A (partial) history of software supply chain attacks

A (partial) history of software supply chain attacks

The widespread campaign of software supply chain hacks that were behind the attack on SolarWinds began in 2020, and unofficially elevated software supply chain security to the top echelon of cyber risks ...
RSA Spotlights Supply Chain, Critical Infrastructure Cyber Risk

RSA Spotlights Supply Chain, Critical Infrastructure Cyber Risk

The RSA Conference brings some of the brightest minds in information security together in one place. We wrote about some of the interesting and must-see talks at this year’s show. We also ...
MITRE’s System of Trust: A proposed standard for software supply chain security

MITRE’s System of Trust: A proposed standard for software supply chain security

MITRE’s System of Trust framework is aiming to standardize how software supply chain security is assessed. MITRE's Robert Martin explains ...
Software supply chain security is no game. Or is it?

Software supply chain security is no game. Or is it?

ReversingLabs' Jasmine Noel switched it up a bit at RSA Conference with her "Software Supply ChainSecurity Is No Game, Or Is It?" presentation, and made it an interactive experience for those watching ...
A (Partial) History of Software Supply Chain Attacks

A (Partial) History of Software Supply Chain Attacks

The widespread campaign of software supply chain attacks that has become known as the “SolarWinds attack” began in 2020, and unofficially elevated software supply chain security to the top echelon of cyber ...
Survey finds software supply chain security top of mind for dev teams — but tampering detection lags

Survey finds software supply chain security top of mind for dev teams — but tampering detection lags

A survey of more than 300 technology professionals found widespread concern about supply chain attacks, but only sporadic efforts to detect such attacks ...