News
Latest
Top
Search
Submit
Login
Search
▲
420
GitLab discovers widespread NPM supply chain attack
(about.gitlab.com)
by OuterVale |
view
|
258 comments
▲
81
Supply chain attacks are exploiting our assumptions
(blog.trailofbits.com)
by crescit_eundo |
view
|
52 comments
▲
11
Supply Chain Attack on Trivy
(wiz.io)
by tiri |
view
|
5 comments
▲
9
Dutch chipmaker Nexperia urges Chinese units to help restore supply chain
(reuters.com)
by ilamont |
view
|
1 comments
▲
6
Iran War Exposes America's Unfixed Supply Chains
(prospect.org)
by caminante |
view
|
1 comments
▲
5
Supply Chain Alert: Sipeed's Official COMTools Software Flagged as Trojan
by dripmet |
view
|
2 comments
▲
4
Trivy Supply Chain Attack Expands to Compromised Docker Images
(socket.dev)
by feross |
view
|
2 comments
▲
4
The AI frenzy is causing a worldwide supply chain crisis, as prices soar
(nypost.com)
by 1vuio0pswjnm7 |
view
|
2 comments
▲
3
Anthropic Sues Pentagon over 'Supply Chain Risk' Label
(nytimes.com)
by budoso |
view
|
0 comments
▲
3
Department of War Designates Anthropic Supply Chain Risk
(twitter.com)
by jacobedawson |
view
|
0 comments
▲
3
Microsoft Signing Transparency: Secure Software Supply Chains
(azure.microsoft.com)
by speckx |
view
|
0 comments
▲
3
SHA1-Hulud, NPM supply chain incident
(snyk.io)
by tsenturk |
view
|
0 comments
▲
3
Shai-Hulud Strikes Again, Again. (NPM Supply Chain Attack)
(socket.dev)
by pvtmert |
view
|
1 comments
▲
3
Nix Sucks; Everything Else Is Worse: Building Better Software Supply Chains [video]
(youtube.com)
by todsacerdoti |
view
|
0 comments
▲
3
Metals are key to the global economy – three challenges threaten supply chains
(nature.com)
by zeristor |
view
|
1 comments
▲
2
Unpacking the AsyncAPI NPM supply chain compromise, import-time payload delivery
(microsoft.com)
by nyku |
view
|
0 comments
▲
2
Trump invokes Defense Production Act for munitions, supply chains
(reuters.com)
by petethomas |
view
|
0 comments
▲
2
Ongoing NPM supply chain attack uses binding.gyp to spread like a worm
(github.com)
by varunsharma07 |
view
|
0 comments
▲
2
OpenAI caught NPM supply chain chaos after employeedevices compromised
(theregister.com)
by Timofeibu |
view
|
0 comments
▲
2
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain
(socket.dev)
by tosh |
view
|
0 comments
▲
2
From SWE to PM: To go for digital management or Supply chain management
by bmahal |
view
|
0 comments
▲
2
Federal Court Denies Anthropic's Motion to Lift 'Supply Chain Risk' Label
(nytimes.com)
by 1vuio0pswjnm7 |
view
|
0 comments
▲
2
Supply chain anomalies in your own Windows 11 install (5 PowerShell commands)
(archive.org)
by FireTroyan |
view
|
0 comments
▲
2
Federal judge blocks Pentagon from branding Anthropic a supply chain risk
(apnews.com)
by glitcher |
view
|
0 comments
▲
2
The Trivy Supply Chain Attack Reached LiteLLM
(grith.ai)
by edf13 |
view
|
0 comments
▲
2
The software supply chain has a new problem: AI agents
(safedep.io)
by Sudhanshu2310 |
view
|
0 comments
▲
2
Anthropic Supply Chain Risk designation takes effect
(mayerbrown.com)
by gone35 |
view
|
0 comments
▲
2
Anthropic sues Defense Department over supply chain risk designation
(techcrunch.com)
by antimora |
view
|
0 comments
▲
2
"We do not think Anthropic should be designated as a supply chain risk"
(twitter.com)
by golfer |
view
|
0 comments
▲
2
Anthropic says it will challenge Pentagon supply chain risk designation in court
(reuters.com)
by Jimmc414 |
view
|
0 comments
▲
2
Supply Chain Vuln Compromised Core AWS GitHub Repos Threatening the AWS Console
(wiz.io)
by uvuv |
view
|
0 comments
▲
2
Show HN: I built a D2C supply chain for my village's Makhana farmers using Bolt
(earthborn-barsoi.vercel.app)
by Vikkyv |
view
|
3 comments
▲
2
Shai-Hulud 2.0 Supply Chain Attack: 25K+ Repos Exposing Secrets
(wiz.io)
by samuel246 |
view
|
1 comments
▲
2
GitLab discovers widespread NPM supply chain attack
(about.gitlab.com)
by soheilpro |
view
|
1 comments
▲
2
Zapier just had a supply chain attack
by hoppp |
view
|
1 comments
▲
2
Supply Chain Security made the OWASP Top Ten, this changes nothing
(anchore.com)
by birdculture |
view
|
0 comments
▲
2
SBoM Diffing: Next Frontier for Supply Chain Security
(worklifenotes.com)
by taleodor |
view
|
0 comments
▲
1
Specification for a 100% AI-Free Software Supply Chain
(rentry.co)
by open-reality |
view
|
0 comments
▲
1
Don't Trust the Label: License Laundering in AI Supply Chains
(arxiv.org)
by sbulaev |
view
|
0 comments
▲
1
DepsGuard – Guard your dependencies against supply chain attacks
(depsguard.com)
by eranation |
view
|
0 comments
▲
1
Supply chain will eventually be cyberattacked
(medium.com)
by vektormemory |
view
|
0 comments
▲
1
Securing America's Defense Supply Chains
(whitehouse.gov)
by big_toast |
view
|
1 comments
▲
1
RubyGems Supply Chain Attack
(aikido.dev)
by knappe |
view
|
0 comments
▲
1
You Can't Reverse Engineer Your Way Out of the AI Supply Chain Problem
(semgrep.dev)
by antondd |
view
|
0 comments
▲
1
In-toto: A framework to secure the integrity of software supply chains
(in-toto.io)
by Erenay09 |
view
|
0 comments
▲
1
AsyncAPI Supply Chain Compromise via GitHub Actions
(wiz.io)
by ramimac |
view
|
0 comments
▲
1
Dependency analytics 1.0: AI coding with supply chain security
(developers.redhat.com)
by crashpn |
view
|
0 comments
▲
1
140+ Mastra npm Packages Compromised in Coordinated Supply Chain Attack
(socket.dev)
by crashpn |
view
|
0 comments
▲
1
The EU Wants Its Own Tech Supply Chain
(spectrum.ieee.org)
by sscaryterry |
view
|
0 comments
▲
1
Protecting your Supabase projects from NPM supply chain attacks
(supabase.com)
by thinkingemote |
view
|
0 comments