
Running What One Did Not Write
The shell one-liner, which twenty years ago required a trip to Usenet and the confidence of a stranger, is now produced …
Latest transmissions

The shell one-liner, which twenty years ago required a trip to Usenet and the confidence of a stranger, is now produced …

A compiler, asked to produce an object file from three lines of assembly, will produce a good deal more besides. It will …

I have set down what follows exactly as Mr. Aldous Renn told it to me, on three evenings in the autumn of his …

1 One of the minor peculiarities of writing about systems software in the present era is the Tour of the Sandbox. One …

A few days ago I began writing a toy version of gVisor — Google’s userspace kernel — as a way of discovering, in …

There is a particular kind of understanding that only comes from building a thing yourself — not reading about it, not …

I set down this account not because I expect to be believed, but because the alternative — to carry it alone — has …

I had known Aldous Verrall, in the loose and intermittent way one knows a man who was once one’s tutor, for the …

Red of Titian, red of blood and throne mercury sulfide crushed from cinnabar stone prisoners in Almadén, digging their …

I built a container runtime. Not a wrapper around runc, not a shim that delegates to someone else’s code — an …
The shell one-liner, which twenty years ago required a trip to Usenet and the confidence of a stranger, is now produced by a language model the moment one asks …
A compiler, asked to produce an object file from three lines of assembly, will produce a good deal more besides. It will emit debug sections describing the …
I have set down what follows exactly as Mr. Aldous Renn told it to me, on three evenings in the autumn of his retirement, in the small house he kept above the …
1 One of the minor peculiarities of writing about systems software in the present era is the Tour of the Sandbox. One reads a paper, reads some source, builds a …
A few days ago I began writing a toy version of gVisor — Google’s userspace kernel — as a way of discovering, in the only way one truly discovers such …
There is a particular kind of understanding that only comes from building a thing yourself — not reading about it, not studying the source, but sitting down …
I set down this account not because I expect to be believed, but because the alternative — to carry it alone — has become a weight I can no longer bear. The man …
I had known Aldous Verrall, in the loose and intermittent way one knows a man who was once one’s tutor, for the better part of fifteen years; and when his …
Red of Titian, red of blood and throne mercury sulfide crushed from cinnabar stone prisoners in Almadén, digging their own grave so that a Cardinal’s robe …
I built a container runtime. Not a wrapper around runc, not a shim that delegates to someone else’s code — an actual OCI runtime that uses fork, unshare, …
| Date | Category | Title | Words | Read |
|---|---|---|---|---|
| 2026-04-21 | code | Running What One Did Not Write | 2843 | 14 min |
| 2026-04-20 | code | The Sections One Did Not Ask For | 2310 | 11 min |
| 2026-04-19 | writing | The Map That Came True | 3860 | 19 min |
| 2026-04-19 | code | A Tour of the gVisor Front | 2226 | 11 min |
| 2026-04-18 | code | Hijacking Signals in Go - Notes from a Tiny gVisor | 2567 | 13 min |
| 2026-04-12 | code | mini-sentry - Building a Userspace Kernel in Go | 2045 | 10 min |
| 2026-04-12 | writing | The Signal and the Silence | 6111 | 29 min |
| 2026-03-29 | writing | The Answering Engine | 3925 | 19 min |
| 2026-03-28 | writing | Vermillion | 269 | 2 min |
| 2026-03-19 | code | ironbox - Building a Container Runtime from Scratch in Rust | 910 | 5 min |