logo

RL SSCS Report: A 2025 retrospective

ID: edc56292-9092-5f08-8418-a4a3d9181a29

STIX ID: report--edc56292-9092-5f08-8418-a4a3d9181a29

Feed Name: ReversingLabs Blog

Threat Score
78/100

Date Published: 2026-02-03

Date Updated: 2026-04-29

Author: Carolynn van Arsdale

...
...

ReversingLabs' 2026 Software Supply Chain Security Report reviews 2025 predictions and documents several real-world supply-chain attacks in 2025 — including the NullifAI campaign and malicious PyPI packages that abused Pickle/PyTorch model formats to deliver malware/infostealers, and the Shai-hulud npm worm that compromised over 1,000 packages and was tied to a Trust Wallet extension hack that resulted in ~$8.5M stolen — while also examining industry, government, and tooling responses and ongoing gaps in addressing Nth-party and AI/ML-related risks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.