
DOP 111: What Are Software Supply Chain Attacks?
DevOps Paradox
00:00
Managing Private and Public Registries in Software Supply Chain Attacks
The chapter delves into the intricacies of software supply chain attacks, emphasizing the importance of efficiently managing private and public registries. It discusses considerations like prioritizing private registries over public ones, controlling access using tools like Artifactory or Nexus, and debating the security aspects of pulling packages from different types of registries.
Transcript
Play full episode