Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

NPM and Sigstore - Provenance Comes to the World's Largest OSS Ecosystem

Black Hat via YouTube

Overview

Explore a 39-minute conference talk from Black Hat detailing GitHub's efforts to secure the Javascript ecosystem through provenance integration and partnership with Sigstore. Discover how npm, the world's largest language ecosystem, is addressing malware attacks and supply chain trojans by implementing software signing. Learn about the challenges and solutions in securing a system that serves over 70 billion requests monthly and processes around 40,000 publish events daily. Gain insights from speakers Trevor Rosen and Zach Steindler on the future of open-source software security and the role of provenance in protecting the npm ecosystem.

Syllabus

npm and Sigstore: Provenance Comes to the World's Largest OSS Ecosystem

Taught by

Black Hat

Reviews

Start your review of NPM and Sigstore - Provenance Comes to the World's Largest OSS Ecosystem

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.