Open source software is a massive contribution that provides everything from foundational frameworks to tiny single-purpose libraries. We walk through the dimensions of trust and provenance in the software supply chain with Janet Worthington. And we discuss how even with new code generated by LLMs and new terms like slopsquatting, a lot of the most effective solutions are old techniques.
Resources
Show Notes: https://securityweekly.com/asw-343
Podchaser is the ultimate destination for podcast data, search, and discovery. Learn More