NPM Package Compromise and What Recent Exploits Teach Us About Threat Intelligence Overload
Red Canary via YouTube
Lead AI-Native Products with Microsoft's Agentic AI Program
2,000+ Free Courses with Certificates: Coding, AI, SQL, and More
Overview
AI, Data Science & Cloud Certificates from Google, IBM & Meta — 40% Off
One plan covers every Professional Certificate on Coursera. 40% off Coursera Plus Annual.
Unlock All Certificates
Explore the persistent security challenges facing modern software development in this 34-minute cybersecurity webinar from Red Canary's Office Hours series. Examine the ongoing threat of malicious NPM packages and their impact on the developer supply chain, drawing insights from recent research and real-world compromises. Analyze the critical problem of threat intelligence overload that security professionals face daily, using current examples like ESXi hacking campaigns and Microsoft SharePoint vulnerabilities to illustrate how organizations can become overwhelmed by the constant stream of security alerts and advisories. Learn practical approaches to managing and prioritizing threat intelligence effectively while understanding the broader implications of open-source software security risks. Gain valuable perspectives on balancing comprehensive security awareness with actionable intelligence that doesn't paralyze decision-making processes.
Syllabus
00:00 - 00:40 Introduction
00:41 - 02:31 Welcome to Red Canary Office Hours!
02:32 - 17:17 NPM Package Compromise
17:18 - 32:58 Threat Intelligence Overload
32:59 - 33:30 See you next week!
Taught by
Red Canary