NPM Package Compromise and What Recent Exploits Teach Us About Threat Intelligence Overload
Red Canary via YouTube
Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore the persistent security challenges facing modern software development in this 34-minute cybersecurity webinar from Red Canary's Office Hours series. Examine the ongoing threat of malicious NPM packages and their impact on the developer supply chain, drawing insights from recent research and real-world compromises. Analyze the critical problem of threat intelligence overload that security professionals face daily, using current examples like ESXi hacking campaigns and Microsoft SharePoint vulnerabilities to illustrate how organizations can become overwhelmed by the constant stream of security alerts and advisories. Learn practical approaches to managing and prioritizing threat intelligence effectively while understanding the broader implications of open-source software security risks. Gain valuable perspectives on balancing comprehensive security awareness with actionable intelligence that doesn't paralyze decision-making processes.
Syllabus
00:00 - 00:40 Introduction
00:41 - 02:31 Welcome to Red Canary Office Hours!
02:32 - 17:17 NPM Package Compromise
17:18 - 32:58 Threat Intelligence Overload
32:59 - 33:30 See you next week!
Taught by
Red Canary