Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
This 45-minute OWASP Foundation presentation explores practical strategies for defending against the growing threat of Software Supply Chain attacks. Learn about the various types of attacks including Repo Jacking, Repo Poisoning, Typo Squatting, and Dependency Confusion. Understand how threat actors, from nation states targeting high-value infrastructure to financially motivated attackers seeking ransoms via cryptocurrency, exploit vulnerabilities in the software supply chain. Examine why certain sectors like hospitals, municipalities, and schools are particularly vulnerable due to limited resources and expertise. Discover how governmental responses such as Europe's Cyber Resilience Act and the US mandate for SBOMs attempt to counter these threats, and why the growing software security industry (valued at approximately 172 billion USD in 2023) hasn't necessarily reduced the threat landscape. Gain actionable insights to improve your organization's defensive capabilities against these sophisticated attacks.
Syllabus
Practical Software Supply Chain Security Solutions - Robert Marion
Taught by
OWASP Foundation