John Speed Meyers
Former Lead ResearcherChainguard
Written by John Speed Meyers

Hunting malware on package repositories
recherche
What’s software supply chain security got to do with the State of DevOps Report? A Lot.
nouvelles
Sigstore for CISOs
sécurité
Do the dependency trees of widely used packages grow?
recherche
The security costs of base image version loitering
sécurité
The Dirty Secret of Cybersecurity Standards
sécurité
SLSA vs. Software Supply Chain Attacks
sécurité
How to make package signing useful
ingénierie