James Rawlings(@jdrawlings) 's Twitter Profileg
James Rawlings

@jdrawlings

Securing software supply chains by default @chainguard_dev, previously co-created Jenkins X

ID:119024524

calendar_today02-03-2010 12:49:09

954 Tweets

2,0K Followers

561 Following

Chainguard ⛓️(@chainguard_dev) 's Twitter Profile Photo

🍕CHICAGO: Are you ready for ? ☸️
📍 Meet us at Booth Q12 👋
🎉 Come hang out with us: A Day of Security, OSS Soiree, Kuberoke, PartyCon
👂 Join Chainguardians talks: Carlos Panato puerco Adrian Mouat James Rawlings Lewis Denham-Parry James Strong
get.chainguard.dev/kubecon-na-202…

🍕CHICAGO: Are you ready for #KubeconNA? ☸️ 📍 Meet us at Booth Q12 👋 🎉 Come hang out with us: A Day of Security, OSS Soiree, Kuberoke, PartyCon 👂 Join Chainguardians talks: @comedordexis @puerco @adrianmouat @jdrawlings @denhamparry @strongjz get.chainguard.dev/kubecon-na-202…
account_circle
Dan Lorenc(@lorenc_dan) 's Twitter Profile Photo

I went to bed and the curl CVE hadn't been announced yet. I woke up this morning and it was fixed and rolled out across every Chainguard ⛓️ image.

The NVD still hasn't published any details.

nvd.nist.gov/vuln/detail/CV…

account_circle
Kaylin Trychon(@KaylinTrychon) 's Twitter Profile Photo

It's Sp00ky Szn & we take that very seriously Chainguard ⛓️ 👻

This month we will be sharing our CVE ghost stories series -- where we breakdown the haunting effects of false positive & negative CVEs.

Read if you dare: chainguard.dev/unchained/the-…

account_circle
Chainguard ⛓️(@chainguard_dev) 's Twitter Profile Photo

It’s no coincidence we started on the 1st day of Cybersecurity Awareness Month😎

14M+ images pulled
97.6% reduction in CVEs
4,400+ PRs merged Wolfi OS
& more!!

Grateful for all who helped us get here in the past 2 years. The future is bright & we are just getting started! 🚀

It’s no coincidence we started on the 1st day of Cybersecurity Awareness Month😎 14M+ images pulled 97.6% reduction in CVEs 4,400+ PRs merged @wolfi_os & more!! Grateful for all who helped us get here in the past 2 years. The future is bright & we are just getting started! 🚀
account_circle
Wolfi OS(@wolfi_os) 's Twitter Profile Photo

I recently turned 1️⃣ 🥳 🎉
Always remember: you can make a big impact even when you’re smol 🐙
A big thank you to all who have built, deployed, maintained, contributed & everything in between ❤️

I recently turned 1️⃣ 🥳 🎉 Always remember: you can make a big impact even when you’re smol 🐙 A big thank you to all who have built, deployed, maintained, contributed & everything in between ❤️
account_circle
Chainguard ⛓️(@chainguard_dev) 's Twitter Profile Photo

Chainguard Images & Wolfi OS are now supported by a growing list of open source and enterprise vulnerability scanners: Docker Scout, Grype, Snyk, Trivy and Wiz, and support for Palo Alto Network’s Prisma Cloud is coming soon! 🥳
chainguard.dev/unchained/a-gr…

account_circle
Kaylin Trychon(@KaylinTrychon) 's Twitter Profile Photo

🐙NEW IMAGE ALERT🐙

Check out Chainguard ⛓️'s Pulumi image:

chainguard.dev/unchained/chai…

The CVE count on the Chainguard Pulumi Image today according to Trivy is 15 compared to 737 in the official image -- that is a 97.9% decrease in CVEs. 📉

account_circle
Dan Lorenc(@lorenc_dan) 's Twitter Profile Photo

20 minutes. 6 lines of code. All the CVEs gone.

Also SBOMs, provenance, VEX, signatures, and other goodness.

chainguard.dev/case-studies/r…

20 minutes. 6 lines of code. All the CVEs gone. Also SBOMs, provenance, VEX, signatures, and other goodness. chainguard.dev/case-studies/r…
account_circle
Dan Lorenc(@lorenc_dan) 's Twitter Profile Photo

Have you ever woken up and thought 'I need some coffee to get the energy to make coffee?'

It's the same to build Java - you need Java to build Java. But then how do you build that Java? With an older one, of course.

Learn how we did it in Wolfi OS!

chainguard.dev/unchained/full…

account_circle
Dan Lorenc(@lorenc_dan) 's Twitter Profile Photo

In case you haven't guessed by now, we built an OCI Registry at Chainguard ⛓️ :)

It's pretty cool, and our engineering team wrote up why they built one and what makes it awesome: chainguard.dev/unchained/buil…

account_circle
Wolfi OS(@wolfi_os) 's Twitter Profile Photo

🐙MAY COMMUNITY CALL💜 5/3 @ 11AM ET
We will discuss:
🛸How Wolfi's vuln discovery process works
🛤️How we track our investigations transparently using our advisory system
🛠️How we ensure Wolfi is updated w/ automation & tooling
🗣️Dan Luhring James Rawlings
github.com/wolfi-dev/comm…

account_circle
Wolfi OS(@wolfi_os) 's Twitter Profile Photo

🐙JOIN US FOR OUR APRIL COMMUNITY CALL🐙
🗓️ WED, APRIL 5th @ 2pm ET
🗣️ Matt Turner will share how Melange, Apko, + Wolfi has helped make complex multi-stage builds smoother & how to do better, more secure builds for a Go & a Rust project! 💜 Tetrate
github.com/wolfi-dev/comm…

account_circle
Dan Lorenc(@lorenc_dan) 's Twitter Profile Photo

We have an import message to send! Телеграф.lv from InfluxData is now available as a Chainguard ⛓️ image!

Fewer CVEs and much smaller than the other options. Try it out at cgr.dev/chainguard/tel… today!

We have an import message to send! @telegraf from @InfluxDB is now available as a @chainguard_dev image! Fewer CVEs and much smaller than the other options. Try it out at cgr.dev/chainguard/tel… today!
account_circle
Wolfi OS(@wolfi_os) 's Twitter Profile Photo

For those who don't know me, let me reintroduce myself... 🐙😇
👋I am a community Linux undistro designed for the container and cloud-native era 💜
Try me out👇
edu.chainguard.dev/open-source/wo…
Ask a question✋
github.com/orgs/wolfi-dev…
Share a project 🫰
github.com/orgs/wolfi-dev…

account_circle
Dan Lorenc(@lorenc_dan) 's Twitter Profile Photo

The Chainguard ⛓️ images collection is growing rapidly, and it's not just base images! We also have full ready-to-run apps.

Recently we've added:

* NATS.io
* Apache Kafka
* TheZooKeeper
* Vault

with lots more on the way!
github.com/chainguard-ima…

account_circle