Episodios

  • NPM Supply Chain Attack: Lessons in Security and Human Error
    Sep 12 2025

    Send us a text

    A major security incident shook the JavaScript world when malicious code was discovered in 20 widely used NPM packages, collectively downloaded over 2 billion times per week. In this episode, Pinja and Darren break down what happened, how a phishing email led to the breach, and why human error remains one of the biggest risks in cybersecurity.

    They explore the scope of the attack, its surprisingly small financial impact, and the broader lessons around open-source trust, dependency management, and the need for SBOMs. Plus, they discuss how tools like DependencyTrack can help developers protect their software supply chains, and why transparency in mistakes—like that shown by maintainer Josh Junon—is essential to building a stronger security culture.



    Más Menos
    16 m
  • The ethics of AI: data, privacy, and responsibility
    Sep 5 2025

    Send us a text

    In this episode of DevOps Sauna, Pinja and Darren dive into one of the most pressing topics of our time: the ethics of AI. From copyright infringement and data usage to environmental impact and corporate responsibility, they unravel the hidden costs behind today’s AI boom.

    They explore how big tech handles data, the consequences of AI monopolies, and why regulation is a double-edged sword. Most importantly, they discuss what individuals, companies, and the industry at large can do to ensure AI is used ethically and responsibly.

    If you’ve ever wondered whether AI can be ethical—or how you can use it more responsibly—this conversation is for you.

    Más Menos
    24 m
  • Summer News Roundup: AI Bubbles, GitHub Changes & Saunas in Australia
    Aug 29 2025

    Send us a text

    In this summer catch-up episode of DevOps Sauna, Darren and Pinja dive into the biggest tech and culture stories of the past months. From OpenAI’s failed Windsurf deal and Google’s licensing swoops, to Sam Altman calling AI a bubble and GitHub’s leadership shake-up, they explore how AI, security, and open-source are reshaping the industry. They also unpack Nvidia’s $4 trillion milestone, US and EU AI regulation battles, and a surprising study on insecure code releases. And to close on a lighter note, they celebrate the global spread of Finnish sauna culture—now floating on rivers in Australia.

    Más Menos
    21 m
  • Summer fun and podcast recap
    Aug 22 2025

    Send us a text

    As summer holidays roll in, Pinja and Darren take a step back from the usual deep dives into DevOps to reflect on the past six months of the DevOps Sauna. From endless AI debates and myth-busting episodes (“Is Jenkins dead?”) to accessibility, platform engineering at the edge, and even a full episode on sauna culture, they revisit the highlights, surprises, and fun along the way. They also share some of Eficode’s recent wins, welcome a new CEO, and admit to pulling off a very Finnish April Fools’ episode. Join us for a lighter, summer-ready conversation that celebrates both the serious and the silly moments from the podcast so far.

    Más Menos
    25 m
  • How we won Atlassian’s Partner of the Year (and what it means)
    Aug 15 2025

    Send us a text

    In this episode, we celebrate winning Atlassian’s Partner of the Year – World-Class Software Development award and explore what it truly means. CTO of Managed Services Kalle Sirkesalo joins Darren and Pinja to discuss how Eficode transforms the way teams build software—focusing on culture, tools, processes, and people over code. From AI and platform engineering to security and feedback loops, we unpack how to create lasting impact in modern software development.

    Más Menos
    25 m
  • Platform Engineering on the Edge: NIS2, Ransomware & Reality Checks
    Aug 8 2025

    Send us a text

    In the final episode of their mini-series on platform engineering at the edge, Darren and Pinja dive deep into the often-overlooked security risks of edge and IoT environments. From car key hacks and USB-based keyboard attacks to ransomware targeting medical devices and smart cities, they reveal how proximity and physical access change the rules of cybersecurity. You’ll also hear practical ways to secure your edge platforms, the role of platform engineering in remote monitoring, and how upcoming EU regulations like NIS2 and the Cyber Resilience Act may shape the future.

    Más Menos
    22 m
  • Platform engineering on the edge: The fascinating real-world scenarios
    Aug 1 2025

    Send us a text

    Darren and Pinja continue their series on platform engineering on the edge by diving into some of the most fascinating real-world use cases. From software updates on the Voyager space probes and Antarctic research stations to cars, planes, and even grocery delivery robots, they explore how platform engineering makes these edge deployments reliable, self-healing, and secure. This episode is full of stories and lessons on what it takes to manage software far beyond traditional data centers and clouds.

    Más Menos
    33 m
  • Platform Engineering on the Edge
    Jul 25 2025

    Send us a text

    Darren and Pinja break down the basics of platform engineering on the edge, from the “boring” to the truly remote and unreachable. They explore how GitOps, Kubernetes, and infrastructure as code enable reliable software updates in spotty or disconnected environments—whether in cars, factories, ships, or even Mars rovers—and why getting edge engineering right matters now more than ever.

    Más Menos
    23 m