Uploaded June 2025 | Updated September 2026, 20 hours ago
This video is a recording of a Chainguard Learning Labs livestream that happened on Tuesday, June 24.
See the show notes here: https://edu.chainguard.dev/software-security/learning-labs/ll202506/
Discover Chainguard Libraries: https://www.chainguard.dev/libraries
Check out Chainguard Libraries for Python: https://www.chainguard.dev/unchained/announcing-chainguard-libraries-for-python-malware-resistant-dependencies-built-securely-from-source
Dive in to Chainguard Libraries for Python documentation: https://edu.chainguard.dev/chainguard/libraries/python
TIMESTAMPS
0:00 Introduction and welcome
0:54 Patrick Smyth introduction and background
1:47 Chainguard! Who are we?
2:47 Chainguard Containers and the "boss assigned me to fix Ubuntu" problem
4:12 Introduction to Chainguard Libraries for Python
5:04 Python libraries fundamentals - modules, packages, and libraries
6:34 The dependency graph problem and modern ecosystem challenges
8:57 PyPI (Python Package Index) overview and infrastructure
10:53 Supply chain attacks on the rise and threats to the Python ecosystem
11:39 Supply chain meme calendar - an attack every month this year
13:54 Anatomy of supply chain attacks and attack vectors
17:43 Chainguard Libraries!
19:34 Chainguard Factory overview and operational security
21:33 Case study: Ultralytics YOLO December 2024 attack
23:22 Technical caveats and requirements for Chainguard Libraries
25:06 Demo introduction and Flask project overview
27:48 Accessing demo materials on Chainguard Academy
29:00 Demo: Cloning and setting up the Flask project
31:17 Demo: Creating virtual environment and installing from PyPI
33:06 Demo: Running Flask application and testing with libCheck tool
34:28 Demo: Configuring pip for Chainguard Libraries via repository manager
36:19 Demo: Installing dependencies from Chainguard Libraries
37:02 Demo: Verification with libCheck
38:22 Demo: Containerizing the demo application
40:25 Demo: Building and running containerized Flask application
41:41 Additional configuration options and documentation resources
42:19 Q&A: Repository manager setup and configuration
43:26 Q&A: Architecture support and glibc requirements
44:34 Q&A: libCheck tool open source plans and detailed output
46:05 Q&A: CVE scanning with Grype and vulnerability management
About Chainguard
Founded by the industry's leading experts on open source software, security and cloud native development, we are on a mission to be the safe source for open source.
Where to find us:
Website: https://www.chainguard.dev/
Twitter: twitter.com/chainguard_dev
LinkedIn: linkedin.com/company/chainguard-dev
TikTok: tiktok.com/@chainguard_dev
This video is a recording of a Chainguard Learning Labs livestream that happened on Tuesday, June 24.
See the show notes here: https://edu.chainguard.dev/software-security/learning-labs/ll202506/
Discover Chainguard Libraries: https://www.chainguard.dev/libraries
Check out Chainguard Libraries for Python: https://www.chainguard.dev/unchained/announcing-chainguard-libraries-for-python-malware-resistant-dependencies-built-securely-from-source
Dive in to Chainguard Libraries for Python documentation: https://edu.chainguard.dev/chainguard/libraries/python
TIMESTAMPS
0:00 Introduction and welcome
0:54 Patrick Smyth introduction and background
1:47 Chainguard! Who are we?
2:47 Chainguard Containers and the "boss assigned me to fix Ubuntu" problem
4:12 Introduction to Chainguard Libraries for Python
5:04 Python libraries fundamentals - modules, packages, and libraries
6:34 The dependency graph problem and modern ecosystem challenges
8:57 PyPI (Python Package Index) overview and infrastructure
10:53 Supply chain attacks on the rise and threats to the Python ecosystem
11:39 Supply chain meme calendar - an attack every month this year
13:54 Anatomy of supply chain attacks and attack vectors
17:43 Chainguard Libraries!
19:34 Chainguard Factory overview and operational security
21:33 Case study: Ultralytics YOLO December 2024 attack
23:22 Technical caveats and requirements for Chainguard Libraries
25:06 Demo introduction and Flask project overview
27:48 Accessing demo materials on Chainguard Academy
29:00 Demo: Cloning and setting up the Flask project
31:17 Demo: Creating virtual environment and installing from PyPI
33:06 Demo: Running Flask application and testing with libCheck tool
34:28 Demo: Configuring pip for Chainguard Libraries via repository manager
36:19 Demo: Installing dependencies from Chainguard Libraries
37:02 Demo: Verification with libCheck
38:22 Demo: Containerizing the demo application
40:25 Demo: Building and running containerized Flask application
41:41 Additional configuration options and documentation resources
42:19 Q&A: Repository manager setup and configuration
43:26 Q&A: Architecture support and glibc requirements
44:34 Q&A: libCheck tool open source plans and detailed output
46:05 Q&A: CVE scanning with Grype and vulnerability management
About Chainguard
Founded by the industry's leading experts on open source software, security and cloud native development, we are on a mission to be the safe source for open source.
Where to find us:
Website: https://www.chainguard.dev/
Twitter: twitter.com/chainguard_dev
LinkedIn: linkedin.com/company/chainguard-dev
TikTok: tiktok.com/@chainguard_dev










