Multiple organizations vulnerable to dependency confusion (Research)
ID: 5edcc751-3f5c-55a1-a822-b32d5f2448ec
STIX ID: report--5edcc751-3f5c-55a1-a822-b32d5f2448ec
Feed Name: Wiz Cloud Threat Landscape
Threat Score
Date Published: 2021-02-09
Date Updated: 2026-05-01
Author: [email protected] (Wiz Threat Research)
...
...
Link to Alex Birsan's Medium article on "dependency confusion," a supply-chain attack technique in which attackers publish packages to public registries that can be resolved instead of internal packages, potentially causing organizations' build systems to fetch and execute malicious dependencies.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
