Following the 4th of July weekend, our industry finds itself digesting details of yet another large-scale and high-profile ransomware attack. Were also seeing an interesting, and admittedly nuanced, debate emerge on whether the Kaseya attack actually qualifies as a software supply chain attack. As we fondly follow the evolution of software supply threats for the past six years, heres my two cents on the debate. I believe there are different types of “software supply chains” including those that target software supply chains.”]
Source: https://blog.sonatype.com/kaseya-ransomware-supply-chain

