Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Linux Foundation

Chain Reaction - Remixing CNCF's Supply Chain Security Guide for 2025

Linux Foundation via YouTube

Overview

Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore the comprehensive updates to the CNCF Security TAG's Supply Chain Security Best Practices guide in this 33-minute conference talk from the Linux Foundation's Open Source Summit. Discover how the software supply chain security landscape has dramatically evolved since the original 2021 guide, with attacks costing over $45 billion in 2023 and projections exceeding $80 billion by 2026. Learn about the significant advancements in SBOM (Software Bill of Materials) and attestation adoption, supported by a rapidly maturing ecosystem of generation, verification, and consumption tools. Examine how the open source community has responded to escalating threats through innovative tooling, enhanced standards, and widespread best practice implementation. Understand strategies for chaining security tools together to maximize their protective impact across your software supply chain. Get hands-on insights into key open source projects spanning the CNCF and OpenSSF ecosystems, including in-toto for supply chain integrity, TUF for secure software distribution, SLSA for supply chain levels, GUAC for software composition analysis, bomctl for SBOM management, SBOMit for SBOM generation, and protobom for SBOM processing and manipulation.

Syllabus

Chain Reaction: Remixing CNCF’s Supply Chain Security Guide for 2025 - John Kjell, ControlPlane

Taught by

Linux Foundation

Reviews

Start your review of Chain Reaction - Remixing CNCF's Supply Chain Security Guide for 2025

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.