Technology
Microsoft sounds the alarm over new ‘dependency confusion’ attack technique – TechRadar
Organizations may have to reconfigure their app development

Microsoft has released a whitepaper outlining a new cyberattack method that the firm is calling, “dependency confusion” or a “substitution attack.” The approach looks to take advantage of the open ecosystem that many businesses use as part of their app development process, mixing public and private feeds within the same development supply chain.
When apps are being constructed, developers often use a mixture of code stored in private libraries as well as dependencies from public portals.
However,…
Continue Reading