I've just written about a Halloween spooky first hand experience with a compromised third party attack.
Your Site Was Hacked, and You Never Knew About It: My Real-Life Encounter with a Supply Chain Attack
https://t.co/hAcMFtoZmh
comparing the controls organisations have for code written in-house with the often murky security practices of open-source projects.
Episode Link: https://t.co/XETKFByzPV
๐๐ผ๐ ๐ฆ๐ฒ๐ฐ๐๐ฟ๐ฒ ๐ถ๐ ๐ข๐ฝ๐ฒ๐ป ๐ฆ๐ผ๐๐ฟ๐ฐ๐ฒ ๐ฆ๐ผ๐ณ๐๐๐ฎ๐ฟ๐ฒ?
Open-source software is the building block of modern applications. From web frameworks to encryption tools, these readily available components offer developers a wealth of functionality and accelerate development
However, this convenience comes with a hidden cost and potential security vulnerabilities.
In this episode of AppSec Unlocked, we'll look at the security considerations surrounding open-source libraries
Are there a lot more assumed trust in global cybersecurity vendors that security professionals assess them with less rigor compared to other vendors?
Sharing my thoughts on the recent CrowdStrike incident
https://t.co/yKIDZPXpTy
Everyone in the audience knew that their organisation uses a fair number of open-source components, but they thought that it only makes up a small percentage of their applications ....