
Sign up to save your podcasts
Or


How are supply-chain attacks evolving? Richard chats with Mackenzie Jackson about his work helping companies protect their software supply chains from malware attacks. Mackenzie discusses the vulnerability of developers to attacks, since their accounts are often highly privileged and invariably contain access to exploitable secrets. The conversation digs into the challenges of securing various code distribution mechanisms like npm and how you can protect your organization - starting with, don't install packages as soon as they are released! There are effective tools for detecting malware in code, but they take time. Waiting 48 hours can eliminate a lot of risk!
Links
Recorded June 15, 2026
By Richard Campbell4.6
8282 ratings
How are supply-chain attacks evolving? Richard chats with Mackenzie Jackson about his work helping companies protect their software supply chains from malware attacks. Mackenzie discusses the vulnerability of developers to attacks, since their accounts are often highly privileged and invariably contain access to exploitable secrets. The conversation digs into the challenges of securing various code distribution mechanisms like npm and how you can protect your organization - starting with, don't install packages as soon as they are released! There are effective tools for detecting malware in code, but they take time. Waiting 48 hours can eliminate a lot of risk!
Links
Recorded June 15, 2026

275 Listeners

379 Listeners

38 Listeners

289 Listeners

3,061 Listeners

2,009 Listeners

2,013 Listeners

887 Listeners

1,072 Listeners

782 Listeners

1,093 Listeners

1,395 Listeners

317 Listeners

243 Listeners

62 Listeners

98 Listeners