Critical Thinking - Bug Bounty Podcast cover image

Episode 74: Supply Chain Attack Primer - Popping RCE Without an HTTP Request (feat 0xLupin)

Critical Thinking - Bug Bounty Podcast

NOTE

Security Concerns in Registries and Ownership of Software Supply Chains

Security in software registries is lacking as many do not enforce 2FA, even for widely-used packages. Ownership of software supply chains is a critical issue, with questions arising on who should take responsibility - the company using packages, developers as end users, or the maintainers. Finger-pointing is common in case of issues, highlighting the lack of clarity on ownership of software supply chains.

00:00
Transcript
Play full episode

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner