Adventures in DevOps

DevOps 064: Software Dependencies: Do you Know What’s Lurking in your Software?


Listen Later

Charles is joined by Caleb Fornari and Jeffrey Groman as we discuss the challenges of public versus private package managers and the security implications of using public repositories.

Panel
  • Caleb Fornari
  • Charles Max Wood
  • Jeffrey Groman
  • Sponsors
    • Dev Heroes Accelerator
    • Links
      • Adventures in DevOps - Devchat.tv
      • Dependency Confusion: How I Hacked Into Apple, Microsoft and Dozens of Other Companies
      • Devchat.tv | JSJ 357: Event-Stream & Package Vulnerabilities with Richard Feldman and Hillel Wayne
      • Malicious code found in npm package event-stream downloaded 8 million times in the past 2.5 months
      • GitHub | The Node Security Platform
      • Picks
        • Caleb- Have a plan to mitigate damage if someone is able to get inside your network. Don’t just secure the public side of your technical infrastructure, make sure your internal security as just as strong as your external security.
        • Charles- Dev Heroes Accelerator | Devchat.tv
        • Charles- The Umbrella Academy | Netflix
        • Charles- Personal Retreat
        • Jeffrey- Asset management: Know and document where all of your digital assets reside. Whether servers, VMs, EC2 instances, and all of your structured and unstructured data.
        • Jeffrey- You can’t secure what you don’t know about
        •  

          ...more
          View all episodesView all episodes
          Download on the App Store

          Adventures in DevOpsBy Will Button, Warren Parad

          • 4.4
          • 4.4
          • 4.4
          • 4.4
          • 4.4

          4.4

          18 ratings


          More shows like Adventures in DevOps

          View all
          Global News Podcast by BBC World Service

          Global News Podcast

          7,608 Listeners

          Software Engineering Radio by se-radio@computer.org

          Software Engineering Radio

          271 Listeners

          The Changelog: Software Development, Open Source by Changelog Media

          The Changelog: Software Development, Open Source

          289 Listeners

          LINUX Unplugged by Jupiter Broadcasting

          LINUX Unplugged

          268 Listeners

          Talk Python To Me by Michael Kennedy

          Talk Python To Me

          585 Listeners

          Soft Skills Engineering by Jamison Dance and Dave Smith

          Soft Skills Engineering

          289 Listeners

          Syntax - Tasty Web Development Treats by Wes Bos & Scott Tolinski - Full Stack JavaScript Web Developers

          Syntax - Tasty Web Development Treats

          988 Listeners

          Darknet Diaries by Jack Rhysider

          Darknet Diaries

          8,039 Listeners

          DataFramed by DataCamp

          DataFramed

          269 Listeners

          AWS Podcast by Amazon Web Services

          AWS Podcast

          203 Listeners

          DevOps and Docker Talk: Cloud Native Interviews and Tooling by Bret Fisher

          DevOps and Docker Talk: Cloud Native Interviews and Tooling

          55 Listeners

          DevOps Paradox by Darin Pope & Viktor Farcic

          DevOps Paradox

          25 Listeners

          The Stack Overflow Podcast by The Stack Overflow Podcast

          The Stack Overflow Podcast

          63 Listeners

          Dwarkesh Podcast by Dwarkesh Patel

          Dwarkesh Podcast

          511 Listeners

          The AI Daily Brief: Artificial Intelligence News and Analysis by Nathaniel Whittemore

          The AI Daily Brief: Artificial Intelligence News and Analysis

          610 Listeners