AI-powered
podcast player
Listen to all your favourite podcasts with AI-powered features
Open Source Supply Chain Risks and Vulnerabilities
This chapter discusses the risks and vulnerabilities associated with open source supply chains, highlighting the challenges of ensuring secure and vulnerability-free code. It emphasizes the need for managing risks, introduces the tool 'sneak' for mapping dependencies, and emphasizes the importance of prioritizing and remediating issues. The chapter also discusses the increasing use of libraries and frameworks in software development and the potential for hidden malicious code, emphasizing the unknown vulnerabilities present in these libraries.