Supply Chain Attack

13th Feb 2021, Kathmandu

An ethical hacker (researcher) has recently shown a novel supply chain attack. As a result, the networks of more than 35 major technology companies such as Microsoft, Apple, PayPal, Sophie, Netflix, Tesla, Uber have been violated.

Novel Supply Chain Assault uses public and open-source developer tools. The framework, created by Alex Birsan, an ethical hacker and cybersecurity researcher, injects malicious code into an open-source developer tool to exploit the dependencies of these organizations’ internal applications.

It may target developers’ projects using public repositories such as GitHub. According to Birsan, the success rate of such attacks is high after the targeting of the companies.

The vulnerabilities he has exploited so far, which he calls ‘Dependency Uncertainty,’ have been established in more than 35 organizations. They were in Python, Ruby, and Java programming languages.

Previous articleAWS Cloud Computing Training for Startups
Next articleNepal Telecom Profits Rise in 49% in Q1
Mina Aryal is a Nepali tech journalist and media expert. She is currently the chief editor of ICT Frame, a leading online tech media outlet in Nepal that covers topics such as technology, business, and entrepreneurship. Aryal has been involved in the field of tech journalism for over a decade and has covered various topics such as internet governance, cybersecurity, e-commerce, and startup ecosystems. She has also been involved in organizing and promoting tech events in Nepal to bring together tech enthusiasts, entrepreneurs, and investors to discuss and collaborate on various topics related to the tech industry. Aryal is considered one of the most influential tech journalists in Nepal and has been recognized for her contributions to the field.

LEAVE A REPLY

Please enter your comment!
Please enter your name here