Adventures in DevOps

DevOps 064: Software Dependencies: Do you Know What’s Lurking in your Software?


Listen Later

Charles is joined by Caleb Fornari and Jeffrey Groman as we discuss the challenges of public versus private package managers and the security implications of using public repositories.

Panel
  • Caleb Fornari
  • Charles Max Wood
  • Jeffrey Groman
  • Sponsors
    • Dev Heroes Accelerator
    • Links
      • Adventures in DevOps - Devchat.tv
      • Dependency Confusion: How I Hacked Into Apple, Microsoft and Dozens of Other Companies
      • Devchat.tv | JSJ 357: Event-Stream & Package Vulnerabilities with Richard Feldman and Hillel Wayne
      • Malicious code found in npm package event-stream downloaded 8 million times in the past 2.5 months
      • GitHub | The Node Security Platform
      • Picks
        • Caleb- Have a plan to mitigate damage if someone is able to get inside your network. Don’t just secure the public side of your technical infrastructure, make sure your internal security as just as strong as your external security.
        • Charles- Dev Heroes Accelerator | Devchat.tv
        • Charles- The Umbrella Academy | Netflix
        • Charles- Personal Retreat
        • Jeffrey- Asset management: Know and document where all of your digital assets reside. Whether servers, VMs, EC2 instances, and all of your structured and unstructured data.
        • Jeffrey- You can’t secure what you don’t know about
        •  

          ...more
          View all episodesView all episodes
          Download on the App Store

          Adventures in DevOpsBy Will Button, Warren Parad

          • 4.4
          • 4.4
          • 4.4
          • 4.4
          • 4.4

          4.4

          18 ratings


          More shows like Adventures in DevOps

          View all
          Software Engineering Radio - the podcast for professional software developers by se-radio@computer.org

          Software Engineering Radio - the podcast for professional software developers

          272 Listeners

          The Changelog: Software Development, Open Source by Changelog Media

          The Changelog: Software Development, Open Source

          283 Listeners

          The Cloudcast by Massive Studios

          The Cloudcast

          152 Listeners

          Thoughtworks Technology Podcast by Thoughtworks

          Thoughtworks Technology Podcast

          42 Listeners

          Talk Python To Me by Michael Kennedy

          Talk Python To Me

          590 Listeners

          Software Engineering Daily by Software Engineering Daily

          Software Engineering Daily

          625 Listeners

          Soft Skills Engineering by Jamison Dance and Dave Smith

          Soft Skills Engineering

          270 Listeners

          Go Time: Golang, Software Engineering by Changelog Media

          Go Time: Golang, Software Engineering

          128 Listeners

          AWS Podcast by Amazon Web Services

          AWS Podcast

          203 Listeners

          JS Party: JavaScript, CSS, Web Development by Changelog Media

          JS Party: JavaScript, CSS, Web Development

          91 Listeners

          Kubernetes Podcast from Google by Abdel Sghiouar, Kaslin Fields

          Kubernetes Podcast from Google

          181 Listeners

          DevOps and Docker Talk: Cloud Native Interviews and Tooling by Bret Fisher

          DevOps and Docker Talk: Cloud Native Interviews and Tooling

          55 Listeners

          DevOps Paradox by Darin Pope & Viktor Farcic

          DevOps Paradox

          24 Listeners

          The Stack Overflow Podcast by The Stack Overflow Podcast

          The Stack Overflow Podcast

          64 Listeners

          The Real Python Podcast by Real Python

          The Real Python Podcast

          140 Listeners