slsa

Containers & DevSecOps

CI/CD Pipeline Attacks and Supply-Chain Risk

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Containers & DevSecOps

Securing the Software Supply Chain: SBOM, Sigstore, and SLSA in Practice

A hands-on guide to attacking and defending the software supply chain with SBOM, cosign, Sigstore, and SLSA.