The presentation discusses the use of S-BOMs and container images in DevOps and cybersecurity, and the challenges in ensuring reproducibility and repeatability in container builds.
- The speaker highlights the importance of using S-BOMs and container images in DevOps and cybersecurity.
- The speaker demonstrates the use of BuildKit and TUF to ensure reproducibility and repeatability in container builds.
- The speaker also discusses the need for changes in the OCI image and distribution specs to support artifact management.
- The presentation includes a demo of building and signing container images and S-BOMs using BuildKit, TUF, and Cosign.