The Devil is in the Dependencies: Software Supply Chain Security with Seth Vargo

14:34 · 21 Sep 2021 – 23 Sep 2021 · YouTube

About this talk

This talk addresses the significant risks associated with software supply chain security, highlighting how easily external code can be introduced into systems through commands like `npm install` or `go get`. The speaker explores the sophistication of modern attackers, who exploit social engineering techniques to compromise widely used downstream dependencies. Key challenges in securing the software supply chain are discussed, along with early-design proposed solutions that could influence future practices in building and managing containers.

From event

ContainerDays 2021

21 Sep 2021 – 23 Sep 2021

All event videos
Back to Watch