New guidance on software supply chain attacks released
New guidance on npm security from Linux Foundation's OpenSFF and hardening the software supply chain from US agencies NSA and CISA
Illka Turunen Linux Foundation Open Source Security Us National Security Agency Software Supply Chain For Developers Practices For Open Source Developers Infrastructure Security Agency
Source: computing.co.uk