supply chain attack
Posts in supply chain attack. 8 articles.

supply chain attack|8 min read
Mastra npm compromise turns AI agent builds into credential-theft risk
Read More

supply chain attack|6 min read
Red Hat npm compromise proves provenance alone is not enough
Read More

supply chain attack|6 min read
GitHub breach forces GHES signing-key rotation
Read More

supply chain attack|6 min read
GitHub Action tag hijack turns CI/CD runs into credential theft
Read More

supply chain attack|5 min read
Poisoned Trivy scanner led to malicious LiteLLM releases on PyPI
Read More

supply chain attack|4 min read
Trivy GitHub Action compromise exposed CI/CD secrets in a stealth supply-chain attack
Read More

supply chain attack|8 min read
Chrome Extension Supply-Chain Attack: ShotBird and QuickLens
Read More

supply chain attack|7 min read
Lotus Panda Chrysalis: Notepad++ Supply Chain Attack | 2026
Read More
Follow the research
New vulnerability analysis, threat actor reporting, and supply chain research as we publish it.
Recent Posts
- WordPress Site Owners Face Mass Exploitation of Super Forms and Elementor Pro Upload Flaws
- Dropbox breach shows why third-party identity links need zero trust
- CISA's New KEV Additions Put Edge and AI Control Planes on a Short Patch Clock
- ServiceNow Critical Flaws Expose Enterprise Workflows
- PaperCut NG/MF zero-day chain: CISA adds actively exploited flaws to KEV