Artwork

Contenuto fornito da HackerNoon.com. Tutti i contenuti dei podcast, inclusi episodi, grafica e descrizioni dei podcast, vengono caricati e forniti direttamente da HackerNoon.com o dal partner della piattaforma podcast. Se ritieni che qualcuno stia utilizzando la tua opera protetta da copyright senza la tua autorizzazione, puoi seguire la procedura descritta qui https://it.player.fm/legal.
Player FM - App Podcast
Vai offline con l'app Player FM !

How to Recover from the Log4j Supply Chain Attack with Ilkka Turunen

35:56
 
Condividi
 

Manage episode 322908721 series 2439625
Contenuto fornito da HackerNoon.com. Tutti i contenuti dei podcast, inclusi episodi, grafica e descrizioni dei podcast, vengono caricati e forniti direttamente da HackerNoon.com o dal partner della piattaforma podcast. Se ritieni che qualcuno stia utilizzando la tua opera protetta da copyright senza la tua autorizzazione, puoi seguire la procedura descritta qui https://it.player.fm/legal.

In this episode of the HackerNoon Podcast, Amy Tom sits down with Ilkka Turunen to talk about Supply Chain Security. They go over the Log4J incident that made a lot of apps built-in Java vulnerable to exploitation, what it means to be a field CTO, how companies can place themselves to collect user feedback, and a lot more!

Ilkka Turunen is the Field CTO of https://www.sonatype.com/ (Sonatype).

On this episode of the HackerNoon Podcast, Amy Tom and Ilkka Turunen chat about:

  • What is a field CTO anyways? 🤔 (01:20)
  • How do you stay in the loop on customer needs and feedback? ➿ (05:19)
  • How has Ikka’s job as a field CTO changed since the pandemic started? 😷 (07:30)
  • Supply chain attacks have increased since the pandemic started. How have Sonatype’s customers and the business changed over this period? 🧰 (08:53)
  • Breaking down how the executive order by Biden’s administration regarding supply chains is affecting the software industry ⚙️ (10:06)
  • What is the best way to mitigate supply chain risk? ⚠️ (11:49)
  • Getting into vendor due diligence as mitigation of supply chain risk 🚩(17:22)
  • Learnings from the Log4J incident 📝 (22:44)
  • Why are 40% of Log4J downloads still the old vulnerable versions? ☢️ (25:47)

Log4J vulnerability resource center:

Find Ilkka Turunen online:

Learn more about HackerNoon:

  continue reading

216 episodi

Artwork
iconCondividi
 
Manage episode 322908721 series 2439625
Contenuto fornito da HackerNoon.com. Tutti i contenuti dei podcast, inclusi episodi, grafica e descrizioni dei podcast, vengono caricati e forniti direttamente da HackerNoon.com o dal partner della piattaforma podcast. Se ritieni che qualcuno stia utilizzando la tua opera protetta da copyright senza la tua autorizzazione, puoi seguire la procedura descritta qui https://it.player.fm/legal.

In this episode of the HackerNoon Podcast, Amy Tom sits down with Ilkka Turunen to talk about Supply Chain Security. They go over the Log4J incident that made a lot of apps built-in Java vulnerable to exploitation, what it means to be a field CTO, how companies can place themselves to collect user feedback, and a lot more!

Ilkka Turunen is the Field CTO of https://www.sonatype.com/ (Sonatype).

On this episode of the HackerNoon Podcast, Amy Tom and Ilkka Turunen chat about:

  • What is a field CTO anyways? 🤔 (01:20)
  • How do you stay in the loop on customer needs and feedback? ➿ (05:19)
  • How has Ikka’s job as a field CTO changed since the pandemic started? 😷 (07:30)
  • Supply chain attacks have increased since the pandemic started. How have Sonatype’s customers and the business changed over this period? 🧰 (08:53)
  • Breaking down how the executive order by Biden’s administration regarding supply chains is affecting the software industry ⚙️ (10:06)
  • What is the best way to mitigate supply chain risk? ⚠️ (11:49)
  • Getting into vendor due diligence as mitigation of supply chain risk 🚩(17:22)
  • Learnings from the Log4J incident 📝 (22:44)
  • Why are 40% of Log4J downloads still the old vulnerable versions? ☢️ (25:47)

Log4J vulnerability resource center:

Find Ilkka Turunen online:

Learn more about HackerNoon:

  continue reading

216 episodi

Tutti gli episodi

×
 
Loading …

Benvenuto su Player FM!

Player FM ricerca sul web podcast di alta qualità che tu possa goderti adesso. È la migliore app di podcast e funziona su Android, iPhone e web. Registrati per sincronizzare le iscrizioni su tutti i tuoi dispositivi.

 

Guida rapida

Ascolta questo spettacolo mentre esplori
Riproduci