The POPCAST with Dan POP

Episode 23 - Github's Maya Kaczorowski on Software Supply Chain Security and Puzzle's!

Episode Summary

Maya is a Product Manager at GitHub in software supply chain security. She was previously in Security & Privacy at Google, focused on container security, and encryption at rest and encryption key management. In this extremely fun episode Maya tackles Software Supply Chain Security, Exploits and shares best practices along with how GitHub tools can help. We then delve into her love of puzzles. not jigsaw puzzles but cryptic puzzles and other fascinating things that keep her mind sharp. After this interview i started to get hooked on puzzles... THANKS MAYA! Maya is down to earth and brilliant. We are happy she did the popcast with us and this episode is a treat for all of you!

Episode Notes

Timeline / Topic
00:30 - Maya's Journey
03:36 - Maya explains what a Software Supply Chain is?
04:52 - Breaches
08:17 - How github can help you secure your Software Supply Chain. and Maya gives some security advice.  
13:05 - Maya's move from Google to Github (and how she got into Security in the first place)
16:48 - Moving to Puzzles... but first Maya talks Ice Cream!
18:13 - Lets talk about Puzzles  
23:38 - Work Maya is most proud of

 

EPISODE LINKS

Exploits and Breaches

https://www.wired.com/2007/08/ff-estonia/
https://krebsonsecurity.com/2017/02/how-to-bury-a-major-breach-notification/
https://eslint.org/blog/2018/07/postmortem-for-malicious-package-publishes
https://forum.vestacp.com/viewtopic.php?f=10&t=17641&start=180#p73907
https://blog.npmjs.org/post/180565383195/details-about-the-event-stream-incident
https://qz.com/646467/how-one-programmer-broke-the-internet-by-deleting-a-tiny-piece-of-code/

Github Links 
https://github.com/features/security
https://help.github.com/en/github/finding-security-vulnerabilities-and-errors-in-your-code/about-code-scanning
https://github.com/features/security/advanced-security/signup
https://github.co/dependency-graph
https://github.co/security-alerts
https://github.co/security-updates

Google Links

https://cloud.google.com/security/encryption-at-rest/default-encryption

Ice Cream

https://gardencreamery.com/home/

Puzzles

http://www.puzzledpint.com/
 

https://pandamagazine.com/
 

https://www.instagram.com/p/B_xTIPxA-n0/