VOOZH about

URL: https://github.blog/tag/supply-chain-security/

⇱ supply chain security Archives - The GitHub Blog


Attacks on Maven proxy repositories

Learn how specially crafted artifacts can be used to attack Maven repository managers. This post describes PoC exploits that can lead to pre-auth remote code execution and poisoning of the local artifacts in Sonatype Nexus and JFrog Artifactory.

Securing millions of developers through 2FA

We’ve dramatically increased 2FA adoption on GitHub as part of our responsibility to make the software ecosystem more secure. Read on to learn how we secured millions of developers and why we’re urging more organizations to join us in these efforts.

The world's largest developer platform

👁 Docs

Docs

Everything you need to master GitHub, all in one place.

👁 GitHub

GitHub

Build what’s next on GitHub, the place for anyone from anywhere to build anything.

👁 Customer stories

Customer stories

Meet the companies and engineering teams that build with GitHub.

👁 GitHub Universe 2026

GitHub Universe 2026

Join us October 28-29 in San Francisco or online for GitHub Universe, our flagship developer event uniting people, agents, and the world’s code.