logo

Verizon DBIR 2024: The rise in software supply chain attacks explained

ID: 4aa260d0-b633-583a-ae0c-e855a6189e9f

STIX ID: report--4aa260d0-b633-583a-ae0c-e855a6189e9f

Feed Name: ReversingLabs Blog

Date Published: 2024-06-11

Date Updated: 2026-04-29

Author: [email protected] (Kate Tenerowicz)

...
...

This webinar recap of the 2024 Verizon DBIR highlights a sharp rise in software supply chain-related breaches (15% of >10,000; 68% YoY) and a 180% increase in exploited vulnerabilities, particularly through web applications, compounded by slow patching (85% unpatched at 30 days; 50% at 55). Speakers stress shared responsibility across vendors and enterprises, cite initiatives like CISA’s Secure by Design and the UK Code of Practice, and recommend moving from reactive to proactive software supply chain security using transparency, SBOMs, and tooling that analyzes components beyond a simple inventory.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.