Switch language한국어
Back to the list

JFrog report recaps a tumultuous year in supply chain security

TL;DR AI

Key summary

2 min read
  1. JFrog says software supply chain risk surged in 2025 as package volumes hit record highs and malicious npm activity increased.

  2. The report says AI models and agentic development tools are widening exposure across developer workflows, not just traditional code dependencies.

  3. Attackers are moving faster than current governance and security controls can keep up, raising enterprise risk across modern application stacks.

  4. JFrog highlights growing pressure on teams to improve software supply chain security, AI governance, and dependency oversight.

Read the original