Forrester Names RL in Agentic Development Security Market
ID: d6391ced-5441-593f-8d97-eea7a1934e2b
STIX ID: report--d6391ced-5441-593f-8d97-eea7a1934e2b
Feed Name: ReversingLabs Blog
Threat Score
**Executive summary:** This ReversingLabs/Forrester-focused report warns that AI coding agents are creating a new software supply chain attack surface, highlights ADS tools as a category for prevention, and describes real malicious supply-chain campaigns (e.g., PromptMink and Shai-Hulud) that used poisoned dependencies—such as the @validate-sdk/v2 package—to siphon secrets and are linked to the North Korean-affiliated Famous Chollima group.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
