» » New ‘Wolfi’ Linux Distro Focuses on Software Supply Chain Security

New ‘Wolfi’ Linux Distro Focuses on Software Supply Chain Security

New ‘Wolfi’ Linux Distro Focuses on Software Supply Chain Security

Dwelling › Utility Safety

New ‘Wolfi’ Linux Distro Focuses on Software program Provide Chain Safety

By Ionut Arghire on September 23, 2022

Tweet

Chainguard this week introduced Wolfi, a stripped-down Linux OS distribution designed to enhance the safety of the software program provide chain.

Obtainable on GitHub, the neighborhood Linux distribution was created particularly to be used with containers and cloud-native functions, and helps Chainguard photographs, the agency’s assortment of curated distroless photographs.

Wolfi (named after star-sucker pygmy octopus, the smallest identified octopus), depends on the atmosphere’s kernel (as an alternative of getting its personal) to be extensively adaptable, and brings assist for each glibc and musl.

In keeping with the software program provide chain safety agency, Wolfi delivers build-time software program payments of fabric (SBOM) for all packages, has a declarative and reproducible construct system, and makes use of the apk bundle format. With Wolfi, packages are granular and unbiased, providing assist for minimal photographs.

Wolfi, Chainguard says, is supposed to assist builders improve productiveness by beginning with a secure-by-default basis that isn’t impacted by any identified vulnerabilities, whereas additionally enabling organizations to regulate most trendy provide chain threats.

“Wolfi builds all packages straight from supply, permitting us to repair vulnerabilities or apply customizations that enhance the availability chain safety posture of all the things from the compilers to the language bundle managers,” Chainguard explains.

The brand new Linux distro now powers all Chainguard photographs, a set of signed, minimal dependencies meant to considerably scale back assault floor, whereas simplifying auditing and updating. The photographs are rebuilt every day to make sure they’ve all the most recent patches.

Associated: US Gov Points Steering for Builders to Safe Software program Provide Chain

Associated: Aqua Safety Ships Open Supply Device for Auditing Software program Provide Chain

Associated: Software program Provide Chain Assaults Tripled in 2021: Examine

Associated: Chainguard Luggage Large $50M Sequence A for Provide Chain Safety

Get the Every day Briefing

 
 
 

  • Most Latest
  • Most Learn
  • SentinelOne Publicizes $100 Million Enterprise Fund
  • Microsoft Points Out-of-Band Patch for Flaw Permitting Lateral Motion, Ransomware Assaults
  • New ‘Wolfi’ Linux Distro Focuses on Software program Provide Chain Safety
  • BIND Updates Patch Excessive-Severity Vulnerabilities
  • “Left and Proper of Increase” – Having a Profitable Technique
  • CISA Warns of Zoho ManageEngine RCE Vulnerability Exploitation
  • New Firmware Vulnerabilities Affecting Thousands and thousands of Units Permit Persistent Entry
  • NSA, CISA Clarify How Menace Actors Plan and Execute Assaults on ICS/OT
  • Cyberattack Steals Passenger Knowledge From Portuguese Airline
  • How Organizational Construction, Personalities and Politics Can Get within the Means of Safety

On the lookout for Malware in All of the Unsuitable Locations?

First Step For The Web’s subsequent 25 years: Including Safety to the DNS

Tattle Story: What Your Laptop Says About You

Be in a Place to Act By Cyber Situational Consciousness

Report Exhibits Closely Regulated Industries Letting Social Networking Apps Run Rampant

2010, A Nice 12 months To Be a Scammer.

Do not Let DNS be Your Single Level of Failure

Find out how to Establish Malware in a Blink

Defining and Debating Cyber Warfare

The 5 A’s that Make Cybercrime so Enticing

Find out how to Defend Towards DDoS Assaults

Safety Budgets Not in Line with Threats

Anycast – Three Causes Why Your DNS Community Ought to Use It

The Evolution of the Prolonged Enterprise: Safety Methods for Ahead Pondering Organizations

Utilizing DNS Throughout the Prolonged Enterprise: It’s Dangerous Enterprise

author-Orbit Brain
Orbit Brain
Orbit Brain is the senior science writer and technology expert. Our aim provides the best information about technology and web development designing SEO graphics designing video animation tutorials and how to use software easy ways
and much more. Like Best Service Latest Technology, Information Technology, Personal Tech Blogs, Technology Blog Topics, Technology Blogs For Students, Futurism Blog.

Cyber Security News Related Articles