Malicious Open Source Packages Surge by 1,444%, AI Threatens to Accelerate Supply Chain Risks

rseroter · x · 2026-08-03

A report by Google Threat Intelligence Group (GTIG) and Mandiant reveals that the number of identified malicious open source software packages grew exponentially from 2024 to 2025, representing a 1,444% increase.

The report highlights that open source supply chain compromises are becoming a major threat due to their efficiency, scale, and stealth. Furthermore, the proliferation of AI technology is expected to accelerate this risk, as attackers can leverage AI to generate and inject malicious code more easily.

Related event: Google Warns of 1444% Surge in Malicious Packages Targeting AI Workflows(3 posts)→

Original post →

More from Safety

Safety channel →