Listen "Supply Chain Attacks"
Episode Synopsis
This month marked the discovery of one of the largest NPM compromises in history. Though AI-assisted social engineering, a profilic developer dubbed Qix was phished. His account was then maliciously used to publish poisoned packages, many of which were used to manipulate crypto transactions. Thankfully, it was detected before too many users downloaded these packages, but it highlights how vulnerable we can be if these upstream components get compromised. In this special State of Cybercrime episode, Matt and David break down this NPM compromise, and cover everything else new in the world of cybercrime.
Want to join us live? Save a seat here: https://www.varonis.com/state-of-cybercrimeMore from Varonis ⬇️ Visit our website: https://www.varonis.comLinkedIn: https://www.linkedin.com/company/varonisX/Twitter: https://twitter.com/varonisInstagram: https://www.instagram.com/varonislife/
Want to join us live? Save a seat here: https://www.varonis.com/state-of-cybercrimeMore from Varonis ⬇️ Visit our website: https://www.varonis.comLinkedIn: https://www.linkedin.com/company/varonisX/Twitter: https://twitter.com/varonisInstagram: https://www.instagram.com/varonislife/
More episodes of the podcast State of Cybercrime
Black Hat Cartels
31/10/2025
ShinyHunters' CRM Heist
18/08/2025
Salt Typhoon Returns
25/07/2025
Copilot's Zero-Click Vulnerability
18/06/2025
UK Retail Under Siege
21/05/2025
The Oracle Breach Debate
19/04/2025
$1.5B ByBit Crypto Heist
14/03/2025
DeepSeek Disruption
04/02/2025
U.S. Treasury Breach
15/01/2025
Salt Typhoon Telecom Attack
14/12/2024
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.