Supply Chain
appsec.fyi
5 Supply Chain Attacks in 48 Hours: Why Securing One Layer Is Not Enough
2026-05-21
Mini Shai Hulud: Compromised @antv npm packages enable CI/CD credential theft
2026-05-21
Shai-Hulud: What to Know About the Malware Spreading Through Software Pipelines
2026-05-20
The Extension Blind Spot: How One VS Code Plugin Gave Attackers GitHub's Source Code
2026-05-20
New JFrog Report Warns: AI Governance Fails as Software Supply Chain Attacks Hit Record Highs
2026-05-20
More Supply Chain →