

Securing GitHub (Changelog Interviews #596)
Jun 19, 2024
Jacob DePriest, VP at GitHub, discusses Artifact Attestations, profile hardening, GitHub Advanced Security, code scanning, and improving Dependabot to secure GitHub. Topics include preventing XZ-like attacks and the importance of open-source security measures.
Chapters
Transcript
Episode notes
1 2 3 4 5 6 7 8
Intro
00:00 • 3min
Securing Open Source Dependencies and Introducing Socket Tool for Developers
02:38 • 5min
Enhancing Security Measures on GitHub
07:49 • 25min
GitHub Version Control and Security Features for Enterprise and Public Repositories
32:27 • 7min
Enhancing Code Attestation and Security with GitHub Actions
39:22 • 19min
Efficient Coding with AI and Monitoring with Chronitor
58:36 • 2min
Advancing Cybersecurity with AI and GitHub Security Measures
01:01:00 • 25min
Importance of Attestation and Security on GitHub
01:25:55 • 4min