logo

Multiple organizations vulnerable to dependency confusion (Research)

ID: 5edcc751-3f5c-55a1-a822-b32d5f2448ec

STIX ID: report--5edcc751-3f5c-55a1-a822-b32d5f2448ec

Feed Name: Wiz Cloud Threat Landscape

Threat Score
60/100

Date Published: 2021-02-09

Date Updated: 2026-05-01

Author: [email protected] (Wiz Threat Research)

...
...

Link to Alex Birsan's Medium article on "dependency confusion," a supply-chain attack technique in which attackers publish packages to public registries that can be resolved instead of internal packages, potentially causing organizations' build systems to fetch and execute malicious dependencies.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.