Software Dependencies: Do you Know What’s Lurking in your Software? - DevOps 219
Update: 2024-10-17
Description
Charles is joined by Caleb Fornari and Jeffrey Groman as we discuss the challenges of public versus private package managers and the security implications of using public repositories.
Links
Picks
Become a supporter of this podcast: https://www.spreaker.com/podcast/adventures-in-devops--6102036/support.
Links
- Adventures in DevOps - Devchat.tv
- Dependency Confusion: How I Hacked Into Apple, Microsoft and Dozens of Other Companies
- Devchat.tv | JSJ 357: Event-Stream & Package Vulnerabilities with Richard Feldman and Hillel Wayne
- Malicious code found in npm package event-stream downloaded 8 million times in the past 2.5 months
- GitHub | The Node Security Platform
Picks
- Caleb- Have a plan to mitigate damage if someone is able to get inside your network. Don’t just secure the public side of your technical infrastructure, make sure your internal security as just as strong as your external security.
- Charles- Dev Heroes Accelerator | Devchat.tv
- Charles- The Umbrella Academy | Netflix
- Charles- Personal Retreat
- Jeffrey- Asset management: Know and document where all of your digital assets reside. Whether servers, VMs, EC2 instances, and all of your structured and unstructured data.
- Jeffrey- You can’t secure what you don’t know about
Become a supporter of this podcast: https://www.spreaker.com/podcast/adventures-in-devops--6102036/support.
Comments
Top Podcasts
The Best New Comedy Podcast Right Now – June 2024The Best News Podcast Right Now – June 2024The Best New Business Podcast Right Now – June 2024The Best New Sports Podcast Right Now – June 2024The Best New True Crime Podcast Right Now – June 2024The Best New Joe Rogan Experience Podcast Right Now – June 20The Best New Dan Bongino Show Podcast Right Now – June 20The Best New Mark Levin Podcast – June 2024
In Channel