Tanukis with Hammers: The dangers of third-party tooling

A presentation at Deserted Island DevOps in April 2021 in by Laura Santamaria

Slide 1

Slide 1

Tanukis with Hammers The dangers of third-party tooling Laura Santamaria Developer Advocate @nimbinatus | #DIDevOps2121

Slide 2

Slide 2

@nimbinatus | #DIDevOps2121 Modern horror stories

Slide 3

Slide 3

@nimbinatus | #DIDevOps21 Heartbleed https://heartbleed.com/

Slide 4

Slide 4

@nimbinatus | #DIDevOps21 2020 Government Hack and 2013 Target hack

Slide 5

Slide 5

@nimbinatus | #DIDevOps21 Parler’s data failure https://commons.wikimedia.org/wiki/File:Parler_logo.png

Slide 6

Slide 6

@nimbinatus | #DIDevOps21 left-pad (The Infamous Package)

Slide 7

Slide 7

@nimbinatus | #DIDevOps21 What happened?

Slide 8

Slide 8

@nimbinatus | #DIDevOps21 Allure

Slide 9

Slide 9

@nimbinatus | #DIDevOps21 Speed

Slide 10

Slide 10

@nimbinatus | #DIDevOps21 Shift of Liability

Slide 11

Slide 11

@nimbinatus | #DIDevOps21 Cognitive Overload

Slide 12

Slide 12

@nimbinatus | #DIDevOps21 Danger!

Slide 13

Slide 13

@nimbinatus | #DIDevOps21 Going Down!

Slide 14

Slide 14

@nimbinatus | #DIDevOps21 Quality?

Slide 15

Slide 15

@nimbinatus | #DIDevOps21 Failures, Breaches, and Errors (oh my)!

Slide 16

Slide 16

@nimbinatus | #DIDevOps21 No Knowledge!

Slide 17

Slide 17

@nimbinatus | #DIDevOps21 What do you do?

Slide 18

Slide 18

@nimbinatus | #DIDevOps21 Tradeoffs and evaluations

Slide 19

Slide 19

@nimbinatus | #DIDevOps21 Protection

Slide 20

Slide 20

@nimbinatus | #DIDevOps21 Mitigation

Slide 21

Slide 21

@nimbinatus | #DIDevOps21 Don’t be afraid of third-party systems

Slide 22

Slide 22

Let the tanukis upgrade your house (Thanks) https://nimbinatus.com https://logdna.com @nimbinatus | #DIDevOps21