EKS Anywhere at scale, covering engagement models, support strategies, executive reporting, and skill development. By following a structured four-phase approach, organizations can streamline Kubernetes adoption, enhance collaboration, and ensure a reliable, efficient deployment.
🧑‍💻

Resources & Tools

Free copy of the 2025 GigaOm Radar for Cloud Workload Security (Sponsor)

GigaOm's analysis of the 2024 cloud workload security market is available for free, courtesy of Check Point. Workload policy management has become a standard offering, while remediation powered by large language models (LLMs) and integrations with CI/CD tools have emerged as key differentiating features. Read the full report
TigerBeetle (GitHub Repo)

TigerBeetle, a financial transactions database built for mission-critical safety and performance, aims to revolutionize OLTP for the next 30 years by offering robust debit/credit primitives and scalable balance tracking.
WAT (GitHub Repo)

WAT is an inspection tool for Python that allows users to explore and examine objects at runtime, offering insights into their types, values, methods, and source code without any external dependencies.
🎁

Miscellaneous

Fastly's Report on DDoS in January (6 minute read)

Fastly's global network observed a 14.5% increase in application DDoS attacks, with the highest traffic volumes detected from the US, Germany, Singapore, France, and Japan. Organizations should enhance their infrastructure, implement proactive defense measures, and ensure 24/7 security coverage to mitigate the growing frequency and unpredictability of DDoS threats.
Resolving a Mutual TLS session resumption vulnerability (6 minute read)

Cloudflare swiftly mitigated a vulnerability affecting its Mutual TLS (mTLS) implementation, tracked as CVE-2025-23419. The issue, which allowed TLS sessions to resume across different Cloudflare zones without proper authentication, did not appear to be exploited and was resolved by disabling session resumption for mTLS, with additional measures in place to prevent future occurrences.

Quick Links

Anthropic and DeepSeek Join the GenAI Platform Model Library (3 minute read)

DigitalOcean's GenAI Platform now includes Anthropic's Claude models and DeepSeek R1, offering new advanced AI options for content generation, real-time interactions, and problem-solving.
Kubernetes Cloud Repatriation Saves Millions for Data Platform Provider (3 minute read)

Yellowbrick saved $3.9 million annually by moving workloads from public cloud providers to its own private Kubernetes-based infrastructure, repurposing old hardware.

Love TLDR? Tell your friends and get rewards!

Share your referral link below with friends to get free TLDR swag!
Track your referrals here.

Want to advertise in TLDR? 📰

If your company is interested in reaching an audience of devops professionals and decision makers, you may want to advertise with us.

Want to work at TLDR? 💼

Apply here or send a friend's resume to jobs@tldr.tech and get $1k if we hire them!

If you have any comments or feedback, just respond to this email!

Thanks for reading,
Kunal Desai & Martin Hauskrecht


Manage your subscriptions to our other newsletters on tech, startups, and programming. Or if TLDR DevOps isn't for you, please unsubscribe.