Master Finance Tools - 35% Off CFI (Code CFI35)
Earn Your Business Degree, Tuition-Free, 100% Online!
Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Learn to protect your software supply chain from malicious packages using vet, an open-source security tool that goes beyond traditional CVE-based scanning to detect potentially harmful packages through behavioral and heuristic analysis. Explore the landscape of supply chain attacks with real-world examples from popular ecosystems like npm and PyPI, then discover how vet identifies suspicious packages that traditional security tools might miss. Master the practical implementation of vet in your development workflows through hands-on demonstrations of CLI usage and GitHub Actions integration within CI/CD pipelines. Gain the knowledge to interpret vet's analysis results effectively and develop actionable response strategies when suspicious packages are detected in your dependencies.
Syllabus
Malicious Package Scanning Using Vet | Supply Chain Security - Teja Kummarikuntla, Harness
Taught by
OpenSSF