← Home
#developer-security
5 stories tagged.
The Developer Is the New Perimeter: How QLNX and Shai-Hulud Are Turning Developer Workstations Into Supply Chain Launchpads
11 min · 0 sources
Pipeline Poisoners: How BufferZoneCorp Weaponized Ruby Gems and Go Modules to Own CI/CD at the Build Stage
10 min · 0 sources
The Worm That Cannot Be Killed: CanisterSprawl, Blockchain C2, and the Self-Propagating Supply Chain Nightmare
12 min · 0 sources
The Compromised Workbench: Definitive 2026 Defensive Playbook Against IDE Extension Supply Chain Attacks (GlassWorm + PAT Hijacking)
10 min · 0 sources
The 100 Million Download Backdoor: A Full Post-Mortem of the Axios npm Supply Chain Compromise
8 min · 0 sources