loading...

June 19, 2024 12:00pm

1h 29m

Jacob DePriest, VP and Deputy Chief Security Officer at GitHub, joins the show this week to talk about securing GitHub. From Artifact Attestations, profile hardening, preventing XZ-like attacks, GitHub Advanced Security, code scanning, improving Dependabot, and more.

Join the discussion

Changelog++ members save 14 minutes on this episode because they made the ads disappear. Join today!

Sponsors:

  • Socket – Secure your supply chain and ship with confidence. Install the GitHub app, book a demo or learn more
  • NeonFleets of Postgres! Enterprises use Neon to operate hundreds of thousands of Postgres databases: Automated, instant provisioning of the world’s most popular database.
  • CronitorCronitor helps you understand your cron jobs. Capture the status, metrics, and output from every cron job and background process. Name and organize each job, and ensure the right people are alerted when something goes wrong.
  • Fly.ioThe home of Changelog.com — Deploy your apps and databases close to your users. In minutes you can run your Ruby, Go, Node, Deno, Python, or Elixir app (and databases!) all over the world. No ops required. Learn more at fly.io/changelog and check out the speedrun in their docs.

Featuring:

Show Notes:

Something missing or broken? PRs we

  • https://cdn.changelog.com/uploads/avatars/people/Qo/avatar_large.jpg?v=63760280419
    Adam Stacoviak

    Host

  • https://cdn.changelog.com/uploads/avatars/people/5Okel/avatar_large.jpg?v=63886037275
    Jacob DePriest

    Guest

  • https://cdn.changelog.com/uploads/avatars/people/z4/avatar_large.jpeg?v=63760071650
    Jerod Santo

    Host