YoVDO

Untrusted Execution - Attacking the Cloud Native Supply Chain

Offered By: CNCF [Cloud Native Computing Foundation] via YouTube

Tags

Supply Chain Security Courses Risk Assessment Courses Threat Modeling Courses Vulnerability Management Courses Trusted Execution Environment Courses Cloud-Native Security Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the critical issue of supply chain security in cloud native environments through this 37-minute conference talk by Andrew Martin of ControlPlane. Delve into the complexities of trusting code in production, examining potential vulnerabilities in system supply chains and the challenges posed by malicious actors. Analyze various signing options and their effectiveness in securing different components of the supply chain, from source code and dependencies to CI/CD pipelines and vendor software. Engage in a risk-based threat modeling exercise, compare available open source supply chain security controls, and investigate trusted execution environments. Conclude with a proposed solution for comprehensive end-to-end supply chain security, equipping yourself with valuable insights to enhance the security posture of your cloud native systems.

Syllabus

Untrusted Execution: Attacking the Cloud Native Supply Chain - Andrew Martin, ControlPlane


Taught by

CNCF [Cloud Native Computing Foundation]

Related Courses

IoT Product Security
Cybrary
Trusted Execution Environments Meet the Blockchain
Simons Institute via YouTube
Cache Side Channel Attack - Exploitability and Countermeasures
Black Hat via YouTube
Confidential Computing in Cloud and Edge
RSA Conference via YouTube
The Rise of Confidential Computing
RSA Conference via YouTube