The threat situation in the software supply chain is intensifying. Securing it belongs at the top of the CISO’s agenda.
The authors argue that today’s agentic AI platforms are closer to experimental infrastructure than finished products.
Hackers are targeting developers by exploiting the critical vulnerability CVE-2025-11953 in the Metro server for React Native to deliver malicious payloads for Windows and Linux.