Devops
CrowdStrike Launches Endpoint Protection Against Supply Chain Attacks
Article Content
CrowdStrike has introduced Real-Time Supply Chain Attack Protection to combat software supply chain attacks that increasingly target open-source packages. This new capability is designed to block malicious packages at the endpoint before any embedded code can execute. The CrowdStrike 2026 Threat Hunting Report indicates that adversaries, including the North Korean group STARDUST CHOLLIMA, have poisoned 131 trusted AI framework packages, while ALTERED SPIDER compromised over 300 software dependencies in a single day. The attack surface has expanded significantly due to the rise of AI coding agents, which can inadvertently download compromised packages. CrowdStrike's solution provides visibility into installed packages and automates remediation workflows for DevSecOps teams. The protection works across Windows, macOS, and Linux systems, and does not require new sensor deployments or changes to existing workflows. This proactive approach aims to secure endpoints against the growing threat posed by malicious software packages.
Key Points: • CrowdStrike's new protection blocks malicious open-source packages at the endpoint. • Adversaries have increasingly targeted software supply chains, compromising hundreds of packages. • The solution provides visibility and automated remediation for DevSecOps teams.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.