Главная
Study mode:
on
1
Intro
2
The Rise of Software Supply Chain Attacks
3
Agenda
4
Hacking History
5
Getting connected!
6
Smashing the Stack...
7
SQL Injection
8
Code Red & SQL Slammer
9
Bill Gates - Email to all MS FTE
10
Changes in Software Architecture
11
What is a Supply Chain?
12
Hacking Hardware
13
Octopus Scanner - NetBeans
14
Visual Studio Code
15
Development Machine
16
Canonical GitHub Account
17
Microsoft GitHub Account
18
Use MFA on source-repository
19
GIT Commit Signing
20
EvenStream NPM
21
Build / Deployment
22
XCode Ghost
23
Twilio SDK
24
Webmin Backdoor
25
Reproducable/Deterministic Builds
26
Automotive Industry
27
Car Supply Chain
28
Software Bill of Materials (SBOM)
29
In-Toto - Demo - Terminology
30
DataDog & In-Toto
31
Azure Pipelines Artifact Policy
32
Conclusion
Description:
Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only! Grab it Explore the evolution and increasing sophistication of software supply-chain attacks in this 57-minute conference talk from NDC Sydney 2020. Trace the history of hacking from early infrastructure exploits to modern DevOps vulnerabilities. Examine how cloud-native approaches and complex application landscapes have expanded the attack surface. Learn to identify and mitigate security issues throughout the software supply chain using a .NET application as an example. Discover the importance of securing development machines, source repositories, and build pipelines. Understand concepts like Software Bill of Materials (SBOM) and reproducible builds. Gain insights into protecting your applications from emerging threats in the interconnected world of software development and deployment.

The Rise of Software Supply-Chain Attacks - How Secure is Your .NET Application

NDC Conferences
Add to list
0:00 / 0:00