惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

宝玉的分享
宝玉的分享
Engineering at Meta
Engineering at Meta
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
博客园 - 聂微东
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
Last Week in AI
Last Week in AI
酷 壳 – CoolShell
酷 壳 – CoolShell
博客园 - 三生石上(FineUI控件)
T
Tailwind CSS Blog
Apple Machine Learning Research
Apple Machine Learning Research
Hugging Face - Blog
Hugging Face - Blog
爱范儿
爱范儿
博客园 - 司徒正美
人人都是产品经理
人人都是产品经理
Jina AI
Jina AI
博客园 - 叶小钗
雷峰网
雷峰网
罗磊的独立博客
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
博客园 - Franky
WordPress大学
WordPress大学
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
阮一峰的网络日志
阮一峰的网络日志
量子位

Risky Business Media

Srsly Risky Biz: Trump's private hacker memo is the right idea Risky Bulletin: Slovakia finds Russian backdoors on its speed cameras Risky Business #849 -- Trump will unleash contractors on cybercriminals Between Two Nerds: The eye of Sauron James Kettle on inventing new attack techniques with LLMs Risky Bulletin: The EU publishes its upcoming cybersecurity standards Sponsored: What npm 12 fixes… and what it doesn’t Risky Bulletin: US will let private companies carry out offensive cyber ops Soap Box: Zero Trust(ish) Networks Srsly Risky Biz: Data extortion is booming. Hooray! Risky Business #848 -- OpenAI comes clean Risky Bulletin: Russian hackers jump on the fake job interview train Between Two Nerds: The cyber resistance! Risky Bulletin: Two law firms pay giant ransoms Sponsored: Island's expansion to SASE and enterprise AI How private LLM inference actually works Risky Bulletin: A Meta AI model also escaped a testing sandbox Srsly Risky Biz: Being a North Korean hacker is about to be less fun Risky Business #847 -- Oops! Claude's accidental hacking spree Risky Bulletin: Hacker breaches Hungary's State Treasury Between Two Nerds: Hackers vs the state Risky Bulletin: Anthropic models also did the hacky-hacky Sponsored: The intrusion signals hiding in plain sight Risky Bulletin: Crime Stoppers puts bounty on INC ransomware group Srsly Risky Biz: Chipping away at Chinese AI risks Risky Bulletin: Cyberattack disrupts Minnesota water utilities Risky Business #846 -- OpenAI built a fireplace out of wood Benchmarks, borders and the true cost of AI regulation Between Two Nerds: Cyber is people Risky Bulletin: A JSON RCE bug is about to rock the Java world
How to survive supply chain attacks
James Wilson · 2026-05-25 · via Risky Business Media

Risky Business Features Podcast

May 25, 2026

Presented by

James Wilson

James Wilson

Technology Editor

In this podcast James Wilson chats with Brad Arkin about why software supply chain attacks have gone from rare, once-in-a-while disasters to an operational problem affecting mainstream enterprises almost daily.

AI has made attackers faster, and “vibe coding” means the number of environments pulling packages from the internet has gone to the moon. It also means legacy tooling that seeks out the bad packages and cleans them up isn’t enough. Package cooldown windows won’t fix this either.

But all hope is not lost! Tune in to this podcast to find out how you can get a grip on the disaster de jour!

Your browser does not support the audio element.

How to survive supply chain attacks

0:00 / 36:51

Logo