Software Supply Chain

Feeds to Scour
SubscribedAll
Scoured 189 posts in 10.0 ms

NCSC Warns Of Rising Software Supply Chain Attacks Targeting Open-Source Packages

 🐧Linux Security
petri.com·

From SBOMs to AI BOMs: Why SPDX 3.0 Matters

 🐧Linux Security
malware.news·

Software supply chain attacks: check your dependencies

 🐧Linux Security  Content type: Blog
ncsc.gov.uk·

Five Supply Chain Security Risks Hiding Inside Your Mobile Apps

 🐧Linux Security  Content type: Blog

Introducing Package Firewall, blocking over 8,000 vulnerable packages per day

 🐧Linux Security  Content type: Blog
replit.com·

IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks

 💻Programming
thehackernews.com·

Risky Bulletin: RubyGems adds dependency cooldowns to counter supply chain attacks

 💻Programming
risky.biz·

Massive PyPI Supply Chain Attack Harvests Cloud Credentials via Python Startup Hooks

 🐧Linux Security
orca.security·
Less-relevant results

You can fork a package, but can you own it?

 💻Programming
event-driven.io·

NPM-Scan v1.1.0: Four New Detectors for June 2026 Supply Chain Attacks

 🐧Linux Security  Content type: Code
github.com··Hacker News

Shai-Hulud copycat campaign targets Python developers through PyPI typosquatting

 💻Programming  Content type: Blog
about.gitlab.com·

New IronWorm malware hits 36 packages in npm supply-chain attack

 💻Programming

someone actually leaked the Miasma supply chain attack toolkit source code on github

 🐧Linux Security

Infosec News Nuggets — June 10, 2026

 🐧Linux Security
aboutdfir.com·

Over 100 NPM, PyPI Packages Hit in New Shai-Hulud Supply Chain Attacks

 💻Programming
securityweek.com·

Supply chain attack alert: .github/setup.js

 💻Programming  Content type: Discussion

The Median App and the Median User-Minute

 📅Habit Tracking
thediff.co
·

Is GitHub Actions Putting Your Software at Risk?

 🐧Linux Security
spin.atomicobject.com·

Meet Hades: The malware that lies to AI security agents

 🐧Linux Security  Content type: News

CVE Lite CLI closes dependency gap — but won't stop modern threats

 🐧Linux Security  Content type: Blog
reversinglabs.com·

Keyboard Shortcuts

Navigation

Next / previous item
j/k
Open post
oorEnter
Preview post
v

Post Actions

Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s

Recommendations

Add interest / feed
Enter
Not interested
x

Go to

Home
gh
Interests
gi
Feeds
gf
Likes
gl
History
gy
Changelog
gc
Settings
gs
Browse
gb
Search
/

General

Show this help
?
Submit feedback
!
Close modal / unfocus
Esc

Press ? anytime to show this help