kusaridev (@kusaridev) 's Twitter Profile
kusaridev

@kusaridev

Software Supply Chain Security

ID: 1536796553020571650

linkhttp://kusari.dev calendar_today14-06-2022 19:53:00

35 Tweet

66 Followers

4 Following

kusaridev (@kusaridev) 's Twitter Profile Photo

It is great to be recognized by Work-Bench as one of the NYC Enterprise Seed Startups to Watch in 2023! We are looking to provide an easy on-ramp for companies adopting software supply chain security! lnkd.in/eWJvVvgf

Michael Lieberman (@mlieberman85) 's Twitter Profile Photo

We are restarting (after holidays), our GUAC monthly community call! We will have demos on our new GraphQL interface and the collector data subscription service, all components of the GUAC Beta!!! Looking forward to seeing everyone there! calendar.google.com/calendar/u/0/r…

kusaridev (@kusaridev) 's Twitter Profile Photo

Our CTO Mike just wrote up something on how Kusari is approaching Software Supply Chain Security. It's built on our experience when we were the end users trying to secure the software supply chain.

kusaridev (@kusaridev) 's Twitter Profile Photo

The technical jargon from cybersecurity articles can make it hard to understand the concepts they are promoting. Michael Lieberman makes this easier in the latest blog about the importance of signatures and attestations by providing an analogy that cat and dog lovers can understand!

OpenSSF (@openssf) 's Twitter Profile Photo

"I am thrilled to see the release of SLSA 1.0. This milestone signifies the collective efforts of the SLSA, OpenSSF and the broader open source security community in creating a critical framework that enhances the security of our software supply chains" –Michael Lieberman kusaridev

"I am thrilled to see the release of SLSA 1.0. This milestone signifies the collective efforts of the SLSA, OpenSSF and the broader open source security community in creating a critical framework that enhances the security of our software supply chains" –<a href="/mlieberman85/">Michael Lieberman</a> <a href="/kusaridev/">kusaridev</a>
kusaridev (@kusaridev) 's Twitter Profile Photo

With last week's SLSA 1.0 announcement and Kusari's commitment to the success of SLSA we have open sourced Spector, a library and tooling for helping generate, validate, and verify SLSA v1.0 provenance attestations! kusari.dev/blog/spector-a…

Brandon Lum (@lumjjb) 's Twitter Profile Photo

If you missed the GUAC this afternoon come by our talk by Parth Patel and Mihai Maruseac tomorrow!! sched.co/1K5Hn. There’s going to be a lot of cool demos and a sneak peak into our upcoming release!

If you missed the GUAC this afternoon come by our talk by <a href="/pxp928/">Parth Patel</a> and <a href="/mihaimaruseac/">Mihai Maruseac</a> tomorrow!! sched.co/1K5Hn. There’s going to be a lot of cool demos and a sneak peak into our upcoming release!
Mihai Maruseac (@mihaimaruseac) 's Twitter Profile Photo

Today is the day where you find out where is the GUAC, what it can do for you, how it can help answer supply chain security question. If you are at #ossummit (#ossna), join us at 3:10pm. We have guac, chips and GUAC. events.linuxfoundation.org/open-source-su…

Parth Patel (@pxp928) 's Twitter Profile Photo

GUAC's v0.1 beta release is around the corner! Be sure to join the community meeting this Thursday at 1 PM EST to get all the details and how to get started with GUAC! We also have a Slack channel for easy communication if you cannot attend. Link: github.com/guacsec/guac#c…

kusaridev (@kusaridev) 's Twitter Profile Photo

Big news! GUAC v0.1 Beta is out today! This has been a huge effort from the team and represents a big leap forward for supply chain security. Read about it here: kusari.dev/blog/guac-beta…

SPDX SBOM (@spdx_sbom) 's Twitter Profile Photo

Brandon and Michael Lieberman demoed guac.sh in the latest #SPDX General Meeting. It's a brilliant project and, among other things, it can help make sense of the humongous amount of data that and SPDX SBOM contains.

kusaridev (@kusaridev) 's Twitter Profile Photo

GUAC Office hours are today at 2PM EST! Please join us for any questions or concerns you have about GUAC and the maintainers can help answer them. The link to the calendar invite can be found on the community page: guac.sh/community/ #GUAC #softwaresupplychainsecurity

kusaridev (@kusaridev) 's Twitter Profile Photo

Just a reminder that the GUAC community meeting is today at 1 pm EST! Come for updates about new backend persistence, community contributions, and more. If this is your first time working with GUAC, come and ask questions! Meeting info can be found here: guac.sh/community/

Parth Patel (@pxp928) 's Twitter Profile Photo

As we work towards a persistent backend for GUAC, important requirements need to be evaluated for each database. In our latest blog, I go into detail about these and provide examples of how they relate to GUAC. kusari.dev/blog/guac-data…

Parth Patel (@pxp928) 's Twitter Profile Photo

Starting to make some huge progress toward quick ingestion in ArangoDB for GAUC (github.com/guacsec/guac)! In recent tests, we were able to ingest 33 SPDX SBOMs in 10 and half seconds! Based on our initial testing, it was taking several minutes.

Brandon Lum (@lumjjb) 's Twitter Profile Photo

Since we have a photo, here’s @nffrenchie, another co-founder of @ensigniasec with the GUAC at OSS Summit NA :) 5/n

Since we have a photo, here’s @nffrenchie, another co-founder of @ensigniasec with the GUAC at OSS Summit NA :)  5/n
Parth Patel (@pxp928) 's Twitter Profile Photo

Our #GUAC community meeting is tomorrow (8/17) at 1 PM EST! Perfect timing as we just hit 1000 stars! We will chat through and demo the changes being made to the graphQL API and demo some of the new features of the GUAC Visualizer! Invite: guac.sh/community/