Skip to main content
← All Articles

Tag

#Software Supply Chain

16 articles

Advertisement

Python Supply Chain: Malicious Packages Targeting Developers
HIGH
Supply Chain

Python Supply Chain: Malicious Packages Targeting Developers

Malicious Python packages exploit trusted ecosystems like PyPI, enabling supply chain attacks on developer systems. Learn about the threat and mitigation.

Runtime Rebel Intel
4 min read · Aug 9, 2026
AI's Transformative Impact on Threat Intelligence and Defenses
INFO
Threat Intel

AI's Transformative Impact on Threat Intelligence and Defenses

AI is rapidly accelerating the threat landscape, enabling machine-speed attacks and increasing defender challenges. Prioritizing intelligence is key.

Runtime Rebel Intel
4 min read · Aug 7, 2026
CISA's Updated SBOM Guidance: Enhancing Software Supply Chain Transparency
INFO
Supply Chain

CISA's Updated SBOM Guidance: Enhancing Software Supply Chain Transparency

CISA has released updated SBOM guidance, refining field definitions for greater software supply chain transparency. Debate continues on its impact on risk management.

Runtime Rebel Intel
4 min read · Aug 1, 2026
GitHub Adjusts Bug Bounty: Impact on Vulnerability Disclosure
INFO
Threat Intel

GitHub Adjusts Bug Bounty: Impact on Vulnerability Disclosure

GitHub is halving public bug bounty payouts and shifting top rewards to an invite-only VIP program, impacting vulnerability research and disclosure.

Runtime Rebel Intel
4 min read · Jul 22, 2026
FakeGit Campaign Exploits GitHub for SmartLoader Malware
HIGH
Malware

FakeGit Campaign Exploits GitHub for SmartLoader Malware

Analysis of the FakeGit campaign leveraging 7,600 GitHub repositories, including AI/MCP lures, to distribute SmartLoader malware. Learn detection and mitigation.

Runtime Rebel Intel
5 min read · Jul 20, 2026
INFO
Threat Intel

AI-Assisted Vulnerability Management: Operational Guardrails & Risks

Implement robust guardrails for AI-assisted vulnerability management. Learn to safely deploy LLM agents, reduce architectural risks, and prioritize human-led threat…

Runtime Rebel Intel
10 min read · Jul 16, 2026

Advertisement

INFO
Supply Chain

Linux Foundation's Project Akrites: Bolstering Open Source Security

Project Akrites aims to streamline vulnerability management across open source projects, enhancing reporting, patching, and disclosure processes for critical software.

Runtime Rebel Intel
4 min read · Jun 26, 2026
INFO
Supply Chain

RevEng.AI Secures $15M for AI-Powered Software Binary Analysis

RevEng.AI raises $15 million to scale BinNet, a proprietary AI model designed to automate binary analysis and detect hidden backdoors in software assets.

Runtime Rebel Intel
4 min read · May 27, 2026
TrapDoor Campaign: Detecting Cross-Ecosystem Supply Chain Attacks
HIGH
Supply Chain

TrapDoor Campaign: Detecting Cross-Ecosystem Supply Chain Attacks

The TrapDoor campaign targets npm, PyPI, and Crates.io with over 384 malicious versions designed to exfiltrate developer credentials and sensitive data.

Runtime Rebel Intel
4 min read · May 25, 2026
HIGH
Supply Chain

Software Supply Chain Security: Addressing Visibility Gaps

An analysis of the growing software supply chain crisis, focusing on the acceleration of vulnerability exploitation and the lack of systemic visibility.

Runtime Rebel Intel
3 min read · May 21, 2026
HIGH
Supply Chain

Compromised Checkmarx Jenkins Plugin Spreads Infostealer

Official Checkmarx Jenkins AST plugin version 2023.2.7 was compromised with an infostealer, risking credentials and system data.

Runtime Rebel Intel
4 min read · May 12, 2026
DPRK's 'Contagious Interview' Spreads RATs via Dev Repositories
HIGH
Threat Intel

DPRK's 'Contagious Interview' Spreads RATs via Dev Repositories

DPRK threat actors are employing a 'contagious interview' scam, weaponizing compromised developer repositories to propagate RATs and malware across the software supply…

Runtime Rebel Intel
5 min read · Apr 22, 2026
INFO
Threat Intel

AI's Impact on Software Supply Chain Security and Vulnerability Management

AI is set to revolutionize software development, enabling 'instant software' and advanced vulnerability detection, profoundly reshaping future cybersecurity strategies.

Runtime Rebel Intel
5 min read · Apr 7, 2026
Risks of AI-Driven Dependency Resolution and Software Maintenance
MEDIUM
Supply Chain

Risks of AI-Driven Dependency Resolution and Software Maintenance

AI models often hallucinate version numbers and ignore security fixes during dependency resolution, increasing technical debt and supply chain risks.

Runtime Rebel Intel
3 min read · Mar 26, 2026
InstallFix Attacks: Malvertising Spreads Fake Claude AI Code
HIGH
Threat Intel

InstallFix Attacks: Malvertising Spreads Fake Claude AI Code

InstallFix attacks leverage malvertising and ClickFix-style techniques to spread fake Claude AI code, targeting users of coding assistants and CLI operations.

Runtime Rebel Intel
5 min read · Mar 10, 2026
AI Code Generation Poses Supply Chain Risk to Developer Machines
HIGH
Supply Chain

AI Code Generation Poses Supply Chain Risk to Developer Machines

Learn how AI-generated code, like from Anthropic's Claude, can introduce vulnerabilities and malicious payloads, compromising developer machines and software supply…

Runtime Rebel Intel
5 min read · Feb 26, 2026