YoVDO

Beyond "Just Update All the Things": Uncovering the Nuances of Dependency Security

Offered By: OpenSSF via YouTube

Tags

Software Security Courses Vulnerability Scanning Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the complexities of dependency security management in this 19-minute conference talk by Rex Pan and Holly Gong from Google, presented at OpenSSF. Delve into the challenges of keeping project dependencies safe from vulnerabilities, going beyond the simplistic "update everything" approach. Uncover the hidden intricacies of dependency management, including breaking changes, maintenance burdens, and ecosystem complexities. Learn about the OSV project's developer-centric solutions, including the OSV Schema, OSV.dev, and OSV-Scanner. Discover strategies for seamlessly integrating dependency awareness and remediation into developer workflows. Examine the importance of container image scanning for identifying and patching vulnerabilities beyond initial releases.

Syllabus

Beyond "Just Update All the Things": Uncovering the Nuances of Dependency Se... Rex Pan & Holly Gong


Taught by

OpenSSF

Related Courses

Pattern-Oriented Software Architectures: Programming Mobile Services for Android Handheld Systems
Vanderbilt University via Coursera
Engineering Maintainable Android Apps
Vanderbilt University via Coursera
Software Design as an Element of the Software Development Lifecycle
University of Colorado System via Coursera
Secure Software Development
Pluralsight
Secure Software Concepts for CSSLPĀ®
Pluralsight