Supply-Chain Security
摘要
With the greatest packages comes the sneakiest malware. The biggest risk that your software is exposed to in the modern software development life cycle is the supply-chain attack. It is sophisticated, simple, zero-cost, but very dangerous in its attack. While it may not attack your software directly, depending on your industry, this attack may use your software as an attack surface for the victim that they are interested in.