# Security Attacks

Published articles for Security Attacks.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Cyber resiliency in practice: Lessons from recent supply chain attacks

DevFeed: [Cyber resiliency in practice: Lessons from recent supply chain attacks](<https://devfeed.tech/articles/cyber-resiliency-in-practice-lessons-from-recent-supply-chain-attacks-13017.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/cyber-resiliency-in-practice-lessons-from-recent-supply-chain-attacks>)

Published: 2026-05-08T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [resiliency](<https://devfeed.tech/topics/resiliency.md>), [supply chain attacks](<https://devfeed.tech/topics/supply-chain-attacks.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [axios](<https://devfeed.tech/topics/axios.md>), [GitHub Actions](<https://devfeed.tech/topics/github-actions.md>), [litellm](<https://devfeed.tech/topics/litellm.md>), [trivy](<https://devfeed.tech/topics/trivy.md>), [npm](<https://devfeed.tech/topics/npm.md>), [PyPI](<https://devfeed.tech/topics/pypi.md>), [Python](<https://devfeed.tech/topics/python.md>), [Large Language Model](<https://devfeed.tech/topics/llm.md>)

Tags: [axios](<https://devfeed.tech/tags/axios.md>), [chainguard-libraries](<https://devfeed.tech/tags/chainguard-libraries.md>), [cyber-resiliency](<https://devfeed.tech/tags/cyber-resiliency.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [github-actions](<https://devfeed.tech/tags/github-actions.md>), [litellm](<https://devfeed.tech/tags/litellm.md>), [malware](<https://devfeed.tech/tags/malware.md>), [npm](<https://devfeed.tech/tags/npm.md>), [pypi](<https://devfeed.tech/tags/pypi.md>), [python](<https://devfeed.tech/tags/python.md>), [security](<https://devfeed.tech/tags/security.md>), [security-attacks](<https://devfeed.tech/tags/security-attacks.md>), [social-engineering](<https://devfeed.tech/tags/social-engineering.md>), [software-supply-chain-security](<https://devfeed.tech/tags/software-supply-chain-security.md>), [supply-chain-attacks](<https://devfeed.tech/tags/supply-chain-attacks.md>), [trivy](<https://devfeed.tech/tags/trivy.md>), [worm](<https://devfeed.tech/tags/worm.md>)

### AI overview

The article defines cyber resiliency as an integrated ability to anticipate, withstand, recover from, and adapt to attacks across the full Protect, Detect, Respond, and Recover lifecycle. It examines recent supply chain attacks involving Trivy, Axios, and LiteLLM, highlighting risks such as GitHub Actions misconfiguration, long-lived tokens, incomplete credential rotation, mutable Git tags, maintainer-account compromise, and malicious package releases.

### Source excerpt

Learn how modern cyber resiliency helps organizations prevent, detect, and recover from supply chain attacks like Trivy, Axios, and LiteLLM.

## Types of VoIP Hacking and Countermeasures

DevFeed: [Types of VoIP Hacking and Countermeasures](<https://devfeed.tech/articles/types-of-voip-hacking-and-countermeasures-4510.md>)

Original publisher: [Read original article](<https://feeds.feedblitz.com/~/923262890/0/baeldung/cs>)

Author: Georgios Nanos

Published: 2025-08-15T02:31:46Z

Content type: tutorial

Language: en

Sources: [Baeldung - CS](<https://devfeed.tech/sources/baeldung-cs.md>)

Topics: [Security Attacks](<https://devfeed.tech/topics/security-attacks.md>), [Security](<https://devfeed.tech/topics/security.md>), [Protocol (disambiguation)](<https://devfeed.tech/topics/protocol.md>), [Networks](<https://devfeed.tech/topics/networks.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [Internet](<https://devfeed.tech/topics/internet.md>)

Tags: [attacks](<https://devfeed.tech/tags/attacks.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [encryption](<https://devfeed.tech/tags/encryption.md>), [ip](<https://devfeed.tech/tags/ip.md>), [monitoring](<https://devfeed.tech/tags/monitoring.md>), [protocol](<https://devfeed.tech/tags/protocol.md>), [rtp](<https://devfeed.tech/tags/rtp.md>), [security](<https://devfeed.tech/tags/security.md>), [security-attacks](<https://devfeed.tech/tags/security-attacks.md>), [security-security-attacks](<https://devfeed.tech/tags/security-security-attacks.md>), [spoofing](<https://devfeed.tech/tags/spoofing.md>), [voice](<https://devfeed.tech/tags/voice.md>)

### AI overview

This tutorial explains how Voice over Internet Protocol (VoIP) carries digitized voice as data packets and examines common attacks against VoIP systems, including eavesdropping and SIP registration hijacking. It also discusses risks such as packet interception, identity spoofing, service disruption, and exposure of unencrypted signaling and audio traffic, while outlining the need for encryption, authentication, and monitoring.

### Source excerpt

Learn about security attacks and measures regarding the Voice-over-IP technology. The post Types of VoIP Hacking and Countermeasures first appeared on Baeldung on Computer Science. Related Stories Introduction to Differential Privacy in Deep Learning Models What Is CSRF? Network Time Protocol: Security and Authentication

## Introduction to Differential Privacy in Deep Learning Models

DevFeed: [Introduction to Differential Privacy in Deep Learning Models](<https://devfeed.tech/articles/introduction-to-differential-privacy-in-deep-learning-models-4509.md>)

Original publisher: [Read original article](<https://feeds.feedblitz.com/~/922186523/0/baeldung/cs>)

Author: Chizaram Nwachukwu

Published: 2025-07-25T16:07:28Z

Content type: tutorial

Language: en

Sources: [Baeldung - CS](<https://devfeed.tech/sources/baeldung-cs.md>)

Topics: [Training AI Models](<https://devfeed.tech/topics/training-ai-models.md>), [Language models](<https://devfeed.tech/topics/language-models.md>)

Tags: [attacks](<https://devfeed.tech/tags/attacks.md>), [deep-learning](<https://devfeed.tech/tags/deep-learning.md>), [machine-learning](<https://devfeed.tech/tags/machine-learning.md>), [machine-learning-security-attacks](<https://devfeed.tech/tags/machine-learning-security-attacks.md>), [models](<https://devfeed.tech/tags/models.md>), [pii](<https://devfeed.tech/tags/pii.md>), [privacy](<https://devfeed.tech/tags/privacy.md>), [security-attacks](<https://devfeed.tech/tags/security-attacks.md>), [training](<https://devfeed.tech/tags/training.md>), [tutorial](<https://devfeed.tech/tags/tutorial.md>)

### AI overview

A tutorial on applying differential privacy to deep-learning training so models can use sensitive data while reducing the risk of inferring whether an individual record was in the training set.

### Source excerpt

Learn to make secure machine-learning models using differential privacy and PATE. The post Introduction to Differential Privacy in Deep Learning Models first appeared on Baeldung on Computer Science. Related Stories Types of VoIP Hacking and Countermeasures What Is the Gradient Norm? What's the Difference Between 'transform' and 'fit_transform' in sklearn?

## Cybersecurity Venture's 2023 Software Supply Chain Attack Report

DevFeed: [Cybersecurity Venture's 2023 Software Supply Chain Attack Report](<https://devfeed.tech/articles/cybersecurity-venture-s-2023-software-supply-chain-attack-report-7881.md>)

Original publisher: [Read original article](<https://snyk.io/blog/cybersecurity-ventures-2023-software-supply-chain-attack-report/>)

Author: Sydney Milligan

Published: 2023-10-10T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [software supply-chain attack](<https://devfeed.tech/topics/software-supply-chain-attack.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Critical Infrastructure](<https://devfeed.tech/topics/critical-infrastructure.md>), [CI/CD](<https://devfeed.tech/topics/cicd.md>), [Software as a service](<https://devfeed.tech/topics/saas.md>)

Tags: [acquisition](<https://devfeed.tech/tags/acquisition.md>), [attacks](<https://devfeed.tech/tags/attacks.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ci-cd](<https://devfeed.tech/tags/ci-cd.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [critical-infrastructure](<https://devfeed.tech/tags/critical-infrastructure.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [data-breaches](<https://devfeed.tech/tags/data-breaches.md>), [developer](<https://devfeed.tech/tags/developer.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [megawatt](<https://devfeed.tech/tags/megawatt.md>), [phishing](<https://devfeed.tech/tags/phishing.md>), [report](<https://devfeed.tech/tags/report.md>), [saas](<https://devfeed.tech/tags/saas.md>), [secure-software](<https://devfeed.tech/tags/secure-software.md>), [security](<https://devfeed.tech/tags/security.md>), [security-attacks](<https://devfeed.tech/tags/security-attacks.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>), [software-supply-chain-attack](<https://devfeed.tech/tags/software-supply-chain-attack.md>), [software-supply-chain-security](<https://devfeed.tech/tags/software-supply-chain-security.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [supply-chain-security](<https://devfeed.tech/tags/supply-chain-security.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

The article summarizes findings from Cybersecurity Ventures' 2023 Software Supply Chain Attack Report. It predicts that the global cost of software supply chain attacks could reach nearly $138 billion by 2031 and explains how software complexity, cloud applications, and operational pipelines increase supply chain risk. It describes common attack methods, including social engineering, phishing, stolen credentials, CI/CD pipeline compromise, vulnerability exploitation, open-source component targeting, typosquatting, insider threats, and cloud hijacking. The article also examines the 2020 SolarWinds attack, in which a backdoor inserted into an Orion update affected approximately 18,000 customers and put critical infrastructure operations at risk.

### Source excerpt

Cybersecurity Ventures predicts the global cost of software supply chain attacks will reach nearly $138 billion by 2031. Learn more by reading the 2023 Software Supply Chain Attack Report.