
  <rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
      <title>RXRW</title>
      <link>https://stb.id.au/blog</link>
      <description>Building applications, securing infrastructure and applications, and everything in-between.</description>
      <language>en-us</language>
      <managingEditor>dev@stb.id.au (Shane Boulden)</managingEditor>
      <webMaster>dev@stb.id.au (Shane Boulden)</webMaster>
      <lastBuildDate>Tue, 29 Sep 2026 00:00:00 GMT</lastBuildDate>
      <atom:link href="https://stb.id.au/tags/base/feed.xml" rel="self" type="application/rss+xml"/>
      
  <item>
    <guid>https://stb.id.au/blog/whose-cve-is-it-anyway</guid>
    <title>Whose CVE is it anyway?</title>
    <link>https://stb.id.au/blog/whose-cve-is-it-anyway</link>
    <description>Exploring separation of duties across the application lifecycle. Whose responsibility is it to manage CVEs in base images, vs the application? And how do you provide tools to manage this security boundary?</description>
    <pubDate>Tue, 29 Sep 2026 00:00:00 GMT</pubDate>
    <author>dev@stb.id.au (Shane Boulden)</author>
    <category>openshift</category><category>kubernetes</category><category>rhacs</category><category>security</category><category>base</category><category>application</category><category>vulnerability</category>
  </item>

    </channel>
  </rss>
