Главная
Study mode:
on
1
Introduction
2
My perspective
3
Why is this an urgent issue
4
Why open source is important
5
US Executive Order
6
Timeline
7
Critical Software
8
Administratively separate builds
9
Grumpiness
10
Analysis
11
Threat Model
12
Salsa
13
Levels
14
Salsa Map
15
Open Source Tools
16
Dependencies
17
The Dilemma
18
CVN
19
Automation
20
Summary
Description:
Explore tools and techniques for armoring open source project supply chains in this 41-minute conference talk by David C Stewart from Intel Corporation. Gain insights into the urgent need for supply chain security, the importance of open source, and the impact of the US Executive Order on critical software. Learn about administratively separate builds, threat modeling, and the SALSA framework for assessing security levels. Discover open source tools for managing dependencies, addressing vulnerabilities, and implementing automation. Understand the dilemmas faced in securing software supply chains and gain valuable knowledge to enhance the security of your open source projects.

Supply Chain Armoring: Tools and Techniques for Open Source Projects

Linux Foundation
Add to list
0:00 / 0:00