

JavaScript Supply Chain with Feross Aboukhadijeh
Apr 23, 2022
Chapters
Transcript
Episode notes
1 2 3 4 5 6 7 8 9 10 11 12 13
Introduction
00:00 • 3min
Is It a BitTorrent or a WebRTC?
02:52 • 4min
What's the JavaScript Supply Chain?
07:21 • 5min
JavaScript Vulnerability Scanner - What's Novel About Socket?
12:29 • 4min
What's the Difference Between Malware and Known Vulnerabilities?
16:36 • 3min
What Is the Best Malware on NPM?
19:21 • 3min
Socket Detection in Continuous Delivery Processes
22:19 • 5min
How Do You Analyze the Software Supply Chain Dependency Infrastructure?
27:14 • 2min
How to Analyze a Package on NPM?
28:47 • 5min
JavaScript Security - What Makes That Hard?
33:29 • 3min
Is There a Reproducible Build?
36:40 • 3min
Is the Signal to Noise Ratio Really High?
40:04 • 3min
What's the First Socket That You've Found?
43:08 • 4min