Open Source Vulnerabilities - Who is Ultimately Responsible episode artwork

EPISODE · Dec 3, 2018 · 46 MIN

Open Source Vulnerabilities - Who is Ultimately Responsible

from The OWASP Podcast Series · host The OWASP Podcast Series

In this broadcast, I speak with Chris Roberts and Derek Weeks about lines of responsibility and npm package highjacking in light of the event-stream vulnerability announcement last week. The announcement of the event-stream npm package vulnerability has once again raised the issue of who it ultimately responsible when a breach like this is announced. Is it the original creator of the package? What about the team maintaining the package? Where does' the end user fit it in? How does social engineering come into play?

Episode metadata supplied by the publisher feed · Published Dec 3, 2018

Embed this episode

NOW PLAYING

Open Source Vulnerabilities - Who is Ultimately Responsible

0:00 46:31

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of The OWASP Podcast Series?

This episode is 46 minutes long.

When was this The OWASP Podcast Series episode published?

This episode was published on December 3, 2018.

Can I download this The OWASP Podcast Series episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!