T1195.002 - Compromise Software Supply Chain - MITRE ATT&CK

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
June 12, 2026
Last Seen
July 17, 2026

T1195.002 - Compromise Software Supply Chain is a mitre_attack tracked across 3 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed June 12, 2026; most recent activity July 17, 2026.

Related Threat Clusters

  • Critical Exploitation of Cisco CM and Samsung KNOX Vulnerabilities

    Active exploitation of two critical vulnerabilities has been reported: CVE-2026-20230 in Cisco Unified CM and CVE-2026-20971 in Samsung KNOX. The Cisco flaw, a server-side request forgery (SSRF), poses an immediate…

    4 articles · Updated June 23, 2026
  • LiteLLM Supply Chain Attack Exposes Critical Credentials

    On March 24, 2026, two versions of the LiteLLM Python package (1.82.7 and 1.82.8) were compromised on PyPI, embedding credential-stealing payloads. The attack, linked to the TeamPCP threat actor, exploited a…

    3 articles · Updated June 12, 2026
  • AI Supply Chain Attacks and Model Poisoning Threats

    In July 2026, researchers demonstrated that open-weight AI models can be easily poisoned, allowing attackers to implant backdoors for under $100. Katie Paxton-Fear successfully manipulated a model to execute remote code…

    8 articles · Updated July 17, 2026

Recent Intelligence Reports

  • AI supply chain attacks — hivesecurity.gitlab.io · July 17, 2026
  • [SecurityIntel] 24 Jun | Active Exploitation of Cisco CM and Samsung KNOX — Buttondown · June 24, 2026
  • LiteLLM supply-chain incident — www.trendmicro.com · June 12, 2026

CVSS v3.1 Breakdown