-
Agentic AI and the Software Supply Chain: New Frontiers, Old Vulnerabilities
As AI agents gain autonomy, the software supply chain faces unprecedented challenges—from context management to dynamically loaded dependencies.
-
Reviewing at S&P 2026: Papers, Patterns, and Lessons
20 papers, 2 acceptances, and a lot to learn about what separates accepted security research from rejected work.
-
From VEX to Critical Bug: How a Single Normalization Mismatch Breaks Supply Chain Trust
A subtle normalization mismatch inside an SBOM tool can break dependency relationships even when all packages are detected correctly.