ycliper

Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
Скачать

Is Your Approach To Pipeline Security Flawed? Rethinking CI/CD Security - Patricia R

Автор: Security BSides London

Загружено: 2025-02-03

Просмотров: 300

Описание: With DevSecOps becoming the standard, CI/CD pipelines have become the backbone of software development and deployment, running thousands of times a day. Each pipeline executes critical tasks such as building, testing, and deploying code - often leveraging automation and guardrails to ensure quality and security. Tools that integrate in pipelines promise to help.

But what exactly is a pipeline? What systems and resources does it interact with? And most importantly, how can we ensure that no pipeline becomes a pivot point for an attacker to compromise our most valuable systems? Can we be confident pipelines are running what we expect and providing the necessary data for other processes?

These questions point to a (perhaps overlooked) concept: Protected Resources. In this talk, we will explore how shifting to a new mindset could enhance visibility into pipelines, ensure adherence to security protocols, and prevent pipelines from becoming attack vectors. We'll delve into practical strategies to gain observability, improve compliance, and better secure your CI/CD system in the age of DevSecOps.

Не удается загрузить Youtube-плеер. Проверьте блокировку Youtube в вашей сети.
Повторяем попытку...
Is Your Approach To Pipeline Security Flawed? Rethinking CI/CD Security - Patricia R

Поделиться в:

Доступные форматы для скачивания:

Скачать видео

  • Информация по загрузке:

Скачать аудио

Похожие видео

An Introduction To Fault- Injection For Exploiting Bug-Free Code In Embedded Systems - @barsteward

An Introduction To Fault- Injection For Exploiting Bug-Free Code In Embedded Systems - @barsteward

What’s Inside The Open Directory From 96 Different Threat Actors? - Alana Witten

What’s Inside The Open Directory From 96 Different Threat Actors? - Alana Witten

Дискредитация лайком, Новые тайны Эпштейна, Страшный развод Галицких. Обсудим с Максимом Курниковым

Дискредитация лайком, Новые тайны Эпштейна, Страшный развод Галицких. Обсудим с Максимом Курниковым

Инструментарий программ-вымогателей: как победить киберпреступников в их же собственной игре — Уи...

Инструментарий программ-вымогателей: как победить киберпреступников в их же собственной игре — Уи...

Some Things I've Learned About Software

Some Things I've Learned About Software

Malware Campaign Tracking Using Big Data Analytics And Machine Learning Clustering - Daniel Johnston

Malware Campaign Tracking Using Big Data Analytics And Machine Learning Clustering - Daniel Johnston

WIELKA WYPRAWA MARII WIERNIKOWSKIEJ W GŁĄB ROSJI #1

WIELKA WYPRAWA MARII WIERNIKOWSKIEJ W GŁĄB ROSJI #1

Bad Bunny's Apple Music Super Bowl Halftime Show

Bad Bunny's Apple Music Super Bowl Halftime Show

From Garden To Grid: Lessons From Gardening For A Resilient Cybersecurity Strategy - Becky Hall

From Garden To Grid: Lessons From Gardening For A Resilient Cybersecurity Strategy - Becky Hall

The Practical Application Of Indirect Prompt Injection Attacks - David Willis-Owen

The Practical Application Of Indirect Prompt Injection Attacks - David Willis-Owen

When The Hunter Becomes The Hunted: Using Minifilters To Disable EDRs - Tom Philippe

When The Hunter Becomes The Hunted: Using Minifilters To Disable EDRs - Tom Philippe

Post-Quantum Cryptography For 2025 - Andy Smith

Post-Quantum Cryptography For 2025 - Andy Smith

How To Attack A SIEM - Daniel Crossley

How To Attack A SIEM - Daniel Crossley

Elevate Your SSRF Game: Weaponize Internal DNS Records To Expose Hidden Endpoints - Guy Arazi

Elevate Your SSRF Game: Weaponize Internal DNS Records To Expose Hidden Endpoints - Guy Arazi

First Biomimetic AI Robot From China Looks Shockingly Human

First Biomimetic AI Robot From China Looks Shockingly Human

Самое масштабное обновление Deno Deploy за всю историю.

Самое масштабное обновление Deno Deploy за всю историю.

Szokujący raport zza oceanu: Jak UE ingerowała w wybory? | Salonik Ziemkiewicza 2/3

Szokujący raport zza oceanu: Jak UE ingerowała w wybory? | Salonik Ziemkiewicza 2/3

AI ruined bug bounties

AI ruined bug bounties

OpenAI Is Slowing Hiring. Anthropic's Engineers Stopped Writing Code. Here's Why You Should Care.

OpenAI Is Slowing Hiring. Anthropic's Engineers Stopped Writing Code. Here's Why You Should Care.

Seattle Seahawks vs New England Patriots | Super Bowl LX Game Highlights

Seattle Seahawks vs New England Patriots | Super Bowl LX Game Highlights

© 2025 ycliper. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]