Home > Digital Garden > Supply Chain Attacks
💣 Supply Chain Attacks (14)
- ⭐ 🔗 Let's talk about supply chain attacks and backdoored dependencies
- ⭐ 🔗 Supply chain attacks - Microsoft
- 🔗 170K Users Affected by Attack Using Fake Python Infrastructure
- 🔗 Backdoored Python Library Caught Stealing SSH Credentials
- 🔗 Dev corrupts NPM libs 'colors' and 'faker' breaking thousands of apps
- 🔗 DuckDB NPM packages 1.3.3 and 1.29.2 compromised with malware
- 🔗 Evan Boehs: Everything I know about the XZ backdoor
- 🔗 GitHub besieged by millions of malicious repositories
- 🔗 Go Module Mirror served backdoor to devs for 3+ years
- 🔗 Malicious ‘SentinelOne’ PyPI package steals data from developers
- 🔗 NPM debug and chalk packages compromised
- 🔗 NPM supply-chain attack impacts hundreds of websites and apps
- 🔗 Running the “Reflections on Trusting Trust” Compiler
- 🔗 Two malicious Python libraries caught stealing SSH and GPG keys