Scroll down for the latest supply chain security news & articles from Infosecurity Magazine
Subscribe to our weekly newsletter for the latest in industry news, expert insights, dedicated information security content and online events.
Sysdig has found sophisticated malicious campaigns exploiting React2Shell that delivered EtherRAT and suggested North Korean hackers’ involvement
Two malicious Visual Studio Code extensions, Bitcoin Black and Codo AI, have been observed harvesting sensitive user data
A data breach at Marquis Software Solutions due to a firewall flaw has affected over 780,000 people across the US
Malicious npm package targets AI security with misleading prompts, exploiting automated analysis
CISA launches guide to combat cybercrime via bulletproof hosting, recommending measures for ISPs
Despite a growing maturity of third-party risk management programs, supply chain attacks impacted more organizations in 2025 than in previous years