# CYA: Contain Your Architecture Mitigating The Hugging Face Breach

## Jed Salazar

### Head of Security

Jed Salazar is an expert in cloud-native security with a focus on container isolation, eBPF, and supply chain security. A KubeCon speaker and published author, he writes on runtime security, Kubernetes trust boundaries, and GPU attack surfaces.

June 2, 2026

LLMs Escaped Docker 18 times. Zero Escapes on Edera.

April 20, 2026

Minimal Is No Longer Enough

April 10, 2026

Your Pod's Kernel Has Better Metrics Than Your Monitoring Stack

The Price of a Zero-Day Vulnerability Is An API Call

April 8, 2026

User Namespaces Are Not a Security Boundary

April 7, 2026

I Looked at the GPU Stack at KubeCon and Now I Can't Sleep

March 30, 2026

What Every Cloud Native Engineer Needs to Know About Kernel Memory

March 21, 2026

Your Laptop Is Not a Build System

March 18, 2026

Faster Than runc: Benchmarking Edera on Amazon EKS

March 11, 2026

CVE-2026-24834: When Trusting The Guest Goes Wrong

February 20, 2026
