1. | | Shifting 'Shift Left' and What We Can Learn from Uber (productgovernance.substack.com) |
|
2 points by colek42 5 months ago | past
|
2. | | Shifting 'Shift Left' and What We Can Learn from Uber (productgovernance.substack.com) |
|
1 point by colek42 5 months ago | past
|
3. | | How to Shift Compliance Left – A Letter to Developers (productgovernance.substack.com) |
|
3 points by colek42 6 months ago | past
|
4. | | Shifting Compliance Left – A Letter to Compliance Teams (productgovernance.substack.com) |
|
2 points by colek42 6 months ago | past
|
5. | | Building an Effective Enterprise Software Supply Chain Policy (testifysec.com) |
|
1 point by colek42 on March 14, 2023 | past
|
6. | | Witness is a pluggable framework digital attestation (github.com/testifysec) |
|
3 points by colek42 on Jan 26, 2023 | past | 1 comment
|
7. | | Keyless Signing of Digital Attestations with Witness and SigStore (testifysec.com) |
|
1 point by colek42 on Jan 26, 2023 | past
|
8. | | Keyless Signing with Witness and SigStore (testifysec.com) |
|
9 points by colek42 on Jan 24, 2023 | past
|
9. | | Comparing In-Toto and Sigstore: Two Approaches to Software Supply Chain Security (testifysec.com) |
|
1 point by colek42 on Dec 2, 2022 | past
|
10. | | 2019 – USENIX – in-toto: Providing farm-to-table guarantees for bits and bytes (youtube.com) |
|
1 point by colek42 on July 11, 2022 | past
|
11. | | Automating Compliance – Why the SBOM Falls Short (testifysec.com) |
|
1 point by colek42 on March 14, 2022 | past
|
12. | | What Is a Software Supply Chain Attestation? (testifysec.com) |
|
2 points by colek42 on Jan 30, 2022 | past
|
13. | | Fpx: Easy USB‑C power for all your devices (oxplot.com) |
|
33 points by colek42 on Jan 30, 2022 | past | 4 comments
|
14. | | What Is the SSDF – and What Does It Mean for My Software Supply Chain Compliance (testifysec.com) |
|
2 points by colek42 on Nov 16, 2021 | past
|
15. | | What Is a Software Supply Chain Attestation (testifysec.com) |
|
2 points by colek42 on Nov 8, 2021 | past
|
16. | | Tool that emulates the SolarWinds CI compromise attack vector (github.com/testifysec) |
|
1 point by colek42 on Sept 30, 2021 | past
|
17. | | What is an SBOM, and why should you care? (boxboat.com) |
|
2 points by colek42 on May 13, 2021 | past
|
18. | | Next week might as well be SBOM Week (tomalrichblog.blogspot.com) |
|
1 point by colek42 on May 12, 2021 | past
|
19. | | Supply Chain Security By Verification – Mitigating root credential loss (boxboat.com) |
|
1 point by colek42 on May 10, 2021 | past
|
20. | | Safeguarding the World from the SolarWinds Hack and Future Supply Chain Attacks (boxboat.com) |
|
1 point by colek42 on Dec 19, 2020 | past
|
21. | | Safeguarding the World from Solarburst and Future Supply Chain Attacks (boxboat.com) |
|
1 point by colek42 on Dec 14, 2020 | past
|
22. | | Employers views on remote work - a survey (boxboat.com) |
|
8 points by colek42 on Feb 20, 2020 | past
|
23. | | Open Source Electronics Lab for $30 (github.com/espotek) |
|
417 points by colek42 on June 7, 2019 | past | 76 comments
|
24. | | Historian uses lasers to unlock mysteries of Notre Dame Cathedral (nationalgeographic.com) |
|
1 point by colek42 on April 16, 2019 | past
|
25. | | Ebates requires full access to Gmail for SSO (twitter.com/ebates) |
|
11 points by colek42 on Feb 6, 2019 | past | 1 comment
|
26. | | Building containers with Kubernetes (boxboat.com) |
|
3 points by colek42 on Oct 7, 2018 | past
|
27. | | Atlantic tropical forecast discussions and data (tropicaltidbits.com) |
|
2 points by colek42 on Sept 9, 2018 | past
|
28. | | Building Containers with Kubernetes and Knative (boxboat.com) |
|
2 points by colek42 on Aug 10, 2018 | past
|
29. | | Bare Metal K8s Clustering at Chick-Fil-A Scale (medium.com/cfatechblog) |
|
4 points by colek42 on July 1, 2018 | past | 4 comments
|
30. | | Mapping Crimes Against Humanity in North Korea [pdf] (tjwg.org) |
|
1 point by colek42 on July 21, 2017 | past
|