Software Supply-Chain Risk Management
ID: a7263d9e-e84c-5ea0-9f63-6682020b664d
STIX ID: report--a7263d9e-e84c-5ea0-9f63-6682020b664d
Feed Name: ReliaQuest Blog
Threat Score
**Executive Summary:** This report describes the rising threat of software supply-chain compromises, explains common manipulation techniques (source code/update tampering, dependency/backdoor insertion, and code-signing theft), presents real-world case studies (3CX, XZ Utils, Nvidia/Lapsus$, SolarWinds/NotPetya), and recommends mitigations including C-SCRM practices, SBOMs, secure development frameworks, credential and certificate protections, and detection/response playbooks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
