#software-supply-chain — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #software-supply-chain, aggregated by home.social.
-
#JFrog #Artifactory: Attackers are already exploiting critical auth bypass CVE-2026-82329 (CVSS 9.8) to mint admin tokens. Compromising your organisation's artifact repository could poison builds and trigger #SoftwareSupplyChain attacks - patch now!
👇
https://www.csoonline.com/article/4217534/exploited-jfrog-artifactory-bug-puts-software-supply-chain-on-alert.html -
The wait is over! New JAVAPRO special edition 'JAVA Security' is out now & FREE to download! More expert insights, community voices & what you need to know.
Want the latest #JAVAPRO issues? Subscribe to our news & get every new PDF: https://javapro.io/2026/08/31/stay-updated-with-every-new-free-pdf-edition-26-8/
#JavaSecurity #CyberSecurity #SecureCoding #OWASP #SoftwareSupplyChain #SBOM #DevSecOps #JAVAPRO
-
Australian Police Disrupt TeamPCP Cybercrime Syndicate
Meet Ellis, a self-proclaimed cybercrime rockstar who thought "blackhatting is fun" - but his thrill-seeking days are over, thanks to the Australian Federal Police's crackdown on the notorious TeamPCP syndicate. Two young men from Western Australia have been arrested in connection with a massive software supply-chain scam that targeted…
#Teampcp #Cybercrime #SoftwareSupplyChain #EmergingThreats #Australia
-
#GitHub's Dependabot now waits 3 days by default before opening pull requests for new non-security dependency versions.
The delay gives security scanners and the community more time to detect and remove malicious releases before they're integrated into projects.
Read the full story on InfoQ 👉 https://bit.ly/4xeUgVY