AI Has Redefined Software Risk - Learn How Security Teams Can Update Their PlaybookWatch Now
Spectra Collective: Empowering Maintainers Webinar Header
Tuesday, February 17 @ 11-12pm ET

Life of an Attack: From Open Source Package to SOC Alert

In this session, we’ll walk through the life of a modern software supply chain attack, using real-world npm incidents as our guide. Starting with how malicious packages enter repositories, we’ll trace what happens as compromised dependencies move through CI/CD pipelines, land on developer machines, and ultimately trigger a SOC investigation. 

Host Kadi McKean is joined by ReversingLabs Erik Thoen, VP of Product Management, and Igor Lasic, VP of Engineering, this conversation bridges the gap between developers, AppSec, and SOC teams, how each group encounters the same attack at different stages, and why shared visibility matters. 

We’ll explore: 

  • How npm attacks unfold in the wild
  • Where traditional tools help - and where they fall short
  • How build systems, artifact repositories, and security teams intersect during an incident
  • What open source maintainers and developers can realistically do to reduce the blast radius

Whether you build software, secure pipelines, or investigate alerts, this webinar will give you a clearer picture of how supply chain threats move - and how to stop them earlier.

Register now! Attendees will receive an attendance certificate to be used towards CPE credits.

Register Now
Igor Lasic
Erik Thoen
Back to Top