Industrialization of Malicious Open Source Packages (infosecurity-magazine.com)
0xBASE INTEL BRIEF
- Over 454,000 malicious packages detected in a single year.
- Shift from manual targeting to automated, industrial-scale malware production.
- Significant risk to enterprise and government software infrastructure.
"Sonatype researchers have identified over 454,000 malicious open-source packages in 2025, signaling a shift toward the industrialization of cyber threats. This surge demonstrates how automated tools are now used to pollute global software supply chains at scale."
no comments yet.