
Brandon Lum
@lumjjb
Followers
1K
Following
2K
Media
112
Statuses
784
🔑CNCF Security TAG Co-Chair Emiritus 💻Google Engineer 🎸Musician/Guitarist All things Containers + Security... Opinions are my own...
United States
Joined February 2010
RT @JordiMonPMM: GUAC 1.0 is Now Available via @openssf. Congrats, @lumjjb, @torresariass, and @pxp928!.
0
3
0
RT @mihaimaruseac: Yesterday we launch v1.0 of model signing library, taming the wild west of model formats and deserialization vulnerabili….
0
3
0
Hi All! I’ll be talking about SBOMs and how Google produces and uses them for EO 14028 and beyond at this webinar tomorrow! Hope to see you there!.
📝 SBOMs are critical for a handful of reasons: #visibility into dependencies, enhance #security, meet #compliance and streamline development. Learn how Google is using our Syft #SBOM #opensource #SBOM tool in our upcoming webinar.
1
4
5
RT @LoriLorusso: Heading to #OSSummit EU? @Percona will be there & @decodableminion our @PostgreSQL evangelist & @openssf GUAC contributor….
0
4
0
RT @openssf: 🥑 Missed the OpenSSF Tech Talk on GUAC? Catch up now! GUAC enhances SBOM and #OSSSecurity by analyzing software components and….
0
3
0
Yes we need more accurate and complete sboms and it’s great to see ecosystems be part of this effort. Since the “sausage factory” is the best place to know how the sausage is made.
Introducing DruBOM, a Drupal-specific SBOM. 💡 What is DruBOM? .💡 How does it function? .💡 How can you leverage it for your #OSSSecurity needs? .Find out all the answers in this guest blog by @edodusi:
1
1
3
Awesome piece on supply chain security! Shout out to sigstore and GUAC!!!.
🔒 The vast majority of the world's software runs on open source code. Read this article by @Gizmodo to discover how OpenSSF's initiatives, such as Sigstore and GUAC, are shaping a more secure open source software ecosystem. #OSSSecurity
0
1
7
Come get your signed copy of select chapters of the manning supply chain security book at the @kusaridev booth during the booth crawl at 6pm! With @mlieberman85 and I!
1
2
13
RT @royalhansen: Great news today that GUAC has joined OpenSSF as an Incubating Project. @Google and industry peers created GUAC as an open….
0
6
0
🎉🥑🍅🧅I'm really excited as GUAC joins the OpenSSF community, allowing the project to continue to grow, and join forces with other partners and members in the OpenSSF in developing an open source knowledge graph! Looking forward to this next step in our journey!.
GUAC has joined the OpenSSF as an Incubating Project 🎉 GUAC is an open source supply chain security project that provides dependency management and actionable insights into the security of software supply chains. Read the announcement: #OSSSecurity.
0
2
10
RT @interlynksp: Congratulations to our friends @kusaridev for the $8M seed round! @mlieberman85 @pxp928 - you are truly bringing a special….
0
2
0
I’ll be at @CloudNativeFdn Kubeday Singapore! Come say hi and chat about open source, supply chain security, zero trust and more!!!.
1
2
11