Fixing Container Security at the Source - Britney Blodget, Docker

Опубликовано: 16 Май 2026
на канале: OpenSSF
63
0

Fixing Container Security at the Source - Britney Blodget, Docker

Docker Hub has created a thriving ecosystem of cloud native, open source software. Nearly every application that uses containers is in someway connected to Docker Hub as part of its supply chain. This massive exposure and adoption of open source software has also created a situation where enterprises have to create elaborate systems that effectively fix security gaps caused by said software. This is unacceptable.

Docker is building a new world. One where supply chains can start from secure open source building blocks. One where they can define and enforce security policies at every step of the supply chain. Most important of all, we are embedding security within Docker Hub itself to ensure that all supply chains start with security top of mind.

In this talk, we will explore new ways in which Docker is securing the supply chain, especially within Docker Hub itself. Attendees will learn best practices for how to incorporate Docker Hub into their supply chain in a way that balances access to Open Source with reducing risk throughout the supply chain.