Rita Zhang's Avatar

Rita Zhang

@ritazh.bsky.social

Eng Lead @Microsoft, #Kubernetes SIG Auth chair, Founder @GarageDoorBuddy, EECS @UCBerkeley, open source, running distributed workloads at scale

881 Followers  |  233 Following  |  16 Posts  |  Joined: 27.04.2023  |  2.0094

Latest posts by ritazh.bsky.social on Bluesky

I'm super excited for Wassette, so I put together a quick article on why it's important and a comparison with our current options for MCP.

07.08.2025 12:13 β€” πŸ‘ 9    πŸ” 4    πŸ’¬ 1    πŸ“Œ 3
Preview
Introducing Wassette: WebAssembly-based tools for AI agents - Microsoft Open Source Blog Wassette is a secure, open-source Model Context Protocol server that leverages WebAssembly to provide a trusted execution environment for untrusted tools.

Introducing Wassette: WebAssembly-based tools for AI agents by Yosh Wuyts opensource.microsoft.com/blog/2025/08...

06.08.2025 15:35 β€” πŸ‘ 8    πŸ” 6    πŸ’¬ 0    πŸ“Œ 4
Post image

TIL @microsoft.com is the largest cloud contributor to #oss @cncf.io projects #MSBuild

20.05.2025 18:00 β€” πŸ‘ 24    πŸ” 8    πŸ’¬ 2    πŸ“Œ 2
Preview
Simplifying InfiniBand on AKS Learn the what, the whys, and the hows of configuring InfiniBand networking for high performance compute (HPC) workloads on AKS

Need to run really large LLMs that require the power of RDMA with InfiniBand?
Check out this blog to see how to get it working on Azure Kubernetes Service:
azure.github.io/AKS/2025/04/...

#AKS #Kubernetes #InfiniBand #AI #LLM #RDMA #Azure

14.04.2025 23:11 β€” πŸ‘ 3    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Maintainers of the containerd project speaking at KubeCon EU

Maintainers of the containerd project speaking at KubeCon EU

Maintainers of the containerd project presenting at KubeCon EU providing an update on recent changes and releases

Maintainers of the containerd project presenting at KubeCon EU providing an update on recent changes and releases

The @containerd.dev maintainer session is underway at #KubeCon EU in London with an awesome cross-section of contributors and maintainers from both the core project and subprojects like nerdctl and runwasi.

03.04.2025 16:50 β€” πŸ‘ 16    πŸ” 5    πŸ’¬ 1    πŸ“Œ 1

πŸ‘‹ Betty!!!

03.04.2025 20:51 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

I will be there on behalf of sig auth and the k8s security response committee. See you there! #kubecon

03.04.2025 08:59 β€” πŸ‘ 6    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Preview
KubeCon + CloudNativeCon Europe 2025: Kubernetes SIG Meet & Greet Lunch and Le... View more about this event at KubeCon + CloudNativeCon Europe 2025

Day 2 of #KubeCon begins tomorrow! On Day 1, we learned from keynotes & sessions & enjoyed the #Kubecrawl party. We hope you're ready to do it all again tomorrow! Don't forget to stop by the Project Pavillion during lunch to meet the Kubernetes community!

02.04.2025 18:00 β€” πŸ‘ 9    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Post image

Standing room only for the talk on Policy as code by @ritazh.bsky.social, Joe Betz, Andy Sunderman, and Jim Bugwadia

02.04.2025 14:00 β€” πŸ‘ 5    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Rita Zhang speaking at KubeCon

Rita Zhang speaking at KubeCon

Rita introducing Gatekeeper

Rita introducing Gatekeeper

Chart about where Gatekeeper fills in gaps versus VAP/MAP

Chart about where Gatekeeper fills in gaps versus VAP/MAP

Gatekeeper instead of VAP: examples

Gatekeeper instead of VAP: examples

OPA Gatekeeper (open-policy-agent.github.io/gatekeeper/) as explained by @ritazh.bsky.social at #KubeCon: tooling to help enforce your Kubernetes policies.

02.04.2025 13:50 β€” πŸ‘ 5    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Post image

huge fan of headlamp moving into kubernetes to improve the dashboard and devex experience for all k8s users! kudos @ahrkrak.bsky.social and team! #kubecon #cloudnativecon

02.04.2025 09:05 β€” πŸ‘ 21    πŸ” 11    πŸ’¬ 0    πŸ“Œ 0
Greg on stage with a slide β€œLinux runs the world”

Greg on stage with a slide β€œLinux runs the world”

Fantastic to have Greg K-H on the #kubecon keynote stage!

02.04.2025 09:13 β€” πŸ‘ 12    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Post image

Making kubernetes easier to use. better UX = happier humans with @headlamp_ui #KubeCon keynote. Now part of sig UI @ahrkrak.bsky.social

02.04.2025 09:19 β€” πŸ‘ 31    πŸ” 5    πŸ’¬ 0    πŸ“Œ 0
Post image

Dynamic Resource Allocation feature highlighted on the big stage #kubecon keynote

02.04.2025 08:50 β€” πŸ‘ 6    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

So many great CNCF projects are hitting the 10 year mark! So grateful to be part of the journey #kubecon

02.04.2025 08:37 β€” πŸ‘ 8    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Post image Post image

If you are attending #KubeCon πŸ‡¬πŸ‡§next week, come and say hi! I will be co-presenting 2 talks:
sched.co/1tcxh
sched.co/1tczC

28.03.2025 23:43 β€” πŸ‘ 17    πŸ” 4    πŸ’¬ 2    πŸ“Œ 0
Post image

Mind the crashloop #kubecon πŸ‘Œ

31.03.2025 08:12 β€” πŸ‘ 51    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0

Folks from the US traveling in London, if you have tmobile, can you tell me if the connection is good or spotty or slow? thanks πŸ™ #kubecon

29.03.2025 22:58 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 2    πŸ“Œ 0
Post image Post image

If you are attending #KubeCon πŸ‡¬πŸ‡§next week, come and say hi! I will be co-presenting 2 talks:
sched.co/1tcxh
sched.co/1tczC

28.03.2025 23:43 β€” πŸ‘ 17    πŸ” 4    πŸ’¬ 2    πŸ“Œ 0
Preview
Remote Code Execution Vulnerabilities in Ingress NGINX | Wiz Blog Wiz Research uncovered RCE vulnerabilities (CVE-2025-1097, 1098, 24514, 1974) in Ingress NGINX for Kubernetes allowing cluster-wide secret access.

πŸ”₯ Whoa! Check out these critical Ingress NGINX vulnerabilities that could impact your Kubernetes clusters.

Curious about better gateway solutions? Our very own Marco Ebert will be sharing what we've learned building a Gateway API implementation on NGINX at #KubeCon!

28.03.2025 12:13 β€” πŸ‘ 2    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Hyperlight Wasm: Fast, secure, and OS-free - Microsoft Open Source Blog We're announcing the release of Hyperlight Wasm: a Hyperlight virtual machine β€œmicro-guest” that can run wasm component workloads written in many programming languages. Learn more.

Something I can't wait to talk about at #wasmio and @rejekts.io and at #kubecon: how to run #webassembly components at scale but with efficient hardware protection using #hyperlight.
aka.ms/hyperlight-w...

26.03.2025 14:04 β€” πŸ‘ 17    πŸ” 12    πŸ’¬ 2    πŸ“Œ 2

Running #Wasm components inside of a hypervisor and being able to tailor the exact interface between the hosted application and the trusted compute base enables platform builders unequaled ability to tune precisely the access provided to untrusted application code.

26.03.2025 14:19 β€” πŸ‘ 13    πŸ” 4    πŸ’¬ 1    πŸ“Œ 1
Preview
Build a Hyperlight C guest to securely execute Javascript - Microsoft Open Source Blog This article will show you how to create a β€œguest” application that uses the Hyperlight library and have fun with some JavaScript. Learn more.

Delighted to see this post land! Learn how you can make a guest for Hyperlight to execute code in a secure sandbox with "Build a Hyperlight C guest to securely execute Javascript" opensource.microsoft.com/blog/2025/03...

10.03.2025 19:41 β€” πŸ‘ 6    πŸ” 6    πŸ’¬ 1    πŸ“Œ 0
Post image Post image

Overwhelmed by CVEs in container images? This series about Copacetic can help. 😊

28.02.2025 15:25 β€” πŸ‘ 2    πŸ” 3    πŸ’¬ 1    πŸ“Œ 0
LEGO Card Dealing Machine
YouTube video by Rita Zhang LEGO Card Dealing Machine

Lego Card Dealing Machine youtu.be/ed9pLQLkCEM more details: ritazh.com/lego-card-deal… #lego #automation #petproject

17.02.2025 18:55 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Hyperlight: Creating a 0.0009-second micro-VM execution timeΒ  - Microsoft Open Source Blog In this post, we’ll take the demo application and show how it demonstrates one way you can use Hyperlight in your applications.Β Learn more.

At #KubeConNA2024, we demoed super fast, hardware-protected micro-VMs with Hyperlightβ€”executing untrusted code in just 900Β΅s!

Read how we achieved this & try the demo yourself: πŸ”— opensource.microsoft.com/blog/2025/02...

#RustLang #WebAssembly #CloudNative #MicroVMs

11.02.2025 17:25 β€” πŸ‘ 10    πŸ” 6    πŸ’¬ 0    πŸ“Œ 4
Preview
GitHub - hyperlight-dev/hyperlight: Hyperlight is a lightweight Virtual Machine Manager (VMM) designed to be embedded within applications. It enables safe execution of untrusted code within micro virt... Hyperlight is a lightweight Virtual Machine Manager (VMM) designed to be embedded within applications. It enables safe execution of untrusted code within micro virtual machines with very low latenc...

Hey Folks, join us for our first public community meeting for github.com/hyperlight-d... on Wednesday Feb. 5th at 9am PT (dateful.com/convert/pst-...). You can find the join details and agent for the meeting here hackmd.io/blCrncfOSEuq.... Feel free to add topics. See you soon!

#rust #hyperlight

03.02.2025 19:11 β€” πŸ‘ 8    πŸ” 6    πŸ’¬ 0    πŸ“Œ 3
Post image

Did a talk this morning about my career and how to make an impact as an IC. Here's the last slide.

24.01.2025 00:17 β€” πŸ‘ 217    πŸ” 36    πŸ’¬ 8    πŸ“Œ 3
Search Jobs | Microsoft Careers

πŸš€ Azure Upstream team is hiring in the US! Looking for Senior engineer to build cloud native OSS projects with #Kubernetes. 100% remote jobs.careers.microsoft.com/global/en/jo... DMs open! #opensource #hiring

19.12.2024 22:35 β€” πŸ‘ 25    πŸ” 22    πŸ’¬ 0    πŸ“Œ 3

If you are at kubecon india tomorrow, swing by the @microsoft.com both at 3 PM for some hot #webassembly action. We will help, we will scream, we will run on arm chips. #goFigure

11.12.2024 16:06 β€” πŸ‘ 10    πŸ” 5    πŸ’¬ 1    πŸ“Œ 1

@ritazh is following 20 prominent accounts