The Devil is in the Dependencies: Software Supply Chain Security with Seth Vargo
About this talk
This talk addresses the significant risks associated with software supply chain security, highlighting how easily external code can be introduced into systems through commands like `npm install` or `go get`. The speaker explores the sophistication of modern attackers, who exploit social engineering techniques to compromise widely used downstream dependencies. Key challenges in securing the software supply chain are discussed, along with early-design proposed solutions that could influence future practices in building and managing containers.
More from this event
See all 57 talks →
How to: Options Galore to Get from Source Code to Container
35:44
ArgoCD Autopilot, Straightforward GitOps app Promotion Across Environments
31:03
Beyond Containers: The Future of Cloud Native with Priyanka Sharma (CNCF)
19:39
PRODYNA Dapr Developer centric approach to microservices
32:12