Securing the Software Supply Chain (SLSA, SBOM, Signing)
DEV Community
Securing the Software Supply Chain (SLSA, SBOM, Signing)
Most of your production code isn't yours, it's dependencies, base images, and build tools you didn't write. The supply chain is now the attack surface
Most of your production code isn't yours, it's dependencies, base images, and build tools you didn't write. The supply chain is now the attack surface…
0 comments
No comments yet.