Software Supply Chain Attacks: What Organizations Need to Know Now
By Orenda Security Executive Summary: Software supply chain compromise is now IBM’s second most common and second most expensive breach vector — $4.91 million per incident, 267 days to contain, the longest of any category. Sonatype identified over 454,600 new malicious open-source packages in 2025, a 75% year-over-year increase. Recent incidents — the Shai-Hulud npm […]