Malicious packages in open-source repositories are surging

Industry news
Post Reply
rbc
President
Posts: 291
Joined: Mon Oct 30, 2023 1:32 am
Location: Vicksburg, MS
ISC2 Member Status: Yes
Contact:

Malicious packages in open-source repositories are surging

Post by rbc »

The number of malicious packages found in the open-source ecosystem has dramatically grown in the past year, according to a new report from Sonatype.

The cybersecurity firm found that the number of malicious packages intentionally uploaded into open-source repositories has jumped by more than 150% compared to last year. Open-source software, a transparent development process where almost anyone can contribute to the code and components, is the bedrock of the digital age that can be found in most modern digital technologies.
[...]
Malicious packages in open-source repositories are surging
Robert B. Carleton + ISC2 Central Mississippi President
Post Reply