supply

17 stories and discussions about supply, aggregated from every source we track.

1.

In a 2-1 decision, a federal appeals court upheld the Department of Defense's blacklisting of Anthropic.

493 points•cramer4next•5 days ago•874 comments•
2.

CrowdSec CEO Philippe Humeau shares the full story behind the 2026 supply chain attack, from the source code leak and forensic investigation to the lessons learned.

6 points•fourfire•11 days ago•1 comment•
3.

Mini Shai-Hulud malware was injected into keyv and eight related npm packages on August 4, 2026 after an attacker compromised the maintainer's GitHub account

5 points•dbremner•about 2 months ago•0 comments
4.

Critics of the data center in St. Louis, Missouri, worry about its water usage, the impact on the city’s air quality and utility costs

4 points•xlayn•9 days ago•0 comments•
7.

Linux CLI, live terminal dashboard, and Python driver for the FNIRSI DPS-150 power supply - hmldns/dps150ctl

2 points•Homo__Ludens•about 4 hours ago•0 comments•
8.

Our new evaluation finds that in simulations, GPT-6 Astra conducts unsanctioned supply-chain attack activity more frequently than previous OpenAI models

2 points•gmays•1 day ago•0 comments•
9.

The AI lab had argued multiple violations of its rights, but a divided panel of judges sided with the Trump administration.

2 points•joozio•3 days ago•0 comments•
10.

Some excerpts from today's long majority opinion by Judge Gregory Katsas, joined by Judge Neomi Rao, in today's D.C. Circuit…

2 points•theptip•5 days ago•3 comments•
11.

TeamPCP pulled off the worst-ever software supply-chain hacking spree and breached thousands of companies. Now Google’s threat intelligence group says it had a mole inside the hackers’ inner circle.

2 points•chris_overseas•7 days ago•0 comments•
12.
2 points•signa11•8 days ago•0 comments•
13.

TeamPCP pulled off the worst-ever software supply-chain hacking spree and breached thousands of companies. Now Google’s threat intelligence group says it had a mole inside the hackers’ inner circle.

2 points•hi41•9 days ago•0 comments•
14.

Our new evaluation finds that in simulations, GPT-6 Astra conducts unsanctioned supply-chain attack activity more frequently than previous OpenAI models

1 points•speckx•2 days ago•0 comments•
15.

As of this writing, the appeals court has upheld the Pentagon’s labeling of Anthropic as a supply chain risk. And while there is always an element of politics involved, it’s worth considering what a supply chain risk…

1 points•usernamed7•3 days ago•1 comment•
16.

Solar and wind power set a new renewable energy record on two consecutive days last week in Australia, meeting 80% of the demand on the main electricity grid.

1 points•geox•9 days ago•0 comments•
17.

Before two of its alleged members were arrested and charged in Australia last month, the hacker group known as TeamPCP carried out a hacking spree unlike any other in history. It tainted hundreds of open-source programs with its malware, stole developer accounts to perpetuate that software supply-chain hacking, and even released a Dune -themed self-spreading worm to automate the process, ultimately breaching more than a thousand companies. Now Google’s threat intelligence group has revealed that during a key moment of TeamPCP’s rampage, the company’s own undercover researcher had infiltrated the group—allowing Google to monitor the hacking spree from the inside, warn breach targets, and even help disrupt the group’s attempts to exploit those victims. In a talk at security firm SentinelOne's LABScon research conference today, Google Threat Intelligence Group researcher Austin Larsen will present details on the company’s investigation—and infiltration—of TeamPCP amidst the group’s unprecedented, chaotic supply-chain hacking campaign. According to Larsen, Google eventually followed a trail of operational security mistakes allegedly made by one of the two Australians now accused of being leading members of the hacker group and passed on key identifying details to law enforcement. The company also received intelligence from ShinyHunters, another infamous cybercriminal group that TeamPCP partnered with, but which later turned on the supply-chain hackers. And perhaps most surprisingly, Larsen says that Google’s security subsidiary Mandiant had an undercover analyst—not himself—within the group’s inner circle from almost the beginning of TeamPCP’s time in the spotlight. Read full article Comments

0 points•Andy Greenberg, WIRED.com•11 days ago•0 comments

Related topics