Webinar | ON DEMAND

The Evolution of Open Source Malware

Watch Now

The 2026 State of the Software Supply Chain Report (SSCR) revealed a major shift: attackers are no longer relying solely on high-volume tactics. Instead, they’re focusing on more precise, sophisticated methods that target developers, pipelines, and trusted ecosystems. The outcome? Over 1.23 million malicious packages, with a growing share representing serious, high-impact threats.

Join Sonatype security and product experts as they explore how the patterns identified in the SSCR are playing out in real-world attacks from Q1. This session will unpack how adversaries are adapting — and what those changes mean for your security posture today.

Featured Speakers

Meredith Eisen

Director of Product Management
Headshot-Meredith-Eisen

Garrett Calpouzos

Principal Security Researcher
Garrett Calpouzos