It's been a long time since our last blog post update on @QuarkusIO tools for @intellijidea, so here's a recap of the last 5 months of releases the @rhdevelopers team made https://t.co/E6fxmSryzm
Special kudos to @angelozerr for making it awesome 😉
If you use @projectsigstore, please consider +1'ing this issue as a feature request to show interest in signing Docker Official Images with it!
https://t.co/LDgxjv3SnC
One final diagram comparing OpenPubKey and Sigstore. OpenPubKey by itself has fewer components than sigstore, but can't verify old artifacts.
This can be mitigated by adding extra transparency logs, but then you have the same number of components, plus a massive privacy leak.
The story of the Mapogos, a coalition of 6 sibling male lions that conquered a territory 7 times larger than Manhattan and killed more than a 40 lions per year
[full story: https://t.co/lWFbOUSnIT]
I am learning a lot about how to build secure container images, if you want to learn about that experience checkout @chainguard_dev latest blog "Building Wolfi from the ground up… and announcing arm64 support!"https://t.co/1ohkFUt7jY
The @GitHub Action for @GraalVM [1] now has the "Verified creator" badge, and is used by more than 650 open-source projects [2]! 🥳
[1] https://t.co/JrKjHRuvoB
[2] https://t.co/KtRjELU3hB