PodParley PodParley
DOP 111: What Are Software Supply Chain Attacks?

EPISODE · Jun 16, 2021 · 27 MIN

DOP 111: What Are Software Supply Chain Attacks?

from DevOps Paradox · host Darin Pope & Viktor Farcic

#111: Ever since Alex Birsan published his Dependency Confusion article in February 2021, the concept of the software supply chain has come to the forefront. The supply chain should not be a new concept to people, but many seemed to have been caught off guard. Today we talk about Alex's article along with a new project that allows you to manage your supply chain security in Tekton.   https://medium.com/@alex.birsan/dependency-confusion-4a5d60fec610 https://security.googleblog.com/2021/06/verifiable-supply-chain-metadata-for.html https://cloud.google.com/blog/products/identity-security/how-were-helping-reshape-software-supply-chain-ecosystem-securely https://portswigger.net/daily-swig/software-supply-chain-attacks-everything-you-need-to-know https://www.cisa.gov/publication/software-supply-chain-attacks https://www.whitesourcesoftware.com/resources/blog/software-supply-chain-attacks/ https://deps.dev/   YouTube channel: https://youtube.com/devopsparadox/   Books and Courses: Catalog, Patterns, And Blueprints https://www.devopstoolkitseries.com/posts/catalog/   Kubernetes Chaos Engineering With Chaos Toolkit And Istio https://www.devopstoolkitseries.com/posts/chaos/   Canary Deployments To Kubernetes Using Istio and Friends https://www.devopstoolkitseries.com/posts/canary/   Review the podcast on Apple Podcasts: https://www.devopsparadox.com/review-podcast/   Slack: https://www.devopsparadox.com/slack/   Connect with us at: https://www.devopsparadox.com/contact/

NOW PLAYING

DOP 111: What Are Software Supply Chain Attacks?

0:00 27:37

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Pulling the Strings Puppet Pulling the Strings is your guide to everything DevOps, from unpacking breaking trends to sharing helpful how-tos that make your life easier. In quick, casual conversations, Puppet engineers, open source community members, and global DevOps luminaries cover what you never knew you needed to know about DevOps. Whether it’s unpacking the latest tooling to sharing tips for getting buy-in from your team, Pulling the Strings is built for the DevOps devotees in all of us. All Things Considered by G. K. Chesterton Loyal Books Another delightful and sharply pointed excursion into the topics of the day, and of this day as well, with Gilbert Keith Chesterton. These reprinted magazine articles are filled with his good natured wit, his masterful use of paradox, and devastating ability to use reductio ad absurdum to destroy the popular myths that drive a society driving full-speed into secular humanism. You will come away with a whole new collection of wonderful quotes. (Ray Clare) DevOps and Docker Talk: Cloud Native Interviews and Tooling Bret Fisher Interviews from Bret Fisher's live show with co-host Nirmal Mehta. Topics cover container and cloud topics like Docker, Kubernetes, Swarm, Cloud Native development, DevOps, SRE, GitOps, DevSecOps, platform engineering, and the full software lifecycle. Full show notes and more info available at https://podcast.bretfisher.com The Dr. Gundry Podcast PodcastOne If you're ready to stop managing your symptoms and start healing the root cause—this podcast is for you. Dr. Steven Gundry is the doctor people find after every other doctor has run out of answers.A world-renowned cardiothoracic surgeon, gut-health pioneer, and bestselling author of The Plant Paradox, Dr. Gundry has spent over 20 years uncovering why so many people are still sick, tired, and struggling — and, more importantly, how to reverse it. He has helped hundreds of thousands of patients and followers lose stubborn weight, overcome autoimmune disease, eliminate chronic inflammation, and reclaim energy they thought was gone forever.What sets this podcast apart? Dr. Gundry still sees patients six days a week, analyzing real bloodwork to track exactly how nutrition and targeted supplements reduce inflammation, heal leaky gut, and stop disease in its tracks. Every episode is rooted in his latest clinical findings — not outdated guidelines.Four times a
URL copied to clipboard!