Malicious package attacks don’t behave like traditional vulnerabilities, which is why most tools miss them.
In this technical session, we’ll cover:
- How modern malicious-package campaigns propagate across dev machines and CI/CD
- Why signature-based and conventional AppSec tools fail
- Practical detection and containment patterns you can apply immediately