Love is in the air — Enjoy 20% off on all Individual annual plans with coupon ‘CUPIDCODE20’.
BlackHat USA

BlackHat USA 2025 Attacking the Application Supply chain

2 - 3 August, 2025
|
Las Vegas
|
Vishnu Prasad K

The following supply-chain scenarios, exploits and lateral movement scenarios will be explored in this training: * Application Supply Chains: * Client-side Supply Chain attacks ranging from magecart-style attacks to other client-side exploits* Server-side dependency attacks* Build System Attacks and Package Manager focused attacks* Dependency Confusion Attacks* Cross-Build Injection Attacks* Container Supply Chains* Container Build System Attacks* Container Registry Attacks* Trojanizing Containers* Attacks against CI Services:* Attacks against on-prem CI services like Jenkins, Bamboo, etc. * Webhook Boomerang Attacks against CI/CD Systems* Dependency attacks and template attacks against Github Actions and Gitlab CI* Cloud-Native Supply Chain Attacks: * Attacking Kubernetes Supply-Chains (Helm, Admission Controllers) etc* Attacking Continuous Deployment Services for Kubernetes and Cloud-native environments* Supply Chain Attacks and Lateral Movement with AWS and Azure.

More events that might interest you

February 12, 2025 - 9 AM PT
LLM Secure Coding - The Unexplored Frontier
Learn how to future-proof your GenAI solutions with robust security practices. Explore the OWASP Top 10 for LLMs - 2025 with a live demo that reveals practical steps to implement secure coding for LLMs.
November 15, 2024 - 9 AM PT
Role-based IT Security Training: Can it suck less?
Find out why traditional training often fails to create real security champions and how to shift from compliance checklists to a culture of Product Security.
July 25, 2024 - 9 AM PT
Webinar: Secure by Design - Across the stack
Let's explore the fundamentals of Secure by Design and understand how to incorporate security throughout the SDLC.
View all events

Ready to Elevate Your Security Training?

Empower your teams with the skills they need to secure your applications and stay ahead of the curve.
Get Our Newsletter
Get Started
X
X
Copyright AppSecEngineer © 2025