Adventures in DevOps

Software Dependencies: Do you Know What’s Lurking in your Software? - DevOps 219


Listen Later

Charles is joined by Caleb Fornari and Jeffrey Groman as we discuss the challenges of public versus private package managers and the security implications of using public repositories.

Links
  • Adventures in DevOps - Devchat.tv
  • Dependency Confusion: How I Hacked Into Apple, Microsoft and Dozens of Other Companies
  • Devchat.tv | JSJ 357: Event-Stream & Package Vulnerabilities with Richard Feldman and Hillel Wayne
  • Malicious code found in npm package event-stream downloaded 8 million times in the past 2.5 months
  • GitHub | The Node Security Platform

Picks
  • Caleb- Have a plan to mitigate damage if someone is able to get inside your network. Don’t just secure the public side of your technical infrastructure, make sure your internal security as just as strong as your external security.
  • Charles- Dev Heroes Accelerator | Devchat.tv
  • Charles-  The Umbrella Academy | Netflix
  • Charles- Personal Retreat
  • Jeffrey- Asset management: Know and document where all of your digital assets reside. Whether servers, VMs, EC2 instances, and all of your structured and unstructured data.
  • Jeffrey- You can’t secure what you don’t know about
...more
View all episodesView all episodes
Download on the App Store

Adventures in DevOpsBy Will Button, Warren Parad

  • 4.4
  • 4.4
  • 4.4
  • 4.4
  • 4.4

4.4

18 ratings


More shows like Adventures in DevOps

View all
Software Engineering Radio - the podcast for professional software developers by se-radio@computer.org

Software Engineering Radio - the podcast for professional software developers

272 Listeners

The Changelog: Software Development, Open Source by Changelog Media

The Changelog: Software Development, Open Source

283 Listeners

The Cloudcast by Massive Studios

The Cloudcast

152 Listeners

Thoughtworks Technology Podcast by Thoughtworks

Thoughtworks Technology Podcast

42 Listeners

Talk Python To Me by Michael Kennedy

Talk Python To Me

591 Listeners

Software Engineering Daily by Software Engineering Daily

Software Engineering Daily

627 Listeners

Soft Skills Engineering by Jamison Dance and Dave Smith

Soft Skills Engineering

272 Listeners

Go Time: Golang, Software Engineering by Changelog Media

Go Time: Golang, Software Engineering

128 Listeners

AWS Podcast by Amazon Web Services

AWS Podcast

203 Listeners

JS Party: JavaScript, CSS, Web Development by Changelog Media

JS Party: JavaScript, CSS, Web Development

91 Listeners

Kubernetes Podcast from Google by Abdel Sghiouar, Kaslin Fields

Kubernetes Podcast from Google

181 Listeners

DevOps and Docker Talk: Cloud Native Interviews and Tooling by Bret Fisher

DevOps and Docker Talk: Cloud Native Interviews and Tooling

55 Listeners

DevOps Paradox by Darin Pope & Viktor Farcic

DevOps Paradox

24 Listeners

The Stack Overflow Podcast by The Stack Overflow Podcast

The Stack Overflow Podcast

64 Listeners

The Real Python Podcast by Real Python

The Real Python Podcast

140 Listeners