JavaScript Jabber

JSJ 294: Node Security with Adam Baldwin

Informações:

Sinopsis

Panel: Charles Max WoodAJ O’NealJoe EamesSpecial Guests: Adam BaldwinIn this episode, JavaScript Jabber panelist speak with Adam Baldwin. Adam is a return guest and has many years of application security experience. Currently, Adam runs the Node Security Project/Node Security Platform, and Lift Security. Adam discusses the latest of security of Node Security with Charles and AJ. Discussion topics cover security in other platforms, dependencies, security habits, breaches, tokens, bit rot or digital atrophy, and adding security to your development.In particular, we dive pretty deep on:What is  the Node Security Project/Node Security PlatformDependency treesNPMTokens and internal dataWhat does Node Security do for me?NPX and NSPCommand Line CILBit Rot or Digital AtrophyHow often should you check repos.AdvisoriesIf I NPM install?Circle CI or TravisNSP CheckWhat else could I add to the securities?Incorporate security as you build thingsHow do you find the vulnerabilities in the NPM packagesTwo Factor authenticatio