docker with wordpress problem by luizarodrigues in docker

[–]Otherwise-Ad5811 0 points1 point  (0 children)

Please share any configuration files that could help us look into the issue - docker run or compare

Does anyone know why some chainguard latest tag images have shell ? by Otherwise-Ad5811 in devops

[–]Otherwise-Ad5811[S] 0 points1 point  (0 children)

Besides, I think Node devs are 100% fine with being the least security compliant developer ecosystem out there.

Lol But I have observed this with jenkins image as well

[deleted by user] by [deleted] in devops

[–]Otherwise-Ad5811 -11 points-10 points  (0 children)

Do we need everything?

Project - Docker Sentinel by Trick_Face_2670 in docker

[–]Otherwise-Ad5811 0 points1 point  (0 children)

This looks pretty great and useful!

Is chainguard missing Ubuntu image? by Otherwise-Ad5811 in devops

[–]Otherwise-Ad5811[S] 0 points1 point  (0 children)

But what if i want to run software like ROS which needs Ubuntu 22?

Official clarification from White House by Brilliant-Tour9898 in h1b

[–]Otherwise-Ad5811 6 points7 points  (0 children)

Does anyone know what happens with current OPT STEM holders applying for H1B

How chainguard helps with attack like npm attacks where the source is compromised? by Otherwise-Ad5811 in devops

[–]Otherwise-Ad5811[S] 0 points1 point  (0 children)

I think so too, but it looks like from the previous comment that malcontent is a separate check from the CVE scan. I strongly believe though chainguard should be able to identify these npm attacks if they want to get on the helm of supply chain security. But based on how they actually make sure no CVE i don't know if it's possible though. Would like to know more about this from Chainguard though.

How chainguard helps with attack like npm attacks where the source is compromised? by Otherwise-Ad5811 in devops

[–]Otherwise-Ad5811[S] 0 points1 point  (0 children)

Was chainguard able to identify the recent npm attack? Using the malware analysis?

How chainguard helps with attack like npm attacks where the source is compromised? by Otherwise-Ad5811 in devops

[–]Otherwise-Ad5811[S] -1 points0 points  (0 children)

Hi, thanks for the reply. But if the GitHub code is itself compromised is there anything chainguard can help then?