
Supply Chain Security Security with Containers and CI/CD Systems - Kirsten Newcomer - #ASW 256
Security Weekly Podcast Network (Audio)
00:00
Understanding Consumers and Generating Trust in Code
This chapter explores the perspective of consumers when it comes to trust and integrity in code. It discusses the importance of open source software, the need for S-bombs to identify vulnerabilities, and the challenges of transitive dependencies. The conversation also touches on configuration settings, compile time hardening, and the lack of understanding and utilization of software bill of materials (SBOMs) in the industry.
Transcript
Play full episode