JSJ 357: Event-Stream & Package Vulnerabilities with Richard Feldman and Hillel Wayne
JavaScript Jabber26 Mars 2019

JSJ 357: Event-Stream & Package Vulnerabilities with Richard Feldman and Hillel Wayne

SponsorsPanel
  • Aaron Frost
  • AJ O’Neal
  • Chris Ferdinandi
  • Joe Eames
  • Aimee Knight
  • Charles Max Wood
Joined by special guests: Hillel Wayne and Richard FeldmanEpisode SummaryIn this episode of JavaScript Jabber, Hillel Wayne kicks off the podcast by giving a short background about his work, explains the concepts of formal methods and the popular npm package - event-stream, in brief. The panelists then dive into the recent event-stream attack and discuss it at length, focusing on different package managers and their vulnerabilities, as well as the security issues associated with them. They debate on whether paying open source developers for their work, thereby leading to an increase in contribution, would eventually help in improving security or not. They finally talk about what can be done to fix certain dependencies and susceptibilities to prevent further attacks and if there are any solutions that can make things both convenient and secure for users.LinksPicksJoe Eames:Aimee Knight:Aaron Frost:Chris Ferdinandi:Charles Max Wood:Richard Feldman:Hillel Wayne:Special Guests: Hillel Wayne and Richard Feldman.

Support this podcast at — https://redcircle.com/javascript-jabber/donations

Privacy & Opt-Out: https://redcircle.com/privacy

Become a supporter of this podcast: https://www.spreaker.com/podcast/javascript-jabber--6102064/support.

Avsnitt(738)

090 JSJ Users Groups

090 JSJ Users Groups

The panelists talk about how to create and maintain Users Groups. Support this podcast at — https://redcircle.com/javascript-jabber/donationsPrivacy & Opt-Out: https://redcircle.com/privacyBecome a ...

3 Jan 201439min

089 JSJ The Node Security Project with Adam Baldwin

089 JSJ The Node Security Project with Adam Baldwin

The panelists talk to The Node Security Project founder and organizer, Adam Baldwin.Special Guest: Adam Baldwin. Support this podcast at — https://redcircle.com/javascript-jabber/donationsPrivacy & ...

27 Dec 201352min

088 JSJ Lazy.js with Daniel Tao

088 JSJ Lazy.js with Daniel Tao

The panelists talk to Daniel Tao, maintainer of Lazy.js.Special Guest: Daniel Tao. Support this podcast at — https://redcircle.com/javascript-jabber/donationsPrivacy & Opt-Out: https://redcircle.com...

20 Dec 201346min

087 JSJ TC39 with Alex Russell

087 JSJ TC39 with Alex Russell

The panelists discuss TC39 with Alex Russell.Special Guest: Alex Russell. Support this podcast at — https://redcircle.com/javascript-jabber/donationsPrivacy & Opt-Out: https://redcircle.com/privacyB...

13 Dec 20131h 3min

086 JSJ Ember.js & Discourse with Robin Ward

086 JSJ Ember.js & Discourse with Robin Ward

The panelists discuss Ember.js and Discourse with Robin WardSpecial Guest: Robin Ward. Support this podcast at — https://redcircle.com/javascript-jabber/donationsPrivacy & Opt-Out: https://redcircle...

28 Nov 20131h 3min

085 JSJ Huxley with Pete Hunt

085 JSJ Huxley with Pete Hunt

The panelists discuss Huxley with Pete HuntSpecial Guest: Pete Hunt. Support this podcast at — https://redcircle.com/javascript-jabber/donationsPrivacy & Opt-Out: https://redcircle.com/privacyBecome...

21 Nov 201340min

084 JSJ Node with Mikeal Rogers

084 JSJ Node with Mikeal Rogers

In this episode, the panelists talk Node with Mikeal Rogers.Special Guest: Mikeal Rogers. Support this podcast at — https://redcircle.com/javascript-jabber/donationsPrivacy & Opt-Out: https://redcir...

15 Nov 201351min

083 JSJ FRP and RxJS with Matthew Podwysocki

083 JSJ FRP and RxJS with Matthew Podwysocki

In this episode, the panelists talk to Matthew Podwysocki about Functional Reactive Programming and RxJS.Special Guest: Matthew Podwysocki. Support this podcast at — https://redcircle.com/javascript...

8 Nov 201342min

Populärt inom Business & ekonomi

badfluence
framgangspodden
varvet
rss-jossan-nina
rss-svart-marknad
rss-borsens-finest
avanzapodden
uppgang-och-fall
rss-dagen-med-di
fill-or-kill
lastbilspodden
rss-inga-dumma-fragor-om-pengar
rss-den-nya-ekonomin
bathina-en-podcast
dynastin
rss-kort-lang-analyspodden-fran-di
svd-tech-brief
bilar-med-sladd
24fragor
market-makers