DEV Community

# supplychain

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Trivy Project Compromised by Malicious Supply Chain Attack: Enhanced CI/CD Security Measures Proposed

Trivy Project Compromised by Malicious Supply Chain Attack: Enhanced CI/CD Security Measures Proposed

Comments
12 min read
LiteLLM 1.82.7 and 1.82.8: Critical Security Compromise Exposed – How to Protect Your AI Projects

LiteLLM 1.82.7 and 1.82.8: Critical Security Compromise Exposed – How to Protect Your AI Projects

Comments
4 min read
When Your LLM Proxy Becomes the Attack Vector

When Your LLM Proxy Becomes the Attack Vector

Comments
3 min read
The Comforting Lie Of SHA Pinning

The Comforting Lie Of SHA Pinning

Comments
5 min read
How to Detect and Recover From a Compromised PyPI Package

How to Detect and Recover From a Compromised PyPI Package

Comments
5 min read
The Attack Cost Escalation Model: Why Physical Security Changes Adversary Economics

The Attack Cost Escalation Model: Why Physical Security Changes Adversary Economics

Comments
3 min read
Ataque Ă  Cadeia de Suprimentos: O Pacote NPM Que Pode Derrubar Sua Empresa

Ataque Ă  Cadeia de Suprimentos: O Pacote NPM Que Pode Derrubar Sua Empresa

Comments
2 min read
Agent Skill Marketplace Vulnerable to Supply Chain Attacks: Standardized Security Scanning Proposed

Agent Skill Marketplace Vulnerable to Supply Chain Attacks: Standardized Security Scanning Proposed

Comments
14 min read
Add Real-Time Supply Chain Risk Data to Your AI Agent in 60 Seconds

Add Real-Time Supply Chain Risk Data to Your AI Agent in 60 Seconds

Comments
2 min read
ONNX `silent=True` Disables Security Checks, Exposing ML Models to Supply Chain Attacks: Solution Needed

ONNX `silent=True` Disables Security Checks, Exposing ML Models to Supply Chain Attacks: Solution Needed

Comments
11 min read
Trivy Vulnerability Scanner Compromised in Supply Chain Attack: Mitigation Steps and User Guidance

Trivy Vulnerability Scanner Compromised in Supply Chain Attack: Mitigation Steps and User Guidance

1
Comments
8 min read
Evidence Stores for Supply Chain Security

Evidence Stores for Supply Chain Security

Comments
3 min read
Trivy Scanner Compromised Again: Malicious Code Found in v0.69.4 and GitHub Actions, Raising Security Concerns

Trivy Scanner Compromised Again: Malicious Code Found in v0.69.4 and GitHub Actions, Raising Security Concerns

Comments
8 min read
Your AI Agent Has a Supply Chain. Nobody Is Auditing It.

Your AI Agent Has a Supply Chain. Nobody Is Auditing It.

1
Comments
5 min read
The Global Chip Supply Chain's Hidden Weakness Isn't Silicon. It's Helium.

The Global Chip Supply Chain's Hidden Weakness Isn't Silicon. It's Helium.

Comments 1
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.