Michael Lieberman
@mikeneeds.rest
📤 194
📥 176
📝 47
Software supply chain security
reposted by
Michael Lieberman
Rachel Leggett
18 days ago
So when the aurora borealis is faint enough, you can capture its glow with the Milky Way 😍 Berthoud Pass, CO last night
85
4283
641
reposted by
Michael Lieberman
Alex Lawson
25 days ago
I had a run in with ICE snatching a man out of his car while walking my children to school this morning in NW DC I asked a neighbor to continue walking my kids to school and I turned back to document and confront the ICE agents. I am in contact with
@dcmigrantmutualaid.org
with the full video.
loading . . .
1140
18256
6395
reposted by
Michael Lieberman
OpenSSF
about 1 month ago
The global push for
#SBOM
standards is reshaping how we approach cybersecurity and transparency. 🌍 Explore how the EU
#CRA
, CISA, and @OpenSSF efforts are aligning global software supply chain security.
openssf.org/blog/2025/10...
0
3
1
reposted by
Michael Lieberman
OpenSSF
2 months ago
How to contribute your first line of code to open source? Contributing to the OpenSSF
#community
isn’t just about code, it’s about building trust, learning how secure software is built, and growing your career. Read the blog and take your first step:
openssf.org/blog/2025/08...
0
4
1
reposted by
Michael Lieberman
kat cosgrove
4 months ago
The usefulness of an open source project is not an indication of the project's health, stability, or reliability in production!!!! AHHHHHHHHHHHHHHHHH
4
105
12
I was interviewed recently about Kusari's new security PR bot. Check it out!
loading . . .
Startup Embeds AI Security Analysis in Dev Workflow
Kusari Inspector analyzes dependencies and code changes during pull requests, providing devs with actionable go/no-go recommendations before code merges.
https://thenewstack.io/startup-embeds-ai-security-analysis-in-dev-workflow
6 months ago
0
4
2
reposted by
Michael Lieberman
Xe
6 months ago
9
486
91
I recently wrote my thoughts on why we should focus more on securely consuming open source than trying to enforce the trustworthiness of devs
mikeneeds.rest/license-to-n...
Since some folks aren't familiar with satire, this is satire, this is tongue in cheek, please don't take this too seriously :).
loading . . .
License to `npm install`? Why do we burden our road builders when the drivers are drunk at the wheel? | Michael Lieberman
Alright, let's talk about the digital world we've built. It runs on open source software (OSS). Your phone, your cat's smart litter box, the thing that tells you pizza is on the way – all powered in l...
https://mikeneeds.rest/license-to-npm-install/
7 months ago
0
2
0
reposted by
Michael Lieberman
OpenSSF
7 months ago
The new
#Cybersecurity
Skills Framework maps 14 core job roles to real-world security skills. ✅ Built by practitioners ✅ Easy to customize ✅ Standards-aligned 🔗 Launch the free tool:
cybersecurityframework.io
📰 Read more:
openssf.org/press-releas...
0
0
2
reposted by
Michael Lieberman
Giant Bomb
7 months ago
Giant Bomb lives! Fandom has sold the site to us and it is now fully independent and employee-owned. We'll see you all on Tuesday for the Giant Bombcast. For more info right now, head over to
www.giantbomb.com/join
575
14691
4244
reposted by
Michael Lieberman
niki grayson
7 months ago
polygon and giant bomb dead in the same week is just unfathomable
46
3012
525
Cat
7 months ago
0
5
0
reposted by
Michael Lieberman
Corey Quinn
8 months ago
Because they clearly don’t have a vision. They’re ruining their flagship product to chase after something consumers by and large don’t want.
add a skeleton here at some point
2
35
6
reposted by
Michael Lieberman
Eddie Knight
8 months ago
Here's a playlist with the 7 KubeCon talks from TAG Security leads! Seven!! 🤯
@mikeneeds.rest
@sublimi.no
www.youtube.com/playlist?lis...
loading . . .
TAG Security @ KubeCon EU 2025 - YouTube
https://www.youtube.com/playlist?list=PLtyuN-M8J7LstE_jDRFcMsEjSRHPkkQkt
0
8
2
reposted by
Michael Lieberman
Eddie Knight
8 months ago
This is it,
@mikeneeds.rest
. The high water mark. The peak. The climax. The apex. It only goes down from here.
0
3
1
reposted by
Michael Lieberman
OpenSSF
8 months ago
🚨 OpenSSF community is heading to Denver for
#OpenSSFCommunity
Day NA 2025 on June 26! AI security, SBOM tooling, real-world TTX, and more — all in one day. 🌄 Co-located with
#OSSummit
🛡️ Agenda is live — register now! 🔗
openssf.org/blog/2025/04...
#CyberSecurity
#OpenSourceSecurity
0
4
1
reposted by
Michael Lieberman
Stephen Augustus (he/him)
8 months ago
Love when companies post about being major contributors to
#opensource
projects after laying off a ton of core contributors to those projects!
9
111
16
reposted by
Michael Lieberman
Alexis "Horgix" Chotard
8 months ago
A keynote about the EU Cyber Resilience Act at the
#KubeCon
#CloudNativeCon
EU couldn't be more appropriate! Happy to see it there and that we start collectively discussing the implications, how to comply, etc.! Thanks
@eddieknight.dev
and
@michaellieberman.bsky.social
for bringing that topic 🙂
2
5
2
reposted by
Michael Lieberman
Ben Cotton (he/him)
8 months ago
Are you confused about the CRA? Check out
@mikeneeds.rest
and
@eddieknight.dev
's
#KubeCon
keynote on Friday morning.
add a skeleton here at some point
0
3
2
reposted by
Michael Lieberman
Acyn
9 months ago
AOC: I want to live in an America that guarantees healthcare to every person. I want to live in an America that has a living wage for every person I want to live in an America where you have free speech to express yourself and not be afraid of being put on a list or deported.
loading . . .
1205
71607
15636
reposted by
Michael Lieberman
kat cosgrove
9 months ago
I'm looking for my next thing, and I need to move fast. I have several years of experience in developer relations from startups to the enterprise, and I'm particularly skilled at distilling complex topics into something easily understood by newbies and non-technical folks alike, on stage or off. 1/3
6
345
218
reposted by
Michael Lieberman
WIRED
9 months ago
If you're wondering where we stand on politics coverage, we're not slowing down, or stopping anytime soon. Some words from our Global Editorial Director
@katie-drummond.bsky.social
:
add a skeleton here at some point
24
2016
316
reposted by
Michael Lieberman
Mihai Maruseac
9 months ago
After testing OpenAI and Gemini models on the 3 puzzle problems proposed in January on my blog, it is time to look at how Claude models answer them. Tested only versions 3 and 3.5 since I ran the scripts back in Jan, but even so the models performed quite well. More on my blog:
mihai.page/ai-2025-5
loading . . .
How do Claude models perform on the 2025 AI puzzle competition?
In this article I read 2.5 million characters output by Claude models to score them on the 3 problems I proposed in the previous articles.
https://mihai.page/ai-2025-5/
0
2
2
reposted by
Michael Lieberman
The Kyiv Independent
9 months ago
It’s time to say it plainly. America’s leadership has switched sides in the war. The American people have not, and they should speak up.
loading . . .
Editorial: A president just disrespected America in the Oval Office. It wasn’t Zelensky
It’s time to say it plainly. America’s leadership has switched sides in the war. The American people have not, and they should speak up. In the past several weeks, the U.S. leadership has demonstrate...
https://kyivindependent.com/editorial-a-president-just-disrespected-america-in-the-oval-office-it-wasnt-zelensky/
324
8849
2671
reposted by
Michael Lieberman
Martin Matishak
9 months ago
EXCLUSIVE: Defense Secretary Pete Hegseth last week ordered U.S. Cyber Command to stand down from all planning against Russia, including offensive digital actions. On
@therecordmedia.bsky.social
therecord.media/hegseth-orde...
loading . . .
Exclusive: Hegseth orders Cyber Command to stand down on Russia planning
The secretary of Defense has ordered U.S. Cyber Command to stand down from all planning against Russia, including offensive digital actions, sources tell Recorded Future News.
https://therecord.media/hegseth-orders-cyber-command-stand-down-russia-planning
900
8526
6552
reposted by
Michael Lieberman
OpenSSF
9 months ago
Announcing the initial release of OSPS Baseline, providing a structured set of security requirements aligned with international cybersecurity frameworks, standards, and regulations, aiming to bolster the security posture of
#opensource
software projects.
openssf.org/press-releas...
0
1
3
reposted by
Michael Lieberman
OpenSSF
9 months ago
🔧 Get involved: GitHub:
github.com/ossf/wg-glob...
Slack:
openssf.slack.com/archives/C08...
add a skeleton here at some point
0
5
2
reposted by
Michael Lieberman
Chris Aniszczyk
9 months ago
"How AI generated code accelerates technical debt"
leaddev.com/software-qua...
loading . . .
How AI generated code accelerates technical debt
GitClear’s latest report exposes rising code duplication and declining quality as AI coding tools gain in popularity.
https://leaddev.com/software-quality/how-ai-generated-code-accelerates-technical-debt
0
4
2
reposted by
Michael Lieberman
Brian Fox
10 months ago
Good news for Java developers! Central now validates OpenSSF sigstore signatures as part of publishing. If you’re already signing your artifacts with Sigstore, you’ll now get real-time validation feedback in the Central Publisher Portal. Read more details here:
www.sonatype.com/blog/central...
0
5
3
reposted by
Michael Lieberman
OpenSSF
10 months ago
🌍🔒 The Linux Foundation Europe and
#OpenSSF
are teaming up to help open source maintainers, manufacturers, and stewards navigate the EU Cyber Resilience Act (#CRA) and global cybersecurity regulations.
openssf.org/press-releas...
1
4
3
reposted by
Michael Lieberman
The Linux Foundation
11 months ago
🚀 Cybersecurity is a global effort! Join LF Research, OpenSSF & LF Europe’s Cybersecurity Readiness Survey to shape best practices and access key insights. 👉
www.research.net/r/MR35RMF
#Cybersecurity
#LFResearch
1
28
6
After cocktails with one of my favorite people
@puerco.mx
in Mexico City.
about 1 year ago
1
16
1
Fun cocktail at Limantour Polanco in Mexico City. You can see
@puerco.mx
in the background.
about 1 year ago
0
2
0
Breakfast in Mexico City post kubecon and Linux member summit.
about 1 year ago
2
6
0
Just two of the cats.
about 1 year ago
0
0
0
reposted by
Michael Lieberman
Eddie Knight
about 1 year ago
Just sent out a notice that the Common Cloud Controls project is about to enter its first official release cycle 😮 Signups are now open for anyone employed by a financial services institution who wants to be part of the change management board. Credly badges afterward for participants 😁
0
1
1
OH: Cheese, man In reference to this charcuterie board at the Linux Member Summit
about 1 year ago
0
1
0
Spending most of the month living out of a suitcase and missing this little buddy.
about 1 year ago
0
5
0
Spent the weekend between
@cncf.io
#kubecon
and
@openssf.org
governing board meeting in LA visiting family. Here are some cats I saw when out there.
about 1 year ago
0
5
0
reposted by
Michael Lieberman
Friday Night
about 1 year ago
Friday at last…
loading . . .
9
782
556
reposted by
Michael Lieberman
Popehat of Serious Proportion
about 1 year ago
It’s important to fight evil seriously, but never forget that ridicule is a key part of fighting evil. They absolutely cannot handle being laughed at. But they are ridiculous losers. Laugh at them.
add a skeleton here at some point
48
2507
466
I’m signing books at the Kusari booth at
#kubecon
come check it out Q37
about 1 year ago
0
4
0
Bluesky is just fun. I don’t know how long this will last but at least right now it reminds me of better times.
about 1 year ago
0
2
0
For everyone at
#kubecon
we are cohosting an event with Active State and Control Plane tonight!
www.eventbrite.com/e/open-sourc...
loading . . .
Open Source Security On Tap
Join us for a community fiesta where SLSA, GUAC, and brews are all on tap! It'll be an evening of fun, great drinks, and conversations.
https://www.eventbrite.com/e/open-source-security-on-tap-tickets-1039261919377?utm_experiment=test_share_listing&aff=ebdsshios
about 1 year ago
0
5
0
Here on Salt Lake City now for
#kubecon
. Hit me up to chat about all thing supply chain security related
about 1 year ago
0
1
0
Who is gonna be at
#kubecon
next week? I’d love to chat all things security!
about 1 year ago
2
0
0
you reached the end!!
feeds!
log in