Get the app
François Proulx
Senior product security engineer at Boost Security, leading the supply chain research team. Founder of the NorthSec conference and has over 10 years of experience in building application security programs.
Best podcasts with François Proulx
Ranked by the Snipd community
Oct 22, 2024
• 46min
François Proulx - Arbitrary Code Execution 0-day in Build Pipeline of Popular Open Source Packages
chevron_right
François Proulx, a senior product security engineer at Boost Security and founder of the NorthSec conference, reveals alarming vulnerabilities in build pipelines of popular open-source packages. He introduces his open source scanner, Poutine, designed to pinpoint these weaknesses. The discussion touches on zero-day exploits, supply chain attacks, and the critical role of security architecture. Proulx also emphasizes the importance of threat modeling and educational initiatives for developers to enhance security practices.
The AI-powered Podcast Player
Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
Get the app