YoVDO

Protecting the World's Greatest Open Source Ecosystem with Sigstore

Offered By: Devoxx via YouTube

Tags

Devoxx Courses Software Supply Chain Security Courses Sigstore Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the critical importance of software supply chain security in this 50-minute conference talk by Sigstore-java maintainers Patrick Flynn and Appu Goundan. Discover how Sigstore, an OpenSSF project, addresses the dependency trust problem by simplifying cryptographic signing of artifacts. Learn about the risks associated with using unverified third-party packages and how Sigstore integrates with Maven Central to protect both producers and consumers of artifacts. Gain insights into implementing Sigstore to sign and verify artifacts, safeguarding your software and users from malicious supply chain attacks. Benefit from the speakers' extensive experience in Java developer tooling and software supply chain security as they demonstrate practical applications of Sigstore in the open-source ecosystem.

Syllabus

Protecting the world’s greatest open source ecosystem with Sigstore by Patrick Flynn , Appu Goundan


Taught by

Devoxx

Related Courses

Play by Play: Developing Microservices and Mobile Apps with JHipster
Pluralsight
Software Archaeology - Learning from the Landing on the Moon
Devoxx via YouTube
Create an Eco-Friendly World with Green Software Engineering
Devoxx via YouTube
Platform Building for Data Mesh - Show Me How It Is Done
Devoxx via YouTube
The Hitchhiker's Guide to Software Architecture and Design
Devoxx via YouTube