Blocking Software Supply Chain Attacks with Feross Aboukhadijeh
Software Engineering Daily
Software Engineering Daily
4.4 • 662 Ratings
🗓️ 9 December 2025
⏱️ 48 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Modern software relies heavily on open source dependencies, often pulling in thousands of packages |
| 0:06.2 | maintained by developers all over the world. This accelerates innovation, but also creates serious |
| 0:12.5 | supply chain risks as attackers increasingly compromise popular libraries to spread malware at scale. |
| 0:19.4 | Farras Abu Khadija is the founder and CEO of Socket, |
| 0:23.6 | which is a security platform designed to protect software projects from open source supply chain attacks. |
| 0:29.6 | In this episode, he joins Josh Goldberg to talk about his career in open source, |
| 0:34.9 | open source supply chain attacks, practical security lessons, |
| 0:38.8 | the expanding attack surface in software development, and more. |
| 0:42.9 | This episode is hosted by Josh Goldberg, an independent full-time open source developer. |
| 0:48.6 | Josh works on projects in the TypeScript ecosystem, most notably TypeScript ESLint, a powerful static analysis tool set |
| 0:56.7 | for JavaScript and TypeScript. He is also the author of the O'Reilly Learning TypeScript book, |
| 1:02.9 | a Microsoft MVP for developer technologies, and a co-founder of SquiggleConf, a conference for |
| 1:08.8 | excellent web developer tooling. Find Josh on |
| 1:11.7 | Blue Sky, Fosterdon, and dot com as Joshua K. Goldberg. |
| 1:27.2 | Varaa, Suburka, DJ. Welcome to Software Engineering Daily. Thanks, Josh. Rukadija. |
| 1:28.6 | Welcome to Software Engineering Daily. |
| 1:30.3 | Thanks, Josh. |
| 1:30.9 | Glad to be here. |
| 1:31.9 | We're excited to have you. |
| 1:33.1 | You have been in and around open source and general security practices for crowd a while. |
| 1:38.3 | Before we dive into you and socket, can you tell us how did you get into coding? |
| 1:42.1 | Yeah, I got into coding when I was in high school. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from Software Engineering Daily, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of Software Engineering Daily and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

