Software-producing organizations are under increasing obligation to secure their supply chains amid rising attacks. Per Gartner, nearly half of enterprise firms will have experienced a software supply chain attack by 2025. The main challenge is the complex process of developing modern applications, including open source dependencies and global development teams. This piece suggests solutions such as considering all aspects of the supply chain when designing security measures, using SBOMs for remediation, implementing strict policies, and using the SLSA framework to verify software reliability.

AI chatbot users beware – hackers are now hiding malware in the images served up by LLMs – TechRadar
AI chatbot users beware – hackers are now hiding malware in the images served up by LLMs TechRadar