
Podcast Archives - Software Engineering Daily · Podcast Archives - Software Engineering Daily
Blocking Software Supply Chain Attacks with Feross Aboukhadijeh
·48 min·4 clips
Attackers predict what AI models hallucinate, then squat on those package names to execute remote code.
As heard by us
A practical look at how trusted dependencies become a supply chain risk.
Open source dependency chains take center stage here, showing how convenience in modern software can become a security liability when attackers compromise popular libraries and pass the damage downstream.
Why you'd press play
If your build depends on packages you did not write, this conversation is worth your time.
Listen to the show on