
Sign up to save your podcasts
Or


The open source community is a hub of innovation and there is no doubt that open-source software helps to prop up stacks everywhere, from the smallest firms through to the largest names in the tech industry.
However, concerns have been raised in recent years over the security of open-source supply chains. Notable incidents such as Log4Shell have acted as a reminder to businesses and governments alike that a chain is only as strong as its weakest link.
In this episode, Jane and Rory are joined by Brian Fox, CTO of software supply chain management at Sonatype to discuss how the ecosystem can be made safer, and the role that developers, companies, and governments can play.
By ITPro5
11 ratings
The open source community is a hub of innovation and there is no doubt that open-source software helps to prop up stacks everywhere, from the smallest firms through to the largest names in the tech industry.
However, concerns have been raised in recent years over the security of open-source supply chains. Notable incidents such as Log4Shell have acted as a reminder to businesses and governments alike that a chain is only as strong as its weakest link.
In this episode, Jane and Rory are joined by Brian Fox, CTO of software supply chain management at Sonatype to discuss how the ecosystem can be made safer, and the role that developers, companies, and governments can play.

883 Listeners

77 Listeners

1,932 Listeners

1,637 Listeners

3,695 Listeners

35 Listeners

235 Listeners

174 Listeners

677 Listeners

228 Listeners

137 Listeners

3,070 Listeners

845 Listeners

197 Listeners

168 Listeners