Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
#
supplychainsecurity
Follow
Hide
Posts
Left menu
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
Improved Dependency Submission for GitHub Actions
Jesse Houwing
Jesse Houwing
Jesse Houwing
Follow
Dec 27 '25
Improved Dependency Submission for GitHub Actions
#
githubactions
#
github
#
supplychainsecurity
#
security
Comments
Add Comment
3 min read
NPM = Wild Wild West: It's Time to Stop the Madness
Youssef Khouidi
Youssef Khouidi
Youssef Khouidi
Follow
Nov 29 '25
NPM = Wild Wild West: It's Time to Stop the Madness
#
supplychainsecurity
#
javascript
#
opensource
#
npm
1
 reaction
Comments
Add Comment
3 min read
SHA1-Hulud, npm supply chain incident
SnykSec
SnykSec
SnykSec
Follow
for
Snyk
Nov 25 '25
SHA1-Hulud, npm supply chain incident
#
supplychainsecurity
#
vulnerabilityinsights
Comments
Add Comment
3 min read
Embedded Malicious Code in tinycolor and ngx-bootstrap releases on npm
SnykSec
SnykSec
SnykSec
Follow
for
Snyk
Sep 17 '25
Embedded Malicious Code in tinycolor and ngx-bootstrap releases on npm
#
supplychainsecurity
Comments
Add Comment
6 min read
Using SBOMs to detect possible Dependency Confusion
Dmitry Protsenko
Dmitry Protsenko
Dmitry Protsenko
Follow
Aug 15 '25
Using SBOMs to detect possible Dependency Confusion
#
cybersecurity
#
supplychainsecurity
#
dependencyconfusion
#
webdev
Comments
1
 comment
4 min read
Behind the Code: A Simple Look at the Software Supply Chain
Savinda
Savinda
Savinda
Follow
May 16 '25
Behind the Code: A Simple Look at the Software Supply Chain
#
beginners
#
supplychainsecurity
#
devops
#
cybersecurity
Comments
Add Comment
2 min read
Ultralytics AI Pwn Request Supply Chain Attack
SnykSec
SnykSec
SnykSec
Follow
for
Snyk
Dec 12 '24
Ultralytics AI Pwn Request Supply Chain Attack
#
codesecurity
#
devsecops
#
opensourcesecurity
#
supplychainsecurity
Comments
Add Comment
7 min read
The mysterious supply chain concern of string-width-cjs npm package
SnykSec
SnykSec
SnykSec
Follow
for
Snyk
Oct 4 '24
The mysterious supply chain concern of string-width-cjs npm package
#
opensourcesecurity
#
supplychainsecurity
#
javascript
#
node
Comments
Add Comment
7 min read
What You See is What You Get - Building a Verifiable Enclave Image
Richard Fan
Richard Fan
Richard Fan
Follow
for
AWS Community Builders
Mar 3 '24
What You See is What You Get - Building a Verifiable Enclave Image
#
aws
#
nitroenclaves
#
sigstore
#
supplychainsecurity
Comments
Add Comment
7 min read
The good, the bad and the ugly of the XZ vulnerability (CVE 2024-3094)
Craig McLuckie
Craig McLuckie
Craig McLuckie
Follow
Apr 2 '24
The good, the bad and the ugly of the XZ vulnerability (CVE 2024-3094)
#
security
#
supplychainsecurity
#
xz
#
cybersecurity
22
 reactions
Comments
Add Comment
6 min read
Protect the repository hosting your GitHub Action
Jesse Houwing
Jesse Houwing
Jesse Houwing
Follow
for
Xebia Microsoft Services
Sep 14 '23
Protect the repository hosting your GitHub Action
#
githubactions
#
github
#
security
#
supplychainsecurity
6
 reactions
Comments
Add Comment
7 min read
How to strengthen security in your CI/CD pipeline
SnykSec
SnykSec
SnykSec
Follow
for
Snyk
Jul 13 '23
How to strengthen security in your CI/CD pipeline
#
supplychainsecurity
#
applicationsecurity
#
devsecops
#
cicd
3
 reactions
Comments
Add Comment
8 min read
CodeSecDays conference and more complete security coverage with GitGuardian
SnykSec
SnykSec
SnykSec
Follow
for
Snyk
Aug 11 '23
CodeSecDays conference and more complete security coverage with GitGuardian
#
supplychainsecurity
#
cicd
4
 reactions
Comments
Add Comment
4 min read
Securing the Software Supply Chain: The Struggle Is (Still) Real Â
Brianna Blacet
Brianna Blacet
Brianna Blacet
Follow
for
Outshift By Cisco
Jun 7 '23
Securing the Software Supply Chain: The Struggle Is (Still) Real Â
#
opensource
#
sbom
#
supplychainsecurity
1
 reaction
Comments
Add Comment
6 min read
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account