Podcast Episodes
Back to Search
CVE update with Patrick Garrity
In this episode I chat with Patrick Garrity from VulnCheck. We discuss the chaos that has enveloped the CVE and NVD programs over the past two years.…
7 months ago
GCVE with Cédric Bonhomme and Alexandre Dulaunoy
In this episode I discuss GCVE and Vulnerability-Lookup with Alex and Cedric from CIRCL. GCVE offers a decentralized approach, allowing organizations…
7 months, 1 week ago
EU Regulations will change everything with Daniel Thompson
In this episode, we dive into the Product Liability Directive and Cyber Resilience Act with Daniel Thompson, CEO of Crab Nebula. The EU's new legisla…
7 months, 2 weeks ago
Open source microprocessors with Jan Pleskac
In this episode Jan Pleskac, CEO and co-founder of Tropic Square, shares insights on the challenges and innovations in creating open and auditable ha…
7 months, 3 weeks ago
Package URLs with Philippe Ombredanne
I'm joined by Philippe Ombredanne, creator of the Package URL (PURL), to discuss the surprisingly complex and messy problem of simply identifying ope…
8 months, 3 weeks ago
Hobbyist Maintainers with Thomas DePierre
Thomas DePierre joins Open Source Security to discuss the central idea from his blog post, "You are all on the hobbyist maintainers turf now," explor…
9 months ago
STIG automation with Aaron Lippold
I chat with Aaron Lippold, creator of MITRE's Security Automation Framework (SAF), to discuss how to escape the pain of manual STIG compliance. We ex…
9 months, 1 week ago
Ecosyste.ms with Andrew Nesbitt
I recently chatted with Andrew Nesbitt about his project, Ecosyste.ms. Ecosyste.ms catalogs open source projects by tracking packages, dependencies, …
9 months, 2 weeks ago
Curl vs AI with Daniel Stenberg
Daniel Stenberg, the maintainer of Curl, discusses the increase in AI security reports that are wasting the time of maintainers. We discuss Curl's ne…
9 months, 2 weeks ago
Repository signing with Kairo De Araujo
I recently had a chat with Kairo about a project he maintains called Repository Service for TUF (RSTUF). We explain why TUF is tough (har har har), w…
9 months, 3 weeks ago