WeSearch
Hub / Tags / Supply Chain Attacks
TAG · #SUPPLY-CHAIN-ATTACKS

Supply Chain Attacks coverage.

Every story in the WeSearch catalog tagged with #supply-chain-attacks, chronological, with view counts. Subscribe to the per-tag RSS feed to follow this topic in your reader of choice.

13 stories tagged with #supply-chain-attacks, in publish-time order across the WeSearch catalog. Tag pages update as new stories ingest.

⌘ RSS feed for this tag →   or   search "Supply Chain Attacks"

RELATED TAGS
#cybersecurity2#malware1#npm1#docker1#ai-threats1#software-vulnerabilities1#incident-response1
R/NETSEC

A practical checklist for evaluating npm packages (supply chain attacks, slopsquatting, etc.)

19 views ·
R/JAVASCRIPT

Prevent supply chain attacks

15 views ·
R/CYBERSECURITY

Prevent supply chain attacks

12 views ·
TECHCRUNCH

CrowdStrike and Google take down botnet used by hackers to target software developers in supply chain attacks

Cybercriminals used the Glassworm botnet to infect open source software projects with malware, and in turn hack the developers and companies that use that software.…

17 views ·
#cybercrime#cybersecurity#hackers
MATT SUICHE

Supply Chain Attacks Cluster: 230K Advisories, Five Patterns

Pulled the full OSV mirror for npm and PyPI — 230,000+ advisories. The malicious-tagged subset clusters into five recurring patterns. None of them are clever. All of them keep work…

11 views ·
#cybersecurity#supply-chain#malware
DEV.TO (TOP)

The Three-Body Problem: AI Code, Supply Chain Attacks, and the Talent Exodus

In physics, the three-body problem describes a system where three objects interact gravitationally in...…

14 views ·
#ai#security#software
DEV.TO (TOP)

Supply Chain Attacks + Stale Credentials: Why This Combination Is So Dangerous in 2026

Recent incidents at GitHub and Grafana Labs highlight a painful truth in modern infrastructure: even...…

11 views ·
#security#cybersecurity#infrastructure
X (FORMERLY TWITTER)

Supply chain attacks and OSS sustainability go hand in hand

Supply chain attacks and OSS sustainability go hand in hand. I've semi-seriously joked for years that OSS upstreams should periodically purposely inject full vulns into their code …

10 views ·
TECHMEME

Socket: TeamPCP, the gang claiming GitHub's repositories breach, also executed 20 "waves" of supply chain attacks recently, compromising 500+ pieces of software (Wired)

Wired : Socket: TeamPCP, the gang claiming GitHub's repositories breach, also executed 20 “waves” of supply chain attacks recently, compromising 500+ pieces of software — GitHub is…

17 views ·
DEV.TO (TOP)

npm Supply Chain Attacks: Why They Keep Happening and How to Defend

Why npm keeps getting hit with malicious packages, what makes Node's registry uniquely exposed, and a practical defense stack (Socket, Snyk, lockfile audits, --ignore-scripts) for …

14 views ·
#security#software#development
YCOMBINATOR

Ask HN: How are you stopping supply chain attacks via compromised dev keys?

11 views ·
#security#development#git
CLASP

Clasp: A four-stage supply-chain attack pattern via emergency patches

An attack pattern that turns emergency patch discipline into a rapid distribution system for malware. Organizations with the best patching cycles are compromised first.…

14 views ·
#cybersecurity#ai threats
SANS INTERNET STORM CENTER

TeamPCP Supply Chain Campaign: Update 008

TeamPCP Supply Chain Campaign: Update 008 - 26-Day Pause Ends with Three Concurrent Compromises (Checkmarx KICS, Bitwarden CLI Cascade, xinference PyPI), CanisterSprawl npm Worm Id…

24 views ·
#cybersecurity#malware