Is My (Open Source) Project Safe? - Stephen Giguere

  Рет қаралды 22

KCD NewYork

KCD NewYork

28 күн бұрын

We know that application dependencies have dependencies. It also happens that GitHub Action's repositories use Actions which use Actions. The nest of dependencies within our CI/CD is complex and largely unobserved. In this talk, we'll introduce techniques like repojacking and command injection and explore the depth of our dependencies alongside research into thousands of mainstream GitHub projects showing the potential upstream attack paths. All findings have been responsibly disclosed

Пікірлер
Iron Chin ✅ Isaih made this look too easy
00:13
Power Slap
Рет қаралды 35 МЛН
50 YouTubers Fight For $1,000,000
41:27
MrBeast
Рет қаралды 199 МЛН
КАК ДУМАЕТЕ КТО ВЫЙГРАЕТ😂
00:29
МЯТНАЯ ФАНТА
Рет қаралды 9 МЛН
Useful gadget for styling hair 🤩💖 #gadgets #hairstyle
00:20
FLIP FLOP Hacks
Рет қаралды 6 МЛН
Why Are There No Computers in DUNE When Space Travel Exists ?
14:49
Kroft talks about Movies
Рет қаралды 4,3 М.
An Illustrated Guide to OAuth and OpenID Connect
16:36
OktaDev
Рет қаралды 569 М.
Ovechkin grants young fan's request
6:08
NHL
Рет қаралды 2,1 МЛН
EA NHL evolution [1991 - 2019]
10:03
Video Games Evolution
Рет қаралды 1,8 МЛН
Economist fact-checks Scott Galloway’s Anti-Boomer TED Talk
26:05
Money & Macro
Рет қаралды 50 М.
Iron Chin ✅ Isaih made this look too easy
00:13
Power Slap
Рет қаралды 35 МЛН