3 Sources
[1]
JFrog report finds AI growth driving new software supply chain threats - SiliconANGLE
JFrog report finds AI growth driving new software supply chain threats A new report out today from software supply chain company JFrog Ltd. warns that an expansion of artificial intelligence technology across the software supply chain has resulted in an alarming rise in security threats. The
[2]
JFrog Enables Trusted AI - Uncovers Critical Security Threats Emerging from AI's Expansion in the Software Supply Chain By Investing.com
The Software Supply Chain State of the Union 2025 Report Reveals Quad-fecta of Security Exploits, Mis-scored CVEs, Poor ML Model Governance, & more are Jeopardizing Trust in Newly Created Software SUNNYVALE, Calif. & LONDON--(BUSINESS WIRE)--(KubeCon + CloudNativeCon Europe) " JFrog Ltd (Nasdaq:
[3]
JFrog Enables Trusted AI - Uncovers Critical Security Threats Emerging from AI's Expansion in the Software Supply Chain
(KubeCon + CloudNativeCon Europe) -- JFrog Ltd (Nasdaq: FROG), the Liquid Software company and creators of the JFrog Software Supply Chain Platform, today released the Software Supply Chain State of the Union 2025 report, which highlights emerging software security threats, evolving DevOps risks
Share
Copy Link
JFrog's 2025 Software Supply Chain State of the Union report highlights the growing security risks associated with AI expansion in the software supply chain, emphasizing the need for improved governance and security measures.

JFrog Ltd., a leading software supply chain company, has released its 2025 Software Supply Chain State of the Union report, revealing alarming security threats emerging from the expansion of artificial intelligence (AI) technology across the software supply chain
1
2
3
.The report highlights a "quad-fecta" of security vulnerabilities threatening the software supply chain:
JFrog's Security Research Team detected a 64% year-over-year increase in exposed secrets or tokens in public registries, with 27% of them being active
1
.The proliferation of AI and machine learning models has led to new security challenges:
1
2
The report reveals concerning trends in security practices:
1
The report highlights issues with current security practices:
1
2
Related Stories
Yoav Landman, CTO and Co-Founder of JFrog, emphasizes the need for organizations to adapt to the AI era:
"AI adoption will only grow more rapidly. Thus, in order for organizations to thrive in today's AI era they should automate their toolchains and governance processes with AI-ready solutions, ensuring they remain both secure and agile while maximizing their innovative potential."
2
3
Shachar Menashe, Vice President of Security Research at JFrog, warns about the consequences of inflated CVE scores:
"When DevSecOps teams are forced to remediate vulnerabilities that aren't ultimately harmful, their everyday workflows are disrupted, which can lead to developer burnout and costly mistakes."
2
3
The JFrog Software Supply Chain State of the Union 2025 report serves as a wake-up call for organizations to reassess their security practices and adapt to the evolving threat landscape in the AI era. As AI continues to reshape the software development landscape, companies must prioritize robust security measures and automated governance to protect their software supply chains.
Summarized by
Navi
[1]
[2]
04 Mar 2025•Technology

10 Sept 2024

13 Nov 2025•Technology

1
Technology

2
Technology

3
Policy and Regulation
