A culpa é de Sec!

#13 - Ataque de Supply chain


Listen Later

Links & Recomendações

  • npm debug and chalk packages compromised https://www.aikido.dev/blog/npm-debug-and-chalk-packages-compromised

  • Josh Junon no BlueSky https://bsky.app/profile/bad-at-computer.bsky.social/post/3lydioq5swk2y

  • Saiu o IDC MarketScape for ASPM https://www.wiz.io/blog/wiz-named-aspm-leader-by-idc

  • Observo AI is joining SentinelOne https://www.observo.ai/post/why-observo-and-sentinelone-are-building-the-autonmous-soc-together

  • Linux Incident Surface https://tryhackme.com/room/linuxincidentsurface

  • NPM dependencies, supply chain attacks, and Bitcoin wallets https://www.blackduck.com/blog/malicious-dependency-supply-chain.html

  • PyTorch dependency ‘torchtriton’ on PyPI Supply Chain Attack https://www.sentinelone.com/blog/pytorch-dependency-torchtriton-supply-chain-attack/

  • Aikido Safe Chain https://www.npmjs.com/package/@aikidosec/safe-chain

  • Supply-Chain Firewall https://github.com/DataDog/supply-chain-firewall

  • F5 to acquire CalypsoAI to bring advanced AI guardrails to large enterprises https://www.f5.com/company/news/press-releases/f5-to-acquire-calypsoai-to-bring-advanced-ai-guardrails-to-large-enterprises?utm_medium=owned-social&utm_source=linkedin&utm_campiagn=ww-

  • Fantasma no Sistema - https://www.amazon.com.br/Fantasma-no-sistema-Kevin-Mitnick/dp/8576087057/ 

  • Quadrinho XKCD - https://xkcd.com/2347/ 

...more
View all episodesView all episodes
Download on the App Store

A culpa é de Sec!By Raphael Bottino e Tales Casagrande