Metadata Analysis of flatmap dependency supply chain attack
Investigating future model detection mechanisms for open source project repositories
Thereβs been hundreds of software dependency supply chain attacks exploiting a range of vectors in the past, with great effect. The July 2020 paper by Marc Ohm et al describes that on average a malicious package is available for 209 days. (πππ=β1,πππ₯=1,216,π=258,π₯Μ =67) so naturally, any method to reduce this...
[Read More]