est.social on üks paljudest sõltumatutest Mastodoni serveritest, mida saab fediversumis osalemiseks kasutada.
est.social on mõeldud Eestis üldkasutatavaks Mastodoni serveriks. est.social is meant to be a general use Mastodon server for Estonia.

Administraator:

Serveri statistika:

87
aktiivsed kasutajad

#supplychain

4 postitusega4 osalejaga2 postitust täna
UK<p><a href="https://www.europesays.com/uk/3089/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">europesays.com/uk/3089/</span><span class="invisible"></span></a> Explainer: How Trump’s Tariffs Threaten Luxury Fashion <a href="https://pubeurope.com/tags/apparel" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>apparel</span></a> <a href="https://pubeurope.com/tags/Business" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Business</span></a> <a href="https://pubeurope.com/tags/earnings" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>earnings</span></a> <a href="https://pubeurope.com/tags/StockMarkets" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>StockMarkets</span></a> <a href="https://pubeurope.com/tags/SupplyChain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChain</span></a> <a href="https://pubeurope.com/tags/UK" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>UK</span></a> <a href="https://pubeurope.com/tags/UnitedKingdom" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>UnitedKingdom</span></a></p>
The Conversation U.S.<p>A disruption in Taiwan's exports could hit US builders hard. Drywall needs 125 screws per 100 sq. ft., and most came from Taiwan last year. A business professor breaks down the impact on U.S. imports: <a href="https://theconversation.com/more-than-just-chips-chinese-threats-and-trump-tariffs-could-disrupt-lots-of-made-in-taiwan-imports-disappointing-us-builders-cyclists-and-golfers-alike-253729" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">theconversation.com/more-than-</span><span class="invisible">just-chips-chinese-threats-and-trump-tariffs-could-disrupt-lots-of-made-in-taiwan-imports-disappointing-us-builders-cyclists-and-golfers-alike-253729</span></a> <a href="https://newsie.social/tags/tariffs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tariffs</span></a> <a href="https://newsie.social/tags/supplychain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychain</span></a></p>
Bill<p>In today's Supply Chain News ...</p><p>Eleven oooold npm packages were hijacked to steal API keys. Wonder how many of them jise are just sitting on n someone's built pipeline with "latest" as the version parameter?</p><p><a href="https://www.sonatype.com/blog/multiple-crypto-packages-hijacked-turned-into-info-stealers" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">sonatype.com/blog/multiple-cry</span><span class="invisible">pto-packages-hijacked-turned-into-info-stealers</span></a></p><p>h/t to SonaType for the top notch research.</p><p><a href="https://infosec.exchange/tags/supplychain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychain</span></a><br><a href="https://infosec.exchange/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a></p>
inquiline<p>Nerd question about the Port of Los Angeles: anyone have insight into what the contents of "recyclable plastics (293,218 TEUs)" imported in 2024 are? Is it nurdles? Is it just consumer goods made of plastic that are being labeled recyclable? ??</p><p><a href="https://assemblag.es/tags/plastics" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>plastics</span></a> <a href="https://assemblag.es/tags/shipping" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>shipping</span></a> <a href="https://assemblag.es/tags/SupplyChain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChain</span></a></p>
beSpacific<p>Via <a href="https://newsie.social/tags/LLRX" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LLRX</span></a> <a href="https://newsie.social/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a> in <a href="https://newsie.social/tags/Finance" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Finance</span></a> and <a href="https://newsie.social/tags/Banking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Banking</span></a>, 03/18/25 Semi-monthly column by Sabrina I. Pacifici 5 highlights - The <a href="https://newsie.social/tags/Finance" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Finance</span></a> Sector Is Hitting an Inflection Point With <a href="https://newsie.social/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a>; <a href="https://newsie.social/tags/ArtificialIntelligence" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ArtificialIntelligence</span></a> and the <a href="https://newsie.social/tags/Labor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Labor</span></a> Market; <a href="https://newsie.social/tags/China" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>China</span></a> <a href="https://newsie.social/tags/centralbank" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>centralbank</span></a> vows to promote applications of AI <a href="https://newsie.social/tags/largelanguagemodels" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>largelanguagemodels</span></a>; AI and the Extended Workday: Productivity, <a href="https://newsie.social/tags/Contracting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Contracting</span></a> Efficiency, and Distribution of Rents; and The AI <a href="https://newsie.social/tags/supplychain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychain</span></a> <br><a href="https://llrx.com/2025/03/ai-in-finance-and-banking-march-18-2025/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">llrx.com/2025/03/ai-in-finance</span><span class="invisible">-and-banking-march-18-2025/</span></a> <a href="https://newsie.social/tags/banking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>banking</span></a> <a href="https://newsie.social/tags/economy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>economy</span></a></p>
Europe Says<p><a href="https://www.europesays.com/1925725/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">europesays.com/1925725/</span><span class="invisible"></span></a> ‘Pragmatic’ offshore energy investment policy key to ensure UK’s supply chain stays put <a href="https://pubeurope.com/tags/CarbonCaptureAndStorage" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CarbonCaptureAndStorage</span></a> <a href="https://pubeurope.com/tags/ccs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ccs</span></a> <a href="https://pubeurope.com/tags/decarbonization" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>decarbonization</span></a> <a href="https://pubeurope.com/tags/Decom" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Decom</span></a> <a href="https://pubeurope.com/tags/decommissioning" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>decommissioning</span></a> <a href="https://pubeurope.com/tags/EnergySecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EnergySecurity</span></a> <a href="https://pubeurope.com/tags/EnergyTransition" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EnergyTransition</span></a> <a href="https://pubeurope.com/tags/GreatBritain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GreatBritain</span></a> <a href="https://pubeurope.com/tags/hydrogen" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hydrogen</span></a> <a href="https://pubeurope.com/tags/NorthSea" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NorthSea</span></a> <a href="https://pubeurope.com/tags/OEUK" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OEUK</span></a> <a href="https://pubeurope.com/tags/OffshoreEnergiesUK" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OffshoreEnergiesUK</span></a> <a href="https://pubeurope.com/tags/OffshoreEnergy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OffshoreEnergy</span></a> <a href="https://pubeurope.com/tags/OffshoreEnergySupplyChain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OffshoreEnergySupplyChain</span></a> <a href="https://pubeurope.com/tags/OffshoreRenewables" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OffshoreRenewables</span></a> <a href="https://pubeurope.com/tags/OffshoreWind" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OffshoreWind</span></a> <a href="https://pubeurope.com/tags/OilAndGas" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OilAndGas</span></a> <a href="https://pubeurope.com/tags/SupplyChain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChain</span></a> <a href="https://pubeurope.com/tags/UK" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>UK</span></a> <a href="https://pubeurope.com/tags/UnitedKingdom" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>UnitedKingdom</span></a></p>
Europe Says<p><a href="https://www.europesays.com/1922481/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">europesays.com/1922481/</span><span class="invisible"></span></a> European tech group demands ‘radical action’ for digital sovereignty <a href="https://pubeurope.com/tags/europe" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>europe</span></a> <a href="https://pubeurope.com/tags/EuropeanCommission" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EuropeanCommission</span></a> <a href="https://pubeurope.com/tags/EuropeanUnion" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EuropeanUnion</span></a> <a href="https://pubeurope.com/tags/SupplyChain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChain</span></a></p>
Christoffer S.<p>StepSecurity has posted another entry on this topic:</p><p><a href="https://www.stepsecurity.io/blog/reviewdog-github-actions-are-compromised" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">stepsecurity.io/blog/reviewdog</span><span class="invisible">-github-actions-are-compromised</span></a></p><p>The security incident involves a malicious payload in reviewdog GitHub Actions that targets the Runner.Worker process to extract secrets. The exploit uses a Python script that reads the process memory of the GitHub Actions runner to access stored secrets. The malicious code was found in commit SHA f0d342d24037bb11d26b9bd8496e0808ba32e9ec of reviewdog/action-setup. The script works by identifying the Runner.Worker process, mapping its memory regions, and reading the contents, which are then printed to stdout, effectively exposing secrets in build logs. This technique is similar to the previously reported tj-actions/changed-files incident.</p><p><a href="https://swecyb.com/tags/StepSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>StepSecurity</span></a> <a href="https://swecyb.com/tags/Github" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Github</span></a> <a href="https://swecyb.com/tags/SupplyChain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChain</span></a> <a href="https://swecyb.com/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a></p>
Christoffer S.<p>It would appear as if Wiz may have discovered another supply-chain compromise:</p><p><a href="https://www.wiz.io/blog/new-github-action-supply-chain-attack-reviewdog-action-setup" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">wiz.io/blog/new-github-action-</span><span class="invisible">supply-chain-attack-reviewdog-action-setup</span></a></p><p>The attack involved compromising the v1 tag of reviewdog/action-setup between March 11th 18:42 and 20:31 UTC. Unlike the tj-actions attack that used curl to retrieve a payload, this attack directly inserted a base64-encoded malicious payload into the install.sh file. When executed, the code dumped CI runner memory containing workflow secrets, which were then visible in logs as double-encoded base64 strings. The attack chain appears to have started with the compromise of reviewdog/action-setup, which was then used to compromise the tj-actions-bot Personal Access Token (PAT), ultimately leading to the compromise of tj-actions/changed-files. Organizations are advised to check for affected repositories using GitHub queries, examine workflow logs for evidence of compromise, rotate any leaked secrets, and implement preventive measures like pinning actions to specific commit hashes rather than version tags.</p><p><a href="https://swecyb.com/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://swecyb.com/tags/SupplyChain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChain</span></a></p>
Bytes Europe<p>Geopolitical tensions &amp; protectionism threaten supply chains in 2025: Marsh <a href="https://www.byteseu.com/820045/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">byteseu.com/820045/</span><span class="invisible"></span></a> <a href="https://pubeurope.com/tags/GeopoliticalRisk" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GeopoliticalRisk</span></a> <a href="https://pubeurope.com/tags/Geopolitics" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Geopolitics</span></a> <a href="https://pubeurope.com/tags/MarshNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MarshNews</span></a> <a href="https://pubeurope.com/tags/SupplyChain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChain</span></a></p>