
Episode 535: Dan Lorenc on Supply Chain Attacks
Software Engineering Radio - the podcast for professional software developers
00:00
The Attack Surface of the Software Supply Chain
Jenkins and NPM are two of the most widely used open source package managers. Jenkins is an automation server that is commonly used for CI, CV tasks. NPM is a package manager for Node.js and front-end JavaScript that people do on websites. All those groups, all those systems, all those companies, all those build servers, all those organizations involved in getting new code can be attacked.
Transcript
Play full episode