Supply Chain Attacks

SecurityScorecard Reports Increase in Third-Party Breaches
SecurityScorecard reports a rise in third-party breaches, highlighting the growing risks organizations face from external partners and vendors.

Is Your Supply Chain Safe Amid Rising Nation-State Hacking Threats?
Discover how rising nation-state hacking threats impact your supply chain and learn strategies to enhance its security and resilience.

THN Weekly Update: GitHub Supply Chain Breach, AI-Driven Malware, BYOVD Strategies, and More
Stay informed with THN Weekly Update: explore the GitHub supply chain breach, AI-driven malware, BYOVD strategies, and key cybersecurity insights.

Coinbase Faces GitHub Actions Supply Chain Attack; 218 Repositories’ CI/CD Secrets Compromised
Coinbase suffers a GitHub Actions supply chain attack, compromising CI/CD secrets in 218 repositories, raising security concerns.

GitHub Action Supply Chain Breach Reveals Secrets in 218 Repositories
GitHub Action supply chain breach exposes sensitive data in 218 repositories, raising concerns over security and data integrity in software development.

Streamlining Software Supply Chain Defense: Expert Insights Simplified
Discover expert insights on streamlining software supply chain defense, simplifying strategies to enhance security and efficiency in your organization.

CISA Alerts on Ongoing Exploitation of GitHub Action Supply Chain Breach
CISA warns of ongoing exploitation linked to the GitHub Action supply chain breach, urging vigilance and immediate security measures for developers.

GitHub Action Exploit Triggers Cascading Supply Chain Attack
Learn how a GitHub Action exploit can trigger cascading supply chain attacks, compromising multiple dependencies and affecting software security.

New GitHub Actions Supply Chain Attack Uncovered
New GitHub Actions supply chain attack revealed, exposing vulnerabilities in CI/CD pipelines. Learn how to protect your projects from potential threats.

Google Acquisition Target Wiz Connects New Supply Chain Attack to 23,000 Compromised GitHub Repositories
Google’s acquisition target Wiz links a new supply chain attack to 23,000 compromised GitHub repositories, highlighting critical security vulnerabilities.

A Third of UK Supply Chain Dependent on Companies Linked to Chinese Military
A third of the UK’s supply chain relies on firms connected to the Chinese military, raising concerns over security and economic stability.

GitHub Action Supply Chain Breach Reveals CI/CD Secrets
GitHub Action supply chain breach exposes critical CI/CD secrets, highlighting vulnerabilities in software development processes and the need for enhanced security.

GitHub Repositories and Secrets Compromised in Supply Chain Attack
“Explore the impact of supply chain attacks on GitHub repositories, highlighting compromised secrets and the importance of security measures.”

GitHub Supply Chain Breach Exposes Secrets from 23,000 Projects
GitHub’s supply chain breach reveals sensitive data from 23,000 projects, raising concerns over security and data protection in software development.

Tj-actions Supply Chain Breach Affects 23,000 Organizations
Tj-actions supply chain breach impacts 23,000 organizations, exposing sensitive data and raising security concerns across multiple industries.

Malicious PyPI Packages Compromise Cloud Tokens with 14,100+ Downloads Before Being Pulled
Malicious PyPI packages compromised cloud tokens, amassing over 14,100 downloads before being removed. Stay alert to secure your projects.

North Korean Lazarus Group Compromises Hundreds Through NPM Packages
North Korean Lazarus Group exploits NPM packages, compromising hundreds of systems and highlighting vulnerabilities in software supply chains.

Chinese Espionage Group Aims at IT Supply Chain Vulnerabilities
Chinese espionage group targets IT supply chain vulnerabilities, seeking to exploit weaknesses for intelligence and strategic advantage.

Silk Typhoon Expands Cyber Assaults on IT Supply Chains Linked to China
Silk Typhoon intensifies cyber attacks on IT supply chains linked to China, targeting critical infrastructure and raising global security concerns.

Surge in Third-Party Attacks Leads to Significant Financial Losses in 2024
“Explore the 2024 surge in third-party attacks and their impact, revealing significant financial losses for businesses and the urgent need for enhanced security.”

North Korean Hackers Exploit Safe{Wallet} Supply Chain in Bybit Breach
North Korean hackers target Safe{Wallet} in a Bybit breach, exploiting vulnerabilities in the supply chain to access sensitive user data.

Safeguarding Your Software Supply Chain: Evaluating Risks Prior to Deployment
Learn how to assess risks in your software supply chain before deployment to ensure security and reliability in your applications.

NIST Unveils Meta-Framework to Enhance Supply Chain Traceability in Key Infrastructure Sectors
NIST introduces a new meta-framework to improve supply chain traceability, enhancing security and resilience in critical infrastructure sectors.

Weaknesses in Third-Party Risk Management Threaten UK Financial Stability
Explore how weaknesses in third-party risk management pose significant threats to the stability of the UK financial system.