Top Tweets for #supplyChainSecurity
TRC analysis shows ShinyHunters exploited CVE-2023-38646 to compromise ShipMonk's Metabase platform, then moved laterally to exfiltrate data on 81,000 Trezor customers. Runtime segmentation could have limited blast radius across connected systems. #SupplyChainSecurity
π Full breakdown: https://t.co/Js1avu2Hqk
Not every attack starts with a bad click. Microsoft is tracking a supply-chain worm spreading through compromised software packages. Know how your vendors manage updates. https://t.co/TZOSlEMBMC #SupplyChainSecurity #Cybersecurity
π¨ Heads up: β‘ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More
Supply Chain: Turning off email images should at leas...
https://t.co/erDo80WuXS
#SupplyChainSecurity #AI #CyberSecurity #DataProtection
GitHub Artifact Attestations is now GA, bringing keyless Sigstore signing to CI/CD to secure software supply chains.
#devsecops #supplychainsecurity #githubactions #kubernetes
GitHub Actions strengthens CI governance with runner deprecation APIs, granular token scopes, and reusable workflow introspection.
#githubactions #continuousintegration #devops #supplychainsecurity
Your pipeline passed, your secrets left, and npm smiled politely. A preinstall hook turned CI/CD into the accomplice nobody invited but everyone executed. The build room may need fewer keys and more suspicion. π΅οΈ #DevOps #SRE #SupplyChainSecurity
https://t.co/tksLw0T3MX
Your favorite extension might have a backdoor πͺ
1144 extensions use compromised dependencies:
β’ 256 high-risk packages identified
β’ Average risk score: 36/100
256 packages flagged for security review
... #SupplyChainSecurity #Dependencies #SecurityRisk

GitHub Actions adds a Runner Deprecation API, scoped security tokens, and workflow identity tools to strengthen CI/CD governance.
#githubactions #devops #cicd #supplychainsecurity
Attackers poison Coder's registry to serve malicious Terraform modules, exposing critical supply chain risks in cloud infrastructure.
#terraform #iac #supplychainsecurity #cloudsecurity
The Fix:
β’ Tier vendors by sensitive data and system access levels.
β’ Move from one-time checks to continuous risk monitoring.
β’ Audit third-party access permissions as contract scopes evolve.
#VendorRisk #SupplyChainSecurity #ThirdPartyRisk #TaoIDR
JFrog unveils AgentSecOps to secure AI coding agents and protect software supply chains from untrusted dependencies.
#devsecops #supplychainsecurity #aisecurity #cicd
You may not write the code.
You still inherit its risk.
Open-source. APIs. SDKs. Vendors.
If you don't know what you depend on, you don't know your attack surface.
#CyberSecurity #SupplyChainSecurity

π See innovation in action.
We've invested heavily in our cement production facilities to enhance efficiency, increase resilience and help safeguard product availability for our customers.
#FactoryTour #SupplyChainSecurity #ManufacturingInnovation #Instarmac

GitHub expands npm trusted publishing with multiple OIDC configs and mandatory malware scan gates to harden the JavaScript supply chain.
#applicationsecurity #supplychainsecurity #npm #oidc
Connected manufacturing has made production more efficient, but it has also created new points of failure
Read more: https://t.co/cP4izvVVVc
#Manufacturing #CyberResilience #SupplyChainSecurity

35 malicious packages confirmed this week. 14 hit the same day under fintech-branded names, same inflated version number, one actor.
Full digest β‘οΈ https://t.co/1WKYxxxo7b
#SupplyChainSecurity #npm
LiteLLMβs supply-chain compromise shows Drupal AI security can extend beyond Composer. The optional provider relies on an external LiteLLM service; no Drupal compromise was identified.
https://t.co/zVRo7WW4ts
#Drupal #DrupalAI #SupplyChainSecurity

β
#JuarezDC has achieved #CTPAT Certification, reinforcing its commitment to supply chain security, compliance, and operational excellence. Thanks to all employees, partners, and stakeholders who contributed to this important milestone. ππ¦
#Yazaki #SupplyChainSecurity

StepSecurity says it tracked 56 supply-chain compromises in 12 months. Drupal was not identified as affected, but attacks on trusted Composer packages highlight dependency and CI risks.
https://t.co/QYkbdmfnoo
#Drupal #Composer #SupplyChainSecurity

Last Seen Hashtags on Sotwe
ryona
Seen from United States
DisciplineNotExcuses
Seen from United States
Nolimit
Seen from Australia
topnineofinstagram
Seen from United States
jangmoon
Seen from United States
WWERaw
ΨͺΨ§ΩΨ¬Ω_ΩΨ§ΩΩ
Seen from Algeria
baitrequest
Seen from Netherlands
omegle
Seen from United States
bursaescort
Seen from Switzerland
Most Popular Users

Elon Musk 
@elonmusk
241.6M followers

Barack Obama 
@barackobama
119M followers

Cristiano Ronaldo 
@cristiano
114.1M followers

Donald J. Trump 
@realdonaldtrump
111.8M followers

Narendra Modi 
@narendramodi
107.2M followers

Rihanna 
@rihanna
98.7M followers

NASA 
@nasa
92.4M followers

Justin Bieber 
@justinbieber
91.8M followers

KATY PERRY 
@katyperry
89.9M followers

Taylor Swift 
@taylorswift13
83.8M followers

Lady Gaga 
@ladygaga
75.3M followers

Virat Kohli 
@imvkohli
73.1M followers

Kim Kardashian 
@kimkardashian
70.8M followers

YouTube 
@youtube
68.8M followers

Neymar Jr 
@neymarjr
66.1M followers

Bill Gates 
@billgates
65M followers

Selena Gomez 
@selenagomez
62.9M followers

The Ellen Show
@theellenshow
62.3M followers

CNN 
@cnn
61.8M followers

X 
@x
60.7M followers













