Vendor-risk is a topic tracked in our intelligence system with 5 linked articles.
CISA orders federal agencies to patch a VPN vulnerability exploited by a ransomware group, with Check Point reporting dozens of government breaches via its VPN products.
A third-party UK visa portal leaked thousands of applicants’ passports and selfies online and has not fixed the leak, with the vendor opting for legal action instead of remediation.
An investigative blog alleges Canonical’s outage was effectively blackmailed through a paid Cloudflare onboarding via the Beamed booter service, tying together minute timeline data, domain/registrar moves, and apex-certificate rotations—but verification is lacking and the piece blends facts with speculative interpretation.
Val Town moved from Clerk to Better Auth due to reliability and architecture concerns, with hard data on Clerk's funding, rate limits, and uptime illustrating vendor risk and the push toward open-source alternatives.
Pentagon expands classified-AI vendor deals to OpenAI, Google, Microsoft, Amazon, Nvidia, xAI, and Reflection, excluding Anthropic over supply-chain risk.
LiteLLM ditched controversial Delve after two security compliance certifications via Delve and a credential-stealing malware incident last week.
Subscribe for real-time topic updates and unlimited access to our intelligence platform.