ended5월 22일· 1 sources
From Rare to Routine: The Industrialization of Software Supply Chain Attacks
공급망 공격 산업화 시대: 대규모 코드 중독으로 open source 생태계 위협
Why it matters
TeamPCP's systematic poisoning of over 500 open source projects marks a critical turning point: supply chain attacks have evolved from rare incidents into industrial-scale operations. This campaign exposes a fundamental vulnerability in the software ecosystem—every dependency developers rely on can no longer be assumed secure, forcing the industry to reconsider core assumptions about trust and security in open source development.
1
Sources
+0
24h
—
Growth
122d
Active
supply chainTeamPCPcode poisoningVSCode extensionGitHubopen source