How to Mature Your Software Consumption and Modernize Your Software Supply Chain Security Phylum Insights and Resources Protect your appsec. Malicious packages pose a greater risk to the software supply chain than vulnerabilities. See Phylum Research. Aaron Bray Aug 26, 2024 6 min read Phylum Blocks Software Supply Chain Security Attacks Phylum identifies malicious or risky open-source packages before they enter the software supply chain. SCA or public databases 82% of Phylum’s findings are not found by SCA or reported to public databases Other curation tools 70% of Phylum’s findings are not found by other curation tools Other software supply chain companies 60% of Phylum’s findings are not found by other software supply chain companies
The xz/liblzma Compromise and Software Supply Chain Security Phylum Insights and Resources A Major Threat to Software Supply Chain Security. This attack highlights the risks of relying on open-source libraries without proper scrutiny. Aaron Bray Apr 2, 2024 4 min read Phylum Blocks Software Supply Chain Security Attacks Phylum identifies malicious or risky open-source packages before they enter the software supply chain. SCA or public databases 82% of Phylum’s findings are not found by SCA or reported to public databases Other curation tools 70% of Phylum’s findings are not found by other curation tools Other software supply chain companies 60% of Phylum’s findings are not found by other software supply chain companies