Supply chain
6 AI tools 9 articles
Advertisement
AI tools6
Chainguard
Secure-by-default container images and AI supply chain
AI Directory
→
Cropin
Enterprise agri-intelligence cloud used across 103 countries
AI Directory
→
Endor Labs
Application security with reachability analysis
AI Directory
→
Eratani
Digitizing Indonesia's rice supply chain: inputs, financing, offtake
AI Directory
→
Koltiva
Enterprise supply-chain traceability for cocoa, coffee and palm oil
AI Directory
→
Socket
Blocks malicious npm/PyPI packages at PR time.
AI Directory
→
Articles9
A Cyberattack on One Cold-Chain Operator Emptied KFC Japan's Shelves — the Cost of a Single Logistics Chokepoint
Nichirei, Japan's largest cold-chain logistics operator, was hit by a cyberattack on 13 July. Containing it me...
CY
20 Jul
A Nuclear Plant's Blueprints Leaked — but the Breach Was at a Contractor, Not the Reactor
An extortion group posted files it claims come from a Kudankulam contractor's servers. India says no nuclear s...
CY
20 Jul
npm v12 Is Here, and It Turns Off a Default That Has Run Arbitrary Code for a Decade
npm v12 went generally available on 8 July, flipping install scripts, Git dependencies and remote-URL packages...
KE
11 Jul
Miasma Returns With 'Phantom Gyp': npm Worm Sidesteps the Install-Script Defences Teams Just Deployed
On 3 June, two days after the Red Hat npm compromise, the Miasma worm returned with a new delivery trick: a 15...
CY
11 Jun
Miasma: How a Hijacked CI Pipeline Shipped Malicious npm Packages With Valid Provenance
The Miasma supply-chain attack didn't typosquat or steal an npm token — it hijacked a maintainer's CI pipeline...
KE
8 Jun
Laravel-Lang Supply Chain Attack — 233 Versions Backdoored Across 700 Repos in a Composer-Autoload Trick
On 22 May 2026, an attacker rewrote version tags across the Laravel-Lang ecosystem to deliver a 5,900-line PHP...
CY
22 May
Megalodon Campaign Backdoors 5,561 GitHub Repos in Six Hours — Inside the Largest GitHub Actions Supply-Chain Attack on Record
An automated campaign called Megalodon pushed 5,718 malicious commits to 5,561 GitHub repos between 18-21 May...
CY
21 May
Critical GitHub RCE Flaw CVE-2026-3854 Lets Attackers Execute Code With a Single Git Push — Patch Now
CVE-2026-3854, a CVSS 9.8 RCE flaw in GitHub Enterprise Server, allows unauthenticated code execution via a si...
CY
8 May
Singapore's Semiconductor Firms Eye US Expansion as AI Boom Reshapes Global Chip Supply Chains
Singaporean semiconductor companies are establishing US operations to capture AI chip supply chain opportuniti...
JE
8 May
Advertisement