SLSA on GCP: let's mitigate Supply Chain threats

Gregorio Palamà

Italian · Intermediate

← Schedule

Abstract

The recent backdoor inserted in XZ makes us reflect on the ever-increasing importance of inserting mitigation mechanisms on threats to which the entire Supply Chain is exposed in the software development cycle. After introducing a classification of threats through the SLSA security framework, we will see how GCP allows us to address and mitigate the threats.

Tags

Cloud