Articles by Tag #supplychainsecurity

Browse our collection of articles on various topics related to IT technologies. Dive in and explore something new!

Ultralytics AI Pwn Request Supply Chain Attack

Discover the details of the Ultralytics AI supply chain attack, a sophisticated two-phase breach targeting PyPI releases and GitHub Actions with cryptocurrency mining malware. Learn how to detect exposure, secure your projects, and protect against future vulnerabilities using tools like Snyk.

Learn More 0 0Dec 12 '24

Repojacking: Unseen Dangers and Mitigation Strategies.

Software supply chain security has gotten attention since 2020 after the SolarWinds attack. The...

Learn More 0 0Feb 20

Do not pass GO - Malicious Package Alert

Recently, researchers have found another Software Supply Chain issue in BoltDB, a popular database tool in the Go programming environment. The BoltDB Go Module was found backdoored and contained hidden malicious code.

Learn More 0 0Feb 13

The mysterious supply chain concern of string-width-cjs npm package

Npm package aliasing can be a security threat. Learn about how malicious actors can exploit this feature to introduce fake packages into your projects. Protect your projects with best practices and stay vigilant against supply chain attacks.

Learn More 0 0Oct 4 '24

Behind the Code: A Simple Look at the Software Supply Chain

Whether you're building your first web app or deploying containers in the cloud, you're already using...

Learn More 0 0May 16