DevOps Radar: Personal Insights on CI/CD, Kubernetes, Docker
  • Devops Radar
  • About
  • AI Tools
  • DevOps
  • Automations
Sign in Subscribe

Supply Chain Security

Cosign v3 Unpacked: Mastering Artifact Signing, Attestations & Seamless Migration for Secure DevOps Pipelines

Cosign v3 Unpacked: Mastering Artifact Signing, Attestations & Seamless Migration for Secure DevOps Pipelines

Introduction: The Fragile Trust We Place in Artifact Signing What if a seemingly minor version upgrade could halt your entire deployment pipeline for days? Last month, a mid-sized fintech learned this the hard way when unsigned or improperly verified container images slipped through due to outdated Cosign tooling. The result?
Shell Ygin 04 Nov 2025
AI-Driven Supply Chain Security: How Aikido Security, Tenable Nessus AI, and Qualys VMDR Slash Vulnerability Risk and Boost Operational Resilience

AI-Driven Supply Chain Security: How Aikido Security, Tenable Nessus AI, and Qualys VMDR Slash Vulnerability Risk and Boost Operational Resilience

Why Supply Chain Security Is the DevOps Achilles’ Heel Have you ever considered how one weak npm package or Docker image could bring down your entire pipeline? The 2025 npm supply chain attack did exactly that—compromising popular packages like debug, chalk, and about 18 others, collectively downloaded billions of
Shell Ygin 17 Sep 2025
Supply Chain Security Tools: 6 Breakthrough Platforms for Managing Third-Party Risk and Dependency Vulnerabilities at Scale

Supply Chain Security Tools: 6 Breakthrough Platforms for Managing Third-Party Risk and Dependency Vulnerabilities at Scale

Introduction: The Operational Peril of Third-Party Dependencies Did you know that 73% of organisations have no clear visibility into their software supply chains — and in 2025, that’s tantamount to handing the keys to the kingdom straight to attackers? Over the past year, supply chain attacks haven't just
Shell Ygin 05 Sep 2025

Subscribe to DevOps Radar: Personal Insights on CI/CD, Kubernetes, Docker

Don't miss out on the latest news. Sign up now to get access to the library of members-only articles.
  • Sign up
DevOps Radar: Personal Insights on CI/CD, Kubernetes, Docker © 2026. Powered by Ghost