Field Guide to Attack Vectors in Software Supply Chain Security
Software isn’t developed in a vacuum. An entire ecosystem of components — the software supply chain — is involved in building, testing, and delivering software. This ecosystem offers fertile ground for developing new applications, with a wealth of open source packages, libraries, tools, and processes. However, there are significant challenges as well. The software supply…
