Tag: supply chain

CyAN Webinar: Malicious Packages – the Danger’s Already in the Build

CyAN Webinar: Malicious Packages – the Danger’s Already in the Build

Join us for a presentation by CyAN member Karthyikeyan Ramdass about the 2025 npm supply chain attack

CyAN Webinar: Malicious Packages – the Danger’s Already in the Build

On Tuesday December 9, CyAN member Karthikeyan Ramdass will present an analysis of the massive 2025 npm supply chain attack (CISA.gov) that used compromised packages to attack numerous online services. We will learn topics such as how and why did it happen? How could it have been prevented? What 

Securing the Future: Innovative Cybersecurity for Agentic AI by Shantanu Bhattacharya

Agentic AI is when autonomous AI agents make decisions and execute tasks. It’s poised to revolutionize industries. But with this power comes new cybersecurity challenges. This blog explores the deployment architectures of agentic AI solutions and identifies key attack vectors, offering a glimpse into innovative 

Faking GitHub Commits – What Could Go Wrong?

Faking GitHub Commits – What Could Go Wrong?

Found: a tool creating dummy GitHub source code commits to help programmers game job evaluation mechanisms. This illustrates a deeper issue with how badly designed incentives can have serious security consequences.