# Veille techno ## 25/03/2021 ## Langages ### Java /1 * [Spring native beta](https://spring.io/blog/2021/03/11/announcing-spring-native-beta) * [GraalVM - updates on native image generation](https://medium.com/graalvm/updates-on-class-initialization-in-graalvm-native-image-generation-c61faca461f7) * [Tablesaw - datavisualisation in Java](https://github.com/jtablesaw/tablesaw) * [JDK 16 GA](https://mail.openjdk.java.net/pipermail/announce/2021-March/000295.html) * [Java 16 guide](https://nipafx.dev/java-16-guide/) ### Java /2 * [Java server-side - 22 years old](https://www.youtube.com/watch?v=Kr5ARdTuX8Q) * [JHipster Quarkus](https://developer.okta.com/blog/2021/03/08/jhipster-quarkus-oidc) * [Hibernate reactive](https://in.relation.to/2021/03/08/hibernate-reactive-1/) * [Efficient java with quarkus](https://horizons.carrefour.com/tech/efficient-java-in-the-cloud-with-quarkus) * [Adopting Kotlin for developer satisfaction and less code](https://aws.amazon.com/fr/blogs/opensource/adopting-kotlin-at-prime-video-for-higher-developer-satisfaction-and-less-code/) ### Front * [19 pépites JS](https://delicious-insights.com/fr/articles/js-nuggets/) * [WCGA 2.2 - changements et implications](https://makeitfable.com/article/wcag-2-2/?utm_source=social&utm_medium=linkedin&utm_campaign=WCAG%202.2) * [ChartsCSS](https://chartscss.org/) * [Choisir sa palette de couleurs pour une dataviz](https://blog.datawrapper.de/which-color-scale-to-use-in-data-vis/) * [Same Origin Policy - zine](https://gumroad.com/l/sopzine) * [Boutons accessibles en HTML](https://www.lalutineduweb.fr/boutons-accessibles-html/) ### Autre * [SQL performance with union](https://www.foxhound.systems/blog/sql-performance-with-union/) * [How I cut GTA online loading time by 70](https://nee.lv/2021/02/28/How-I-cut-GTA-Online-loading-times-by-70/) * [Devhints.io](https://devhints.io/) * [Pascal a 50 ans](https://pascal.developpez.com/actu/312929/Publie-pour-la-premiere-fois-en-1970-le-langage-de-programmation-Pascal-fete-ses-50-ans-retour-sur-quelques-details-cles-de-la-vie-du-langage/) ## Outils ### Web * [How MDN works ?](https://hacks.mozilla.org/2021/03/how-mdns-site-search-works/) * [SQL Lite 3.35](https://antonz.org/sqlite-3-35/) ### Gitlab * [Your rust project in production with Gitlab-CI](https://dev.to/mattdark/your-rust-project-on-production-with-gitlab-ci-and-google-app-engine-571n) * [Select CICD configuration from any job and reuse it](https://about.gitlab.com/releases/2021/02/22/gitlab-13-9-released/?utm_medium=social&utm_source=twitter#select-cicd-configuration-from-any-job-and-reuse-it) * [Running Gitlab-CI pipeline locally](https://github.com/firecow/gitlab-ci-local) * [10 tips to improve CI productivity](https://about.gitlab.com/blog/2021/02/18/improve-your-gitlab-productivity-with-these-10-tips/?utm_medium=social&utm_source=twitter&utm_campaign=blog) * [Hidden gems in Gitlab](https://cortana.at/posts/hidden-gems-gitlab/) * [Issue board configuration](https://www.garybell.co.uk/issue-board-configuration/) ### Autre * [Git rebase vs git merge](https://medium.com/@porteneuve/getting-solid-at-git-rebase-vs-merge-4fa1a48c53aa) ## Plateformes / Cloud ### Outils * [Focalboard](https://www.focalboard.com/) * [Fabric8 K8s client](https://github.com/fabric8io/kubernetes-client/releases/tag/v5.2.0) * [jib-cli](https://github.com/GoogleContainerTools/jib/tree/master/jib-cli) * [Keycloak 12.0.4 released](https://www.keycloak.org/2021/03/keycloak-1204-released.html) ## Méthodes ### Conception * [Guide d'éco-conception](https://eco-conception.designersethiques.org/guide/) ### Autre * [Conseils de Doctolib pour utiliser Slack](https://www.zdnet.fr/pratique/les-bons-conseils-de-doctolib-pour-bien-utiliser-slack-39918833.htm) ## Sécurité ### Failles * [OpenSSL new security version](https://mta.openssl.org/pipermail/openssl-announce/2021-March/000196.html) * [CDK container penetration toolkit](https://www.blackhat.com/asia-21/arsenal/schedule/#cdk-zero-dependency-container-penetration-toolkit-22422) * [3 (15 years old) linux kernel flaws](https://securityaffairs.co/wordpress/115565/security/linux-kernel-flaws.html) * [1ère exploitation sauvage de Spectre découverte](https://therecord.media/first-fully-weaponized-spectre-exploit-discovered-online/) * [Faille Exchange](https://www.zdnet.fr/actualites/failles-microsoft-exchange-le-nombre-de-victimes-s-envole-39919083.htm) * [Lord of the rings - faille Intel](https://www.nextinpact.com/lebrief/46361/lord-of-the-rings-encore-faille-dans-processeurs-intel) ### Attaques * [Emotet - 1 de perdu 10 de retrouvés](https://www.zdnet.fr/actualites/emotet-un-trojan-de-perdu-dix-de-retrouves-39919327.htm) * [Attaques sur les hôpitaux, c'est volontaire](https://www.zdnet.fr/actualites/hopitaux-et-ransomware-les-cybercriminels-savent-tres-bien-ou-ils-sont-39919235.htm) ### Outils * [TLS 1.0 et 1.1 dépréciés](https://www.bortzmeyer.org/8996.html) * [2 undocumented x86 instructions on Intel CPUs](https://twitter.com/_markel___/status/1373059797155778562) * [security.txt](https://securitytxt.org/) ### Vie privée * [Google veut faire évoluer le pistage](https://www.lesnumeriques.com/vie-du-net/google-veut-faire-evoluer-le-pistage-sur-internet-n161131.html) * [Doctolib et la confidentialité des données](https://www.zdnet.fr/actualites/doctolib-de-nouveau-chahute-sur-la-confidentialite-des-donnees-39919277.htm) ### Guides /1 * [Securityzines](https://securityzines.com/) * [Mot de passe fort ?](https://n.survol.fr/n/mot-de-passe-fort) * [Sécuriser les flux sortants par firewall](https://bearstech.com/societe/blog/dns-my-fw/) * [Oauth2 flows in gif](https://dev.to/hem/oauth-2-0-flows-explained-in-gifs-2o7a) ### Guides /2 * [Prévoir le désastre / sauvegarde et HA](https://bearstech.com/societe/blog/prevoir-le-desastre-sauvegarde-et-haute-disponibilite/) * [Common NGinX misconfigurations](https://blog.detectify.com/2020/11/10/common-nginx-misconfigurations/) * [Formation de la CNIL sur le RGPD](https://www.cnil.fr/fr/la-cnil-lance-sa-formation-en-ligne-sur-le-rgpd-ouverte-tous) ## Business ### Legal * [Le conseil d'état valide l'amende de la CNIL contre Google](https://www.zdnet.fr/actualites/le-conseil-d-etat-valide-l-amende-de-100-millions-d-euros-prononcee-par-la-cnil-contre-google-39919063.htm) * [Plan du gouvernement pour la filière électronique](https://www.lesnumeriques.com/vie-du-net/la-france-renforce-son-plan-de-reconquete-industrielle-pour-sa-filiere-electronique-n161163.html) * [La CdC recadre la grande école du numérique](https://www.nextinpact.com/article/46356/la-cour-comptes-recadre-grande-ecole-numerique) ### Entreprises * [SUSE prépare une IPO de plusieurs milliards](https://www.zdnet.fr/actualites/suse-se-prepare-a-une-introduction-en-bourse-de-plusieurs-milliards-d-euros-39919325.htm) * [Crosscall fournit la gendarmerie et la police](https://www.journaldugeek.com/2021/03/19/smartphones-crosscall-va-equiper-la-gendarmerie-et-la-police-dappareils-peu-communs/) ### Autre * [Convention Enedis / Openstreetmap France](https://www.openstreetmap.fr/convention-dechange-de-donnees-entre-enedis-et-openstreetmap-france/) * [DRMs are bad !](https://www.techdirt.com/articles/20210222/22342446297/drm-screws-people-yet-again-book-drm-data-breach-exposes-reporters-emails-passwords.shtml) * [Telesat lightspeed - avec Thalès - un concurrent pour StarLink](https://www.nextinpact.com/article/46271/telesat-lightspeed-298-satellites-pour-acces-mondial-a-internet-en-partenariat-avec-thales) ## Autre * [DHCPD change de mainteneur](https://roy.marples.name/archives/dhcpcd-discuss/0003457.html) * [Convertir un ancien laptop en second écran](https://www.slashdigit.com/convert-old-laptop-screen-external-monitor/) * [Animated engines](http://animatedengines.com/) * [v86 - x86 emulator](https://github.com/copy/v86/) * [Audacity 3.0.0](https://www.audacityteam.org/audacity-3-0-0-released/) * [Les NFT...](https://www.zdnet.fr/pratique/nft-tokens-non-fongible-la-nouvelle-lubie-de-la-blockchain-39919709.htm) ## Remarques / questions