Software Supply Chain Attacks: 2021 in Review
ID: 0ed3c908-3996-5bbc-b63d-a1a116378d04
STIX ID: report--0ed3c908-3996-5bbc-b63d-a1a116378d04
Feed Name: Aqua Security Blog
In 2021 supply chain attacks surged (estimated ~300% increase); this report reviews assessments showing attackers exploited open-source vulnerabilities, poisoned widely used packages, and targeted CI/CD and build processes, while development environments suffered from critical misconfigurations and limited visibility. It concludes with recommendations and notes growing community and government initiatives (e.g., SLSA, CNCF Supply Chain Security Forum) to improve secure software development practices.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
