Full visibility on software supply chain can reduce cyberattacks
Summary
In 2021 alone, reports show that software supply chain attacks grew by 300% with some of the biggest organizations in the world affected. Palo Alto Networks’ Unit 42’s Cloud Threat Report also found that access to hardcoded credentials opened the door for lateral movement and continuous integration/continuous delivery (CI/CD) pipeline poisoning. The problem is that many current solutions only provide vulnerability and misconfiguration information at a resource layer in code or the cloud. Without the proper tools, it is very difficult for organizations to quickly spot where they have used the unpatched versions of these components,” said Ankur Shah, senior vice president, Prisma Cloud products, Palo Alto Networks. Shah explained that Prisma Cloud is designed to help protect organizations from code to cloud; and now that customers can visualize their software supply chain, it’s easier to spot, prioritize, and remediate security weaknesses at the onset of development and during delivery pipelines.