anchore
@anchore@mstdn.business
Securing and managing the software supply chain. Proud parent of https:// fosstodon.org/@syft and https:// fosstodon.org/@grype
mstdn.business
The software supply chain has a blind spot: project vitality. A dependency might lack CVEs but be completely abandoned or even "hallucinated" by code generators. Learn how to add OSS project evaluations to your threat intelligence pool.
Reserve your place for March 10 at 4pm ET: https://www.brighttalk.com/webcast/21148/663295
#AppSec #InfoSec #DevSecOps
View on mstdn.business
0
0
0