Platform engineering is falling short of expectations

Person standing on a downward arrow suggestive of platform engineering falling short of expectations in embedded software.

Platform engineering – lauded for its potential to revolutionise software development with automation, self-service, and streamlined workflows – appears to be falling short of expectations in the embedded software world.

A new study by Forrester Consulting, commissioned by Qt Group, reveals a stark disconnect between the perceived maturity of platform engineering strategies and their actual implementation.

The research – surveying 317 decision-makers and...

Android 15: Developer productivity and UX take centre stage

Google has announced the release of Android 15, making the source code readily available through the Android Open Source Project (AOSP).

Supported Pixel devices are set to receive the update in the coming weeks, with a wider rollout to devices from manufacturers like Samsung, Honor, and OnePlus planned for the coming months.

“Android 15 continues our mission of building a private and secure platform that helps improve your productivity while giving you new capabilities...

Xbox backlash grows as developer claims ‘they don’t care’

Enotria: The Last Song, a Soulslike game inspired by Italian folklore, is set to release on 17th September for PS5 and PC. However, Xbox players will have to wait – perhaps indefinitely – due to platform submission issues and what the developer claims is a lack of support from Microsoft.

Jacky Greco, CEO of Jyamma Games, the studio behind Enotria, said: "We’ve Xbox Series X/S version ready, but we can’t proceed with submission and release. I spent a lot of money porting...

Roblox developers targeted by year-long malware campaign

A sustained malware campaign targeting Roblox developers through malicious npm packages has been uncovered by Checkmarx security researchers. The attackers are impersonating the popular “noblox.js” library, publishing dozens of packages designed to steal sensitive information and compromise systems.

The campaign, which has been active for over a year, exploits trust in the open-source ecosystem. It particularly targets the Roblox platform, a lucrative target due to its massive...

Sony bets on Web3 with Soneium blockchain and incubation programme

Sony Block Solutions Labs has announced the launch of Soneium Minato, a new Ethereum layer-2 testnet, alongside an incubation programme called Soneium Spark. Aimed at establishing Soneium as a key Web3 infrastructure, the initiatives leverage Sony Group's reach to drive mainstream adoption across a range of applications. 

Driven by the vision to "Realise the Open Internet that Transcends Boundaries," Sony Block Solutions Labs seeks to demystify and promote Web3 to a wider...

GitHub Enterprise Server 3.13.3 tackles critical SAML vulnerability

GitHub has released Enterprise Server 3.13.3, addressing several security vulnerabilities, including a critical flaw affecting instances using SAML single sign-on. 

Alongside security patches, the update delivers bug fixes, minor feature enhancements, and changes to the platform.

The most pressing issue tackled by this update is a critical vulnerability (CVE-2024-6800) impacting instances employing SAML SSO with specific Identity Providers...

CMA shelves app store probes to leverage digital market powers

Signalling its intent to leverage new powers granted by the Digital Markets, Competition, and Consumers Act (DMCCA), the Competition and Markets Authority (CMA) has closed its investigations into Google's Play Store and Apple's App Store.

The investigations – launched over concerns that both tech giants were unfairly leveraging their dominant market positions, to the detriment of UK app developers and consumers – focused primarily on rules mandating the use of proprietary...

SQL, Python, and Java most sought-after skills

SQL, Python, and Java remain the most sought-after programming skills by employers, according to new research from System Design School. The study analysed job listings on Glassdoor, revealing the languages most frequently cited as required skills.

"In today's competitive job market, having the right skills is more important than ever, and this data provides clear evidence of the programming languages employers are seeking,” commented Sheldon Chi, ex-Google engineer and creator...

Unit 42 researchers uncover critical GitHub Actions vulnerability

A new attack vector that could compromise GitHub repositories has been uncovered by researchers at Palo Alto Networks' Unit 42 team. The vulnerability, which exploits GitHub Actions artifacts generated during CI/CD workflows, could potentially grant high-level access to cloud environments.

The researchers found that a combination of misconfigurations and security flaws can cause artifacts to leak tokens, including those for third-party cloud services and GitHub itself. These...

GitHub’s Copilot Autofix triples vulnerability remediation speed

Shipping software quickly often comes at the cost of security, with vulnerabilities inadvertently making their way into production code. This poses a significant challenge, as many developers find security requirements complex and difficult to implement.

"Developers are shipping software faster than previously imaginable, releasing new features early and often. Yet, despite their best efforts to code securely, software vulnerabilities inadvertently make their way into production...