Hacker News new | ask | show | jobs
by mgl 1031 days ago
The „good news” is that code injections are still widely popular in a form of supply chain attacks.

And this is also our fault, e.g. due to the explosion of dependency hell in npm libraries.

This is probably the best intro to modern supply chain attacks and detection techniques, just shared with my team this week:

https://youtu.be/3pLfkutz1x8

(edit: removed youtube tracking)

1 comments

Is this an ad? The video is essentially an ad for the vendor's solution that's unrelated to the original post.