© The Author(s), under exclusive license to APress Media, LLC, part of Springer Nature 2022
M. BakerSecure Web Application Development https://doi.org/10.1007/978-1-4842-8596-1_13

13. Third-Party and Supply Chain Security

Matthew Baker1  
(1)
Kaisten, Aargau, Switzerland
 

In this chapter, we turn to security topics beyond writing code but that nonetheless affect our application security: developers and their devices, third-party components, and supply chain security.

People are often the weakest link in application security. Attackers know this and therefore target organizations’ staff in preference to finding code vulnerabilities. Fortunately, there are defenses against such attacks, and we will look at those in this chapter.

All code depends in some ...

Get Secure Web Application Development: A Hands-On Guide with Python and Django now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.