DEV Community

# supplychain

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The Attack Cost Escalation Model: Why Physical Security Changes Adversary Economics

The Attack Cost Escalation Model: Why Physical Security Changes Adversary Economics

Comments
3 min read
Ataque Ă  Cadeia de Suprimentos: O Pacote NPM Que Pode Derrubar Sua Empresa

Ataque Ă  Cadeia de Suprimentos: O Pacote NPM Que Pode Derrubar Sua Empresa

Comments
2 min read
Agent Skill Marketplace Vulnerable to Supply Chain Attacks: Standardized Security Scanning Proposed

Agent Skill Marketplace Vulnerable to Supply Chain Attacks: Standardized Security Scanning Proposed

Comments
14 min read
Add Real-Time Supply Chain Risk Data to Your AI Agent in 60 Seconds

Add Real-Time Supply Chain Risk Data to Your AI Agent in 60 Seconds

Comments
2 min read
ONNX `silent=True` Disables Security Checks, Exposing ML Models to Supply Chain Attacks: Solution Needed

ONNX `silent=True` Disables Security Checks, Exposing ML Models to Supply Chain Attacks: Solution Needed

Comments
11 min read
Trivy Vulnerability Scanner Compromised in Supply Chain Attack: Mitigation Steps and User Guidance

Trivy Vulnerability Scanner Compromised in Supply Chain Attack: Mitigation Steps and User Guidance

1
Comments
8 min read
Evidence Stores for Supply Chain Security

Evidence Stores for Supply Chain Security

Comments
3 min read
Trivy Scanner Compromised Again: Malicious Code Found in v0.69.4 and GitHub Actions, Raising Security Concerns

Trivy Scanner Compromised Again: Malicious Code Found in v0.69.4 and GitHub Actions, Raising Security Concerns

Comments
8 min read
Your AI Agent Has a Supply Chain. Nobody Is Auditing It.

Your AI Agent Has a Supply Chain. Nobody Is Auditing It.

1
Comments
5 min read
The Global Chip Supply Chain's Hidden Weakness Isn't Silicon. It's Helium.

The Global Chip Supply Chain's Hidden Weakness Isn't Silicon. It's Helium.

Comments 1
6 min read
Nvidia GPU Smuggling: How Execs Bypassed Export Controls

Nvidia GPU Smuggling: How Execs Bypassed Export Controls

1
Comments
7 min read
26,000 Hidden Victims: The Supply Chain Shadow Layer You Can't See

26,000 Hidden Victims: The Supply Chain Shadow Layer You Can't See

Comments
3 min read
QuickLens Chrome Extension Compromised to Steal Crypto via ClickFix Attacks

QuickLens Chrome Extension Compromised to Steal Crypto via ClickFix Attacks

Comments
3 min read
How Nation-States Are Poisoning LLM Training Data for Agentic AI Models

How Nation-States Are Poisoning LLM Training Data for Agentic AI Models

Comments
6 min read
The Supply Chain Attack That's Already In Your Codebase

The Supply Chain Attack That's Already In Your Codebase

Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.