Cole Kennedy @colek42c
Founder - TestifySec - Secure Systems from Source to Production testifysec.com Huntsville, AL Joined November 2015-
Tweets2K
-
Followers543
-
Following461
-
Likes1K
In the latest episode of Cloud Unfiltered, @colek42c breaks down the concepts of supply chain security and discussed the importance of attestation with @mchenetz. Listen on Substack: cs.co/6014bcMUn or watch here: cs.co/6015bcMUX
go-witness now support signing and verifying policy with @projectsigstore github.com/in-toto/go-wit…
If you are in Chicago for #KubeConNA I highly recommend @Wookiefoot playing at Reggies tonight at 9:30.
Bingo! Signatures are empty attestations, or even Implicit Attestations where the subject and predicate are defined out of band by the context of how the signature was generated. Explicit is better than implicit in security!
Bingo! Signatures are empty attestations, or even Implicit Attestations where the subject and predicate are defined out of band by the context of how the signature was generated. Explicit is better than implicit in security!
Has anyone used, or maybe written about using in-toto for tracking provenance of AI models? cc @trishankkarthik @justincormack, @torresariass , @ffkiv , @adityasaky
For anyone looking for a last minute Halloween Costume... We hear that supply chain security experts get paid well... This kit could get you started. 😎 💻 Stay safe out there in the digital world. #halloween #cybersecurity #softwaresupplychain
We’re hiring @testifysec! 🛡️🎉 Have you ever wanted to work on open source full time? Do you want to make the world’s 🌎 software more secure? 🔐 This could be for you: testifysec.com/careers/open-s…
We're having our first Witness and Archivista community call today at 11:00 am EDT! 🎉Come learn about attestations for your supply chain. ⛓️Meeting info here: github.com/testifysec/com…
Are you heading to #devopsdaysdc? I will be there Thursday, Sept 14. Who want's to meet up and nerd out over the importance of software supply chain security. #testifysec #software #supplychain
My personal version of hell is using JIRA over a VDI hosted across the ocean.
As supporters and maintainers of in-toto, we are extremely excited to support their graduation proposal. The in-toto framework is the security backbone of our products at TestifySec, and we couldn’t be more proud to support the project for graduation.
Happy Labor Day! I hope you too are ghosting work today like I am. #laborday
📦 SBOMit An SBOM format independent method for attesting components with additional verification information Uses in-toto attestations and layouts sbomit.dev
📚 tl;dr sec 196 How secrets leak in CI/CD @KarimPwnz WrongSecrets lab @owasp AI threat modeling @DanielMiessler in-toto: API of DevSecOps @adityasaky, @colek42c Rein in your SIEM @ExpelSecurity Simple parenting hacks @rez0__ #cybersecurity tldrsec.com/p/tldr-sec-196
I wrote down some of my ideas around DevSecOps and how we can leverage the in-toto API to move forward. cncf.io/blog/2023/08/1…
Who would be interested in a co-located conference dedicated to TUF and in-toto?
At TestfiySec we want to encourage our team to lean into innovation and not doing something just because everyone else is. But find creative ways to deliver better results for our partners and the Saas community as a whole. Thoughts? #cybersecurity #testifysec #saas

Dan Lorenc @lorenc_dan
11K Followers 2K Following OSS Supply Chain Security. Founder/CEO/Primary Ariba Admin at https://t.co/sGmuUU9JbG Sigstore: https://t.co/dWKlyYu6kv
developer-guy @developerguyba
5K Followers 2K Following 🚀CNCF Ambassador 23• 🐳 Docker Captain 23•🎖Best Sigstore Evangelist 22 • ㏅CDF Ambassador 23 • 🇹🇷@kcdturkey Organizer •🕴Organizer @cloudnativetr @devopstr
Luke Hinds @decodebytes
3K Followers 733 Following No longer active here; find me on: https://t.co/bdAWiJOO1e
Chainguard ⛓️ @chainguard_dev
6K Followers 117 Following The safe source for open source (& memes). Secure your software with zero CVE container images!
Santiago @torresariass
834 Followers 910 Following Assistant Professor of ECE and Security Bricoleur @PurdueEngineers | @arch_security | views are my own
Brandon Lum @lumjjb
1K Followers 632 Following 🔑CNCF Security TAG Co-Chair Emiritus 💻Google Engineer 🎸Musician/Guitarist All things Containers + Security... Opinions are my own...
puerco @puerco
3K Followers 2K Following Adolfo García Veytia / Technical Lead @Kubernetesio SIG Release / Staff Software Engineer @StackLokHQ / historian / WorldCyclist / fmr @chainguard_dev @uservers
Mihai Maruseac @mihaimaruseac
2K Followers 2K Following Supply chain security @ Google OSS Security Team. Previously TensorFlow Security & OSS (@ Google); Haskell+differential privacy+ML @ LeapYear. Views my own
Andrew Block @sabre1041
3K Followers 2K Following Distinguished Architect at Red Hat. Developer, Maintainer, Innovator. Sports and Travel Junkie.
James Strong @strongjz
3K Followers 5K Following SA @isovalent, @Networkandk8s Author, ingress-nginx maintainer, weightlifter, ACG instructor,adjectives, yay, Opinions my own? he/him.
Nicolas Chaillan @NicolasChaillan
5K Followers 1K Following Founder of Ask Sage. First Air Force and Space Force Chief Software Officer. Put #Kubernetes on Jets, Bombers and Space Systems. Opinions are my own.
DefenseUnicorns @DefenseUnicorns
502 Followers 164 Following Helping mission innovators become heroes through continuous software delivery.
Engin Diri @_ediri
5K Followers 2K Following Cloud Native Pilgrim | Kubernetes Enthusiast | Serverless Believer | Senior Solutions Architect @PulumiCorp | (he/him) | CK{A,AD} | tweeting my own opinions
Allan is @allanfriedm... @allanfriedman
7K Followers 2K Following #SBOM Champion. Full service technocrat. Now at @CISAgov, formerly NTIA. Lapsed{engineer, academic, author}. Personal Account.
Héctor Fernández �... @hectorj2f
626 Followers 1K Following @chainguard_dev, ex-@mesosphere, ex-@redhat ex-@giantswarm. Focused on distributed computing, K*s, security, golang and C. Phd in CS https://t.co/t5E2kT6n7y
Ciara Carey @Ciara_Carey_
651 Followers 2K Following Developer working in Developer Relations @Cloudsmith. Interested in the topic of supply chain security and DevOps.
Ellamora 🌻❤ @CIEL_unity
147 Followers 1K Following 🏝 From shopping sprees to deep dives into books, I live with passion and purpose.🫶❤️
Clara Araujo @Claraaraujo1234
6 Followers 234 Following One day the great roc rises with the wind and soars up to 90,000 miles
SerenaBlake @SerenaBlake_a
295 Followers 458 Following Med-aesthetic specialist | Custom growth strategist | I don’t follow trends—I define them. 💼💋
Ywhooercon @Ywhooercon5406
22 Followers 898 Following
Lily @Maluvettel70
404 Followers 3K Following Let your imagination run wild and create your own world. 🎭 I practice being both soft and strong every day. 🕊️💪
Aria @Lumarie06
117 Followers 304 Following Just a girl, standing in front of the world, ready to shine 🌟💫
Sabine Bianchi @SabineBianchi69
140 Followers 936 Following Hobbies: Book clubs, art exhibitions, charity events, and getting together with friends
Charlotte @the_charlotte
892 Followers 2K Following I'm not seeking perfection, I simply love to express and create
Bruidaw @Bruidaw109
28 Followers 920 Following
Evouqor @Evouqor7343938
30 Followers 1K Following
Rovxie @Rovxie6413
33 Followers 972 Following
Awfralkoup @Awfralkoup1891
31 Followers 2K Following
hypervanse @hypervanse
523 Followers 8K Following PhD in Physics, AI , Super Alignment, ethical hacker, red teamer - unpaid, CAUSX Developer,MATLAB programmer, musical artist, gamer. 超人 (not superman) seek +alt
Theodora Andersen @TheodoraAn47731
24 Followers 1K Following
Ambuj Kulshreshtha @Kulshreshthaak
23 Followers 537 Following Dev GSoC'24@AboutCode | Pythonista | DevOps and Machine Learning
Roxane Fischer @RoxaneFis
157 Followers 267 Following Tracking the latest news in DevOps and cloud infra Building your new on-call engineer @ https://t.co/GpZQOAs2U1
Rajiv Singh @therajiv
4K Followers 3K Following sde 3 @maersk | gsoc | gsod | lfx | icpc regionalist | just sharing whats on my mind this is my life the wins the mess the mindset the data opinions mine alone
Marian @R2g59JZflgGhHQ2
63 Followers 7K Following
Rachel Bartels @rachel_bartel5
648 Followers 256 Following 🇪 🇳 🇹 🇷 🇪 🇵 🇷 🇪 🇳 🇪 🇺 🇷 🅼︎🅰︎🆁︎🅺︎🅴︎🆃︎📶🅴︎🅳︎🆄︎🅲︎🅰︎🆃︎🅾︎🆁︎ FINANCIAL ANALYST💲📈📉
FetchClub @fetchclubagency
2 Followers 177 Following Affordable Web Scrapers Hosted on Apify | LinkedIn Jobs | LinkedIn Company Profiles | JobServe Jobs | From Just $7.99 per Month
Beth Pariseau @PariseauTT
4K Followers 3K Following Senior News Writer, @InformaTTGT $TTGT. Thoughts here are my own. beth.pariseau at informatechtarget dot com @[email protected]
Mia @shouenmoe41729
110 Followers 7K Following
EdenLouie @5kjctjXleC5jN4N
69 Followers 7K Following
Nikhil Wakalkar @wakalkarnikhil
43 Followers 249 Following Software Developer @Capgemini, Volunteer @ArtOfLiving Enthusiast, Social Activist and avid reader.
Evan Gilman @evan2645
852 Followers 102 Following Co-founder @spirl_inc, and @SPIFFEio + SPIRE maintainer. Co-author of Zero Trust Networks. ex-@pagerduty ex-@scytale_io ex-@VMware
Aman Rawat @ar801011
6 Followers 167 Following
Allen Kevi @Allen_kevi
6 Followers 116 Following
dkdi01034 @dkdi48595kfls83
1 Followers 116 Following
NanoVMs @nanovms
2K Followers 7K Following NanoVMs - no users, no login, single application unikernel vms. Protecting everyones cloud. Faster than Docker, Faster than Linux.
think(x) @thinkx
2K Followers 6K Following Postgres evangelist, open-source ambassador, recovering enterprise architect
Jason van Zyl @jvanzyl
2K Followers 486 Following Creator of Apache Maven, Founder of Sonatype, Founder of Takari, now all CI/CD & Kubernetes
Emiliano Soares @EmilianoSoares6
309 Followers 6K Following
Elizabeth @778_elizabeth
41 Followers 250 Following
BDatFireflyTSM @BDatFireflyTSM
29 Followers 79 Following
[email protected]... @IanMLewis
7K Followers 394 Following Prev @GoogleCloudTech on Supply Chain and Cloud Native Security. Also at: https://t.co/7HzDrdhMty https://t.co/xMxsSFzV3w
Aaron Mendoza @aaronlmendoza
375 Followers 3K Following Life is a sequence of moments, each taking us to potential directions we can follow. It’s a measurement of experiences, how you live them is ur legacy
ELIJAH LATICBE @ELIJAHLATICBE
129 Followers 247 Following Web Developer | Graphics Designer | Cyber Security Student. Former Host & Co-Founder;@Mali_Hub_ . #innovation & #technology
Cyber_junki_ @Srihars97219031
46 Followers 2K Following
Djalal Harouni (@djal... @tixxdz
460 Followers 355 Following Open Source Software & Security - Linux Kernel, #eBPF - systemd - https://t.co/7WuM6qTpb1 - Opinions are my own. https://t.co/UxKQCXCTQi
Sundone_cindy @cindy_sundone
27 Followers 2K Following
Orchid @Orchid658459
49 Followers 3K Following
Ryan Hurst @rmhrisk
6K Followers 3K Following Dropout. Father. I build things. Security, Cryptography, Engineering, Entrepreneurship. @peculiarventure + xMSFT + xGOOG ++. also on https://t.co/FaDXJfnZBm & Bluesky
Jeremy Adams @jpadamspdx
297 Followers 270 Following Head of Ecosystem at https://t.co/NCeM4AgEm4. Ex GitHub, Twistlock, Puppet. Mostly on https://t.co/fKsCTafqqC and a bit of https://t.co/i7LWiaSenb
Dan Lorenc @lorenc_dan
11K Followers 2K Following OSS Supply Chain Security. Founder/CEO/Primary Ariba Admin at https://t.co/sGmuUU9JbG Sigstore: https://t.co/dWKlyYu6kv
developer-guy @developerguyba
5K Followers 2K Following 🚀CNCF Ambassador 23• 🐳 Docker Captain 23•🎖Best Sigstore Evangelist 22 • ㏅CDF Ambassador 23 • 🇹🇷@kcdturkey Organizer •🕴Organizer @cloudnativetr @devopstr
Darren Shepherd @ibuildthecloud
30K Followers 258 Following Building crap with AI. Co-Founder @Obots_ai Formerly @Rancher_Labs. k3s Creator. Member of The Church of Jesus Christ of Latter-Day Saints
Luke Hinds @decodebytes
3K Followers 733 Following No longer active here; find me on: https://t.co/bdAWiJOO1e
Chainguard ⛓️ @chainguard_dev
6K Followers 117 Following The safe source for open source (& memes). Secure your software with zero CVE container images!
Santiago @torresariass
834 Followers 910 Following Assistant Professor of ECE and Security Bricoleur @PurdueEngineers | @arch_security | views are my own
Brandon Lum @lumjjb
1K Followers 632 Following 🔑CNCF Security TAG Co-Chair Emiritus 💻Google Engineer 🎸Musician/Guitarist All things Containers + Security... Opinions are my own...
puerco @puerco
3K Followers 2K Following Adolfo García Veytia / Technical Lead @Kubernetesio SIG Release / Staff Software Engineer @StackLokHQ / historian / WorldCyclist / fmr @chainguard_dev @uservers
Mihai Maruseac @mihaimaruseac
2K Followers 2K Following Supply chain security @ Google OSS Security Team. Previously TensorFlow Security & OSS (@ Google); Haskell+differential privacy+ML @ LeapYear. Views my own
Andrew Block @sabre1041
3K Followers 2K Following Distinguished Architect at Red Hat. Developer, Maintainer, Innovator. Sports and Travel Junkie.
Tracy Miranda @tracymiranda
4K Followers 3K Following Making open source secure by default. Previously at @chainguard_dev, @cdeliveryfdn, @cloudbees. Open source powered. 🇨🇦 🇬🇧 🇰🇪
James Strong @strongjz
3K Followers 5K Following SA @isovalent, @Networkandk8s Author, ingress-nginx maintainer, weightlifter, ACG instructor,adjectives, yay, Opinions my own? he/him.
Nicolas Chaillan @NicolasChaillan
5K Followers 1K Following Founder of Ask Sage. First Air Force and Space Force Chief Software Officer. Put #Kubernetes on Jets, Bombers and Space Systems. Opinions are my own.
Chris "Not So" Short ... @ChrisShort
19K Followers 2K Following Open Source | Head of @CtrlIQ OSPO | Kubernetes Contributor | DevOps | Disabled Veteran | LEGO | Corgis | Detroit | He/Him | Views solely mine
Marc Campbell @mccode
920 Followers 788 Following CTO @ https://t.co/OKC6ie2pwd. Created https://t.co/JWcQrMOIFP Host of @readkubelist
Wookiefoot @Wookiefoot
3K Followers 512 Following ✮Follow us for band updates mixed with information, links, and video from some of the artists & charities that inspire us✮ Be Fearless and Play! ♫ ♥ ☼
Arian van Putten @ProgrammerDude
4K Followers 2K Following I perform @nixos_org witchcraft at @mercury
Clint Gibler @clintgibler
22K Followers 563 Following 🗡️ Head of Security Research @semgrep 📚 Creator of https://t.co/xwtIAI0CuJ newsletter
Marc-André Moreau @awakecoding
5K Followers 2K Following Remote desktop protocol expert, OSS contributor and Microsoft MVP. I love designing products with Rust, C# and PowerShell. Proud to be CTO at Devolutions. 🇨🇦
Marina Moore @marinanmoore
81 Followers 82 Following
Erik Rannala @ersf
3K Followers 726 Following Co-Founder @mucker; formerly Harrison Metal, TripAdvisor, eBay, etc.
Gabe Scarberry @ntwkninja
45 Followers 203 Following Problem-solving addict, IT nerd and breaker of the internet.
ARCHIVED: Jen Easterl... @CISAJen
63K Followers 49 Following Archived: Director, CISA—America’s Cyber Defense Agency. Combat Veteran. Proud Mom. Rubik’s Cuber. Aspiring Electric 🎸. ❤️/RT ≠ endorsement
tektoncd @tektoncd
4K Followers 39 Following Twitter account for the Tekton project: https://t.co/wsd4qGce4p
Ryan Hurst @rmhrisk
6K Followers 3K Following Dropout. Father. I build things. Security, Cryptography, Engineering, Entrepreneurship. @peculiarventure + xMSFT + xGOOG ++. also on https://t.co/FaDXJfnZBm & Bluesky
Marco Franssen @marcofranssen
407 Followers 632 Following Technology Evangelist | #architecture #coding | loves #photography #kubernetes #golang | Mastodon [email protected] | @atos #JuniorsGroup #alumni
Anthony Spiteri @anthonyspiteri
14K Followers 12K Following Modern Cloud and Data Platforms | Future Tech | Cricket | Founder and Host @GTwGTPodcast 🎧 | Weekend Tinkerer & Builder 🛠️
Tom Hennen @inyourbit... @inyourbits
78 Followers 58 Following Software supply chain nerd. Software engineer at Google. The opinions stated here are my own.
Pramod Gosavi @pgosavi7056
440 Followers 865 Following Tweet about technology, cybersecurity, data, venture capital, sports, food
Abhisek Datta @abh1sek
3K Followers 338 Following Author of 🚀 https://t.co/Tgbp4Dx9V5 | Building @safedepio | Software Engineer | Possibly Security Researcher | Securing Open Source Software | Nerd?
argoproj @argoproj
19K Followers 27 Following Argo is the premier open source GitOps and MLOps CNCF project
Billy Lynch @wflynch
329 Followers 291 Following Software Engineer @chainguard_dev | gitsign @projectsigstore | @tektoncd | Prev: @Google
keptn @keptnProject
2K Followers 232 Following Data-driven delivery and operations for your cloud native apps. DevOps, SRE management, SLO observability, alerts and auto-remediation. @CloudNativeFdn project
Dror Berman @drorberman
2K Followers 770 Following
Sajay @sajaya
633 Followers 660 Following https://t.co/1aRl8zmyRc Engineering Manager @Microsoft - Azure Container Registry and other container things. Married to @sharmaaditi
Kaylin Trychon @KaylinTrychon
3K Followers 2K Following Chaos Causer @ Edera | Comms @SecureAerospace | @GirlSecurity_ Mentor | Prev @chainguard_dev @google | Rule Bender l New Englander
Ritvik Sachdev @ritviksachdev10
98 Followers 1K Following Security Engineer AR/VR@facebook OSCE | OSCP
Sandeep Bhadra @bhadrasandeep
2K Followers 995 Following Resident DJ @ Vertex Ventures. Likes: elegant theorems, fiction, edm, burgundies + enterprise software. ex @menloventures, @cisco, @txinstruments 🏳️🌈
@[email protected] @fridex
230 Followers 669 Following Life is about priorities. @[email protected] 🐘
Lora Kolodny @lorakolodny
35K Followers 24K Following Optimistic on the inside. Reporter at https://t.co/ldjKmLjbD8 (Tesla & climate tech) Ex-TechCrunch, -WSJ. Tweets mine. Email: [email protected]
Steve O'Hear @sohear
26K Followers 3K Following Founder of strategic comms firm @ohearco, SVP of Strategy @tryzapp, startup angel. 10+ years as journalist @TechCrunch. Born with bad genes but a good heart™
Sean Gallagher ⚡️... @thepacketrat
22K Followers 6K Following Monitoring this frequency. Security research @ Cisco Talos.
Ron Miller @ron_miller
23K Followers 2K Following TechCrunch enterprise reporter, Boston sports fanatic. [email protected]. https://[email protected]
Brandt Keller @BrandtKeller
28 Followers 57 Following Passionate about delivering meaningful software - Open Source Developer Advocate - USMC Veteran
Developers Swearing @gitlost
36K Followers 5 Following Unfiltered commit messages containing profanity from GitHub's API. Picture is of a burning NeXT Cube. https://t.co/uYvFHdolnE on BlueSky
Andy Roth @RothAndrew
51 Followers 284 Following Full Stack Software Engineer specializing in DevOps, Kubernetes, and AWS. Currently helping make DevSecOps float at Defense Unicorns 🦄
Vim Halen @hooksie1
73 Followers 179 Following Christian, father of two, I do a lot with Go, Kubernetes, and NATS.
Shripad J Nadgowda @shri_jay
111 Followers 235 Following Cloud and Open source @ Intel, everything container security, sports enthusiast, loves cooking spicy Indian food,
Praveen K @praveenkp
121 Followers 400 Following Software Engineer imposta, enterprise ranter, cat magnet. മലയാളി 🇮🇳 in 🇳🇱Software supply chain security, human factors + system safety.
Itay Shakury @itaysk
2K Followers 742 Following VP Open Source at @AquaSecTeam | Building @AquaTrivy and @AquaTracee | Advocating as @CNCFAmbassadors
Ben fotheringham @bfoths
62 Followers 101 Following COO @controlplaneio | Kubernetes & cloud security ▲ consulting, audit/test, training
Josh Oates @joshoates
347 Followers 1K Following
Filippo Valsorda @fil... @FiloSottile
46K Followers 1 Following Cryptogopher / Go crypto maintainer / @kateconger-knower / RC F'13, F2'17 / #BlackLivesMatter / he+him https://t.co/ZE4RtJ1xqD / https://t.co/qfth7zr00W / https://t.co/j1grpEm8uR
Mattias Gees @MattiasGees
440 Followers 789 Following Director of Tech @jetstackHQ a @Venafi company | Previously @skyscrapers | Cloud Native | Kubernetes | Running | Open-source
Dan Fedick @DanFedick
345 Followers 2K Following Engineer focused on Platform, Cyber, DevSecOps, SRE, and Systems thinker. Former USAF - =★= Father of 9, Farmer. Christ is King! - 👑 -https://t.co/FhKwoE9Gh1