The Changelog: Software Development, Open Source cover image

Securing the open source supply chain (Interview)

The Changelog: Software Development, Open Source

00:00

Securing Software: The Wormhole Experience

This chapter covers the creation and development of Wormhole, a file-sharing service with a focus on secure, end-to-end encrypted transfers. The conversation highlights technical improvements and the risks of dependency management in the JavaScript ecosystem, addressing the alarming frequency of package compromises and the implications for user data security. Lastly, it emphasizes the need for robust verification processes to prevent vulnerabilities, especially in light of supply chain attacks and the challenges posed by the abundance of trivial packages.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app