Software Supply Chain Attacks: Deep Research 2024–2026
Record-breaking supply chain attacks in 2025–2026 — Shai-Hulud worm, North Korean Axios hijack, Miasma's forged SLSA provenance, TanStack's cache-poisoning chain, and the Arch Linux AUR Atomic Arch campaign. Here's what happened, who's behind it, and how to defend.