惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
MyScale Blog
MyScale Blog
F
Fortinet All Blogs
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Stack Overflow Blog
Stack Overflow Blog
MongoDB | Blog
MongoDB | Blog
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
Blog — PlanetScale
Blog — PlanetScale
Jina AI
Jina AI
T
Tenable Blog
S
Securelist
S
Schneier on Security
C
Cyber Attacks, Cyber Crime and Cyber Security
T
Tor Project blog
C
Cisco Blogs
The Hacker News
The Hacker News
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
O
OpenAI News
V
Vulnerabilities – Threatpost
V
Visual Studio Blog
Security Latest
Security Latest
T
Threatpost
博客园 - 三生石上(FineUI控件)
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
H
Hacker News: Front Page
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
IT之家
IT之家
I
InfoQ
博客园_首页
Apple Machine Learning Research
Apple Machine Learning Research
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
A
About on SuperTechFans
Know Your Adversary
Know Your Adversary
Martin Fowler
Martin Fowler
Forbes - Security
Forbes - Security
F
Full Disclosure
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
Google DeepMind News
Google DeepMind News
Hacker News - Newest:
Hacker News - Newest: "LLM"
P
Privacy International News Feed
酷 壳 – CoolShell
酷 壳 – CoolShell
C
CERT Recently Published Vulnerability Notes
N
News and Events Feed by Topic
V
V2EX
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
T
Threat Research - Cisco Blogs
S
Secure Thoughts
量子位
博客园 - 【当耐特】

Blog

Canonical announces the Enterprise Store as part of Ubuntu Pro | Canonical Tracing a memory leak bug in PID 1 and contributing an upstream fix: a Linux support story | Canonical MAAS installation: bare metal provisioning is easier than ever | Canonical Januscape vulnerability CVE-2026-53359 mitigations available | Canonical Managing Ubuntu on bare metal at scale | Canonical Ubuntu Server: a platform made for enterprise scale | Canonical Building an open source chain of trust: new research uncovers key blockers and ways forward | Canonical Beyond safety and security: Why automotive open source demands dependability  | Canonical DirtyClone Linux kernel local privilege escalation vulnerability fixes available | Canonical pedit COW kernel local privilege escalation vulnerability mitigations | Canonical Canonical becomes Gold Sponsor of Trifecta Tech Foundation | Canonical Challenges designers face in open source (and how to fix them) | Canonical Hunting a 16-year-old SQLite bug with TLA+: is dqlite affected? | Canonical Anbox Cloud on C4A metal: Android, at scale, without friction | Canonical Canonical announces live kernel patching for Arm64 | Canonical How to use RISC-V custom instructions with Ubuntu | Canonical Ubuntu Summit 26.04: connected by open source | Canonical So you need to add microcontrollers to your fleet: now what? | Canonical Validating real-world skills through Canonical Academy | Canonical Template: Streamlining open source design contributions | Canonical Beyond Mythos: responding to a new threat landscape | Canonical A look into Ubuntu Core 26: Building a local AI inference appliance in a virtual machine | Canonical This year we celebrate a decade of Ubuntu Server support on the s390x architecture: marking a long-standing collaboration between Canonical and IBM that began at LinuxCon 2015. The first release happened on April 21, 2016, bringing Ubuntu 16.04 LTS (Xenial Xerus) to IBM Z and IBM LinuxONE platforms.  A first for Ubuntu on IBM That […] AI at the edge: simplifying infrastructure with Cisco and Canonical | Canonical The next era of telco clouds: get open infrastructure choice with Sylva and Canonical Kubernetes | Canonical What is RDMA over Converged Ethernet (RoCE)? | Canonical Beyond tokens per watt – using Ubuntu 26.04 LTS for AI Beyond tokens per watt – using Ubuntu 26.04 LTS for AI | Canonical A look into Ubuntu Core 26: Deploying AI models on Renesas RZ/V series for production | Canonical RISC-V profiles – why is RVA23 significant? | Canonical AI with AMD ROCm on Ubuntu: your questions answered | Canonical When distributed workloads stall because nodes cannot exchange small messages quickly and consistently, the network is the limiting factor. How do you solve that problem? InfiniBand offers one solution. InfiniBand is an interconnect, meaning the end-to-end communication system that links compute, storage, and accelerator nodes. It is impl […] Microsoft has announced the preview of Azure Cobalt 200, its second-generation custom Arm silicon. Learn how Ubuntu and Ubuntu Pro support these new VMs from day one, offering seamless deployment, long-term security maintenance, and Kernel Livepatch without requiring engineering or platform changes […] How Canonical Support solves hard Linux performance bugs  – even in 12-year old code | Canonical Securing AI agent workflows on Ubuntu with the new NVIDIA OpenShell snap | Canonical Canonical announces optimized Ubuntu images for TPU virtual machines by Google Cloud | Canonical VMware hypervisor deployment using MAAS | Canonical Migrating from Apache Spark 3 to Spark 4 | Canonical Introducing Workshop: launch sandboxed development environments on Ubuntu with a single command | Canonical Run agentic workloads on Arm and Ubuntu | Canonical Decoding design: How design and engineering thrive together in open source | Canonical Developing web apps with local LLM inference | Canonical A local privilege escalation (LPE) security vulnerability in the Linux kernel, codename “PinTheft,” was publicly disclosed on May 19, 2026. The vulnerability was fixed in the mainline Linux kernel tree. A proof-of-concept exploit was published along with public disclosure. This has been assigned the CVE ID CVE-2026-43494; other discoverin […] Canonical has announced the general availability of Managed Kubeflow on the Microsoft Azure Marketplace. This fully managed MLOps platform allows enterprise AI teams to deploy a production-ready environment in under an hour, eliminating infrastructure maintenance. […] A look into Ubuntu Core 26: Cloud-powered edge computing with AWS IoT Greengrass and Azure IoT Edge | Canonical CVE-2026-46333 (ssh-keysign-pwn) Linux kernel vulnerability mitigations | Canonical Finding the blind spot: How Canonical hunts logic flaws with AI | Canonical A local privilege escalation (LPE) vulnerability affecting the Linux kernel has been publicly disclosed on May 13, 2026. The vulnerability does not have a CVE ID published, but is referred to as “Fragnesia.” The vulnerability affects multiple Linux distributions, including all Ubuntu releases. The affected components are the Linux kernel […] Rethinking BYOD security: protecting data without trusting devices | Canonical Two local privilege escalation (LPE) vulnerabilities affecting the Linux kernel have been publicly disclosed on May 7, 2026. The vulnerabilities have been assigned the IDs CVE-2026-43284 and CVE-2026-43500 and are referred to as “Dirty Frag.” The affected components are Linux kernel modules. The first vulnerability impacts the modules tha […] Three weeks to go: A sneak peek of the Ubuntu Summit 26.04 experience | Canonical How to use Ubuntu on Windows | Canonical A local privilege escalation (LPE) vulnerability affecting the Linux kernel has been publicly disclosed on April 29, 2026. The vulnerability has been assigned CVE ID CVE-2026-31431 and is referred to as Copy Fail. The affected component is a kernel module that provides hardware-accelerated cryptographic functions: algif_aead. The vulnerab […] Run NVIDIA Nemotron 3 Nano Omni locally in a single command | Canonical Why Web Engineering is great | Canonical Ubuntu 16.04 LTS (Xenial Xerus) reached the end of its five-year Expanded Security Maintenance (ESM) window in April 2026. If you are still running 16.04, it is critical to address your support status to ensure continued security and compliance. Your support options Now that 16.04 is in its Legacy phase, you have two primary paths: […] Understanding disaggregated GenAI model serving with llm-d | Canonical From Jammy to Resolute: how Ubuntu’s toolchains have evolved | Canonical Hybrid search and reranking: a deeper look at RAG | Canonical Canonical expands Ubuntu support to next-generation MediaTek Genio 520 and 720 platforms | Canonical In this article, Keirthana TS, a Senior Technical Author at Canonical, breaks down what leadership means to her and how she understood the power of intentional leadership through her journey at Canonical. […] Ubuntu Pro comes to Nutanix bare-metal Kubernetes | Canonical RISC-V 101 – what is it and what does it mean for Canonical? | Canonical Ubuntu Summit 26.04 is coming: Save the date and share your story! | Canonical How to manage Ubuntu fleets using on-premises Active Directory and ADSys | Canonical Simplify bare metal operations for sovereign clouds | Canonical How to Harden Ubuntu SSH: From static keys to cloud identity | Canonical The “scanner report has to be green” trap | Canonical Modern Linux identity management: from local auth to the cloud with Ubuntu | Canonical Canonical welcomes NVIDIA’s donation of the GPU DRA driver to CNCF | Canonical Hot code burns: the supply chain case for letting your containers cool before you ship | Canonical
Virtualized Android comes to Anbox Cloud | Canonical
Bertrand Boisseau · 2026-06-17 · via Blog

With our latest 1.30.0 Anbox Cloud release, available today, we are introducing one of the most significant evolutions of the platform to date: support for virtualized Android. 

For the first time, Anbox Cloud can launch complete Android system images inside lightweight virtual machines, managed and orchestrated through the same Anbox APIs our users already rely on.

This new capability does not replace what Anbox Cloud already does well; it expands it. Containerized Android remains a first-class citizen, and virtualized Android adds a powerful new option when full system fidelity is required.

Two paths, one platform

We initially designed Anbox Cloud with containerized Android in mind because we consider that containers are an excellent fit for most cloud workloads that require fast and easy scaling. Indeed, containers are quick to start, they require fewer resources, and they work seamlessly with most orchestration systems. Today, containerized Android is still the ideal approach for large-scale Android application deployments for multiple use cases such as streaming, testing, automation, etc.

However, we’ve been seeing an increase in demand for workloads that go beyond applications and that would require full control over the Android system. Custom kernels, modified system services, vendor-specific components, or close alignment with physical devices all fall into this category. These are precisely the cases where containerization alone becomes restrictive and virtualized Android solutions, like Cuttlefish, become a better fit.

Virtualized Android fills this gap by allowing Android to run as a full system within a virtual machine (VM), while still allowing users to benefit from Anbox Cloud’s existing features like instance management, automation, and scalability.

“With virtualized Android in Anbox Cloud, developers can now run complete Android system images on cloud and bare-metal infrastructure such as Google Cloud C4A-metal.”  says Cedric Gegout, Canonical VP of Products. “This gives engineering teams a new way to industrialize Android: consistent environments, repeatable pipelines, higher density, and infrastructure that can be managed like any other cloud-native workload.”

Teams using highly customized Android images can easily transition them to the cloud without sacrificing quality. 

Developers using Cuttlefish-based images can now enjoy a scalable environment that fits perfectly into their CI and automation workflows. Automotive OEMs, who usually deeply modify their Android Automotive OS (AAOS) images, can test entire Android systems in a consistent, cloud-native environment.

All of this takes place within the same Anbox Cloud experience that our users enjoy: the APIs, tooling, and workflows remain consistent, regardless of how Android is executed.

What really changed under the hood

This release represents a significant architectural shift.

Historically, Android in Anbox Cloud always ran as a containerized Android system. Typically, that container was hosted as an Android container running inside another container.

While this gave us flexibility at the infrastructure level, Android itself was still constrained to a container environment. With this new release, that changes.

Anbox Cloud now supports two distinct Android execution models:

  • An Android container running inside a container
  • A full Android virtual machine running inside a container

Representation of a key difference between virtualized Android and containerized Android 

In other words, Android is no longer always containerized. When using the virtualized option, Android runs as a complete VM, with its own kernel and system environment, enabling significantly broader compatibility with custom and modified system images.

More importantly, LXD remains the foundation of everything. Whether Android is running in a container or a virtual machine, Anbox Cloud still relies on LXD for strong isolation, simple resource management, and orchestration, preserving our users’ familiar operating model.

When is virtualized Android more suitable than containerized Android?

The addition of virtualized Android is about choosing the right tool for the job.

When you require complete control over the Android system image, virtualized Android is the best choice. This includes custom Android Open Source Project (AOSP) or AAOS builds, OEM-specific images, and modified Google reference images such as Cuttlefish. 

It’s ideal for system validation, device-level testing, platform development, and any workload that relies on low-level Android behavior.

When it comes to applications rather than the operating system, containerized Android is still the best option. Indeed, for Android apps, containers continue to provide superior scaling efficiency and simplicity for high-density deployments and fast startup times.

Both approaches have clear advantages, and Anbox Cloud now supports both rather than forcing users to choose between them.

Looking ahead

This release is a major step toward our long-term vision: making Anbox Cloud the most powerful platform for running Android in the cloud, whether at the application level or at the full system level.

Containerized Android continues to deliver speed and scale, whereas virtualized Android provides compatibility and control. With both options, Anbox Cloud gives our users the freedom to select what works best for their workloads now and in the future.

If you are looking for architectural and technical details, download our latest whitepaper “From containerized Android™ to full system virtualization”.

Try it now and stay tuned for further developments in our upcoming releases. For detailed instructions on how to upgrade your existing deployment, please refer to the Anbox Cloud documentation.

Further reading

Learn everything about virtualized Android with Anbox Cloud in our latest whitepaper.
If you need details to get started, go through our Anbox Cloud documentation
Learn more about Anbox Cloud or contact our team to discuss your use case


Android is a trademark of Google LLC. Anbox Cloud uses assets available through the Android Open Source Project.I’m testing testing and I don’t see the first chunk and I’m pausingFirst chunk not appearing
The Android robot is reproduced or modified from work created and shared by Google and used according to terms described in the Creative Commons 3.0 Attribution License.

Related posts


Rethinking BYOD security: protecting data without trusting devices

Ubuntu Ubuntu tech blog

BYOD (bring your own device) has always looked better on paper than it does in real life. The promise is clear: let people use the gadgets they already own. Less friction, lower costs, and more freedom. But when security and privacy are non-negotiable, the conversation around BYOD usually ends quickly. Not because BYOD is a ...


Cloud-native Android™ infotainment: your CI pipeline shouldn’t depend on hardware

Automotive Ubuntu tech blog

More and more often, infotainment systems are being developed and delivered like software, yet often they are still tested and validated using hardware-centric processes. This is far from ideal: access to devices is limited, environments are difficult to reproduce, and iteration slows down as soon as multiple teams need to work in paralle ...