Skip to main content

Exaforce Blog

Filter

Uncategorized

Helping design partners overcome GitHub Actions Supply Chain Compromise: tj-actions/changed-files

Co-authored by Devesh Mittal (@deveshmittal86) and Madhukar. Since March 14th, 2025, Exaforce has been very…
Read More
Uncategorized

NPM Provenance: The missing security layer in popular JavaScript libraries

Authors: Jakub Pavlík, Marco Rodrigues The recent security incident involving the popular lottie-player library once…
Read More
Uncategorized

Supply chain security incident: Analysis of the LottieFiles npm package compromise

Authors: Jakub Pavlík, Marco Rodrigues October 30th, 2024, Exaforce’s Incident Response team was engaged by…
Read More

We’re growing. Join us!

View Openings