Securing CI/CD for an open source project: lessons from Cilium
Cilium shares security lessons learned from securing its own CI/CD pipeline as an open-source project, covering topics like supply chain attacks, trusted builds, artifact signing, and minimizing attack surfaces to protect the software delivery lifecycle.