logo

The surveys speak: supply chain threats are freaking people out

ID: 6b968060-05ef-5006-bd8b-0e6113e12d52

STIX ID: report--6b968060-05ef-5006-bd8b-0e6113e12d52

Feed Name: Security Ledger

Date Published: 2023-05-10

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

This article synthesizes recent surveys (GitGuardian, ReversingLabs, Tidelift) showing that development secret leaks, vulnerable source code and open‑source dependency risks are widely perceived as major software supply‑chain threats; it highlights poor operational practices (plaintext secret sharing, reliance on manual reviews), gaps in investment and maturity for detection/mitigation, and calls for structural fixes such as secure‑by‑design, SBOMs and better support for open‑source maintainers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.