ended5월 21일· 1 sources
Open Source Under Siege: Record-Breaking Supply Chain Attack Campaign Emerges
오픈소스 공급망 대규모 중독 사건, GitHub까지 침투한 TeamPCP
Why it matters
This represents the largest and most sustained software supply chain attack campaign ever documented, with a notorious hacker group corrupting over 500 pieces of open source software and breaching hundreds of companies. The campaign's recent targeting of major platforms like GitHub and Anthropic reveals critical vulnerabilities in how the development community verifies and secures the tools underlying global software creation. As supply chain attacks shift from isolated incidents to routine weekly exploitation, organizations face unprecedented challenges in maintaining trust across the entire open source ecosystem.
1
Sources
+0
24h
—
Growth
4d
Active
supply chain attacksTeamPCPopen source securityGitHubVSCodemalware