PLAY PODCASTS
Software Supply Chains [#Log4Shell]

Software Supply Chains [#Log4Shell]

Our scheduled topic was supply chains generally, …

cloud2030

December 17, 202153m 12s

Audio is streamed directly from the publisher (feeds.soundcloud.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

Our scheduled topic was supply chains generally, but the Log4Shell vulnerability dominated the discussion. We dove into the challenge of patching and fixing a library that is literally in nearly every device or service for years and years. That led us to supply chains in the context of software, and specifically Java Log4j. This is a critical topic and our conversation about it was very thoughtful. We really covered the angles of what it takes to produce and maintain a supply chain for software. Then we discussed alternatives and things to consider when you building anything: software products or physical products in which embedded systems and components impact your designs. Transcript: https://otter.ai/u/CJ8pYF1La6tetFasqZhEojo_zoY Image: https://www.pexels.com/photo/carton-container-with-eggs-in-rows-6294430/