DEV Community

# supplychain

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
GitHub Organization Security Hardening: Exact Controls and Step-by-Step Setup Guide

GitHub Organization Security Hardening: Exact Controls and Step-by-Step Setup Guide

1
Comments
29 min read
ShadowFeed Weekly #1: IronWorm npm Attack, $36M Humanity Protocol Hack, Microsoft Repos Compromised

ShadowFeed Weekly #1: IronWorm npm Attack, $36M Humanity Protocol Hack, Microsoft Repos Compromised

Comments
3 min read
Rust Crate 'onering' Compromised: Malicious Code Exfiltration Risk Mitigated with Updated Version

Rust Crate 'onering' Compromised: Malicious Code Exfiltration Risk Mitigated with Updated Version

Comments
6 min read
組織向け GitHub セキュリティ・ハードニング完全ガイド

組織向け GitHub セキュリティ・ハードニング完全ガイド

Comments
29 min read
End-to-End GitHub Security Hardening Guide for Organizations

End-to-End GitHub Security Hardening Guide for Organizations

Comments
44 min read
China Electronics Manufacturing: May 2026 Update

China Electronics Manufacturing: May 2026 Update

Comments
6 min read
The Leopard's Head

The Leopard's Head

Comments
6 min read
China Mfg PMI: What Electronics Buyers Need to Know

China Mfg PMI: What Electronics Buyers Need to Know

Comments
5 min read
China Electronics Industry 2026: What Importers Need to Know

China Electronics Industry 2026: What Importers Need to Know

Comments
11 min read
Trivy's March Supply Chain Attack Shows Where Secret Exposure Hurts Most

Trivy's March Supply Chain Attack Shows Where Secret Exposure Hurts Most

1
Comments 1
5 min read
Your CPE Manufacturer Is Not Building Your Router — Their Sub-Contractor Is. Here is Why That Matters.

Your CPE Manufacturer Is Not Building Your Router — Their Sub-Contractor Is. Here is Why That Matters.

Comments
4 min read
The Bot that Never Was, Part 2 (Miasma worm): how a GitHub token survived and hijacked my repos from an Azure IP

The Bot that Never Was, Part 2 (Miasma worm): how a GitHub token survived and hijacked my repos from an Azure IP

Comments 2
10 min read
Supply Chain Is the New Front Door: What May 2026 Taught Us About Third-Party Risk

Supply Chain Is the New Front Door: What May 2026 Taught Us About Third-Party Risk

Comments
7 min read
The Maintainer Trap: What the jqwik Incident Reveals About Trusting Your Dependencies

The Maintainer Trap: What the jqwik Incident Reveals About Trusting Your Dependencies

1
Comments
6 min read
Supply Chain Sense: Merging Gemini AI and Math for Smart Retail Inventory

Supply Chain Sense: Merging Gemini AI and Math for Smart Retail Inventory

Comments
11 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.