An expansion of AI technology across the software supply chain has led to an increase in security threats, according to a report by JFrog Ltd.
The report identified a combination of security vulnerabilities, including CVEs, malicious packages, secrets' exposures, and human errors, as the top threats to software supply chain integrity and safety.
The JFrog Security Research Team found a 64% increase in exposed secrets or tokens in public registries, with 27% of them active.
The report also highlighted concerns over the proliferation of AI and machine learning models, the decrease in binary scanning practices, and persistent issues with open-source security.