Operations | Monitoring | ITSM | DevOps | Cloud

Shai-Hulud Miasma: Inside the Compromise of Red Hat's Packages | Harness Blog

The Shai-Hulud lineage has a new face. On June 1, 2026, security teams independently flagged a fresh supply chain compromise inside the @redhat-cloud-services npm namespace. 32 packages and 96 versions were all republished with a credential-stealing worm. These aren't typosquats. They are the official packages in a trusted scope, pulling somewhere 80,000-117,000 average weekly downloads.

How to Build Real-Time Supply Chain Observability

"One missing pallet." That's how a warehouse supervisor in New Jersey described the start of a week-long supply chain mess back in 2024. One pallet. Then came delayed trucks, angry retailers, overtime pay, and a customer threatening to walk. In logistics, small gaps don't stay small for long. And the uncomfortable part is that most teams are already working hard. The issue isn't effort. It's alignment. The data exists in most organizations-it just doesn't show the same reality at the same time. Which leaves a basic question surprisingly hard to answer: what's actually happening right now?

Where Can Business Reduce Financial Losses During Supply Chain Logistics?

Supply chain logistics is a key feature of any business. While it can often get overlooked, its impact on the company's bottom line should never be ignored. The harsh reality is that most businesses are losing money due to deficiencies and inefficiencies within their setups. However, a conscious effort to address those issues should lead to significant benefits. Here are some of the most common culprits, along with what can be done about them.

How SDS Documentation Quality Shapes Chemical Supplier Trust

Chemical manufacturers operate in a market where product quality is expected and regulatory compliance is assumed. What tends to differentiate suppliers in practice is something less obvious: the reliability of their documentation. Safety data sheets flow downstream to every customer, distributor, and end user who handles a product. When those documents are accurate, current, and well-structured, they do their job quietly. When they are not, the consequences can surface in ways that affect purchasing decisions, market access, and business relationships.

Exploring Powerful Power BI Dashboards for Smarter Decision-Making

Operational dashboards help teams answer urgent business questions quickly. They show whether production is on track, inventory is healthy, downtime is rising, or resources are being stretched too thin. This article explores practical Power BI dashboard examples for operational efficiency across production, supply chain management, resource planning, and performance measurement. It also explains how to build dashboards that support real decisions rather than simply displaying data.

Global Sourcing Is Entering a Structural Reset That Will Redefine Procurement Strategy

Global sourcing is entering a phase where the traditional assumption "more supplier diversity equals more resilience" is no longer reliably true. Over the past few years, procurement teams have responded to geopolitical volatility, shipping disruptions, tariff volatility, and regional compliance pressures by expanding supplier bases across multiple countries. On paper, this looks like strategic hedging. In practice, many organizations are discovering that fragmentation is quietly eroding margin, visibility, and operational control.

Tech in the Forest: Driving Transparency in Wood Supply Chains

Wood supply chains are moving into a digital age. New tools help people see exactly where logs come from and where they go. The shift makes the entire process more open for everyone. Seeing every step of the journey builds trust. It keeps businesses honest and helps forests stay healthy for the long term. Changes are making a big impact on how we think about wood.

AI Supply Chain Attacks Are Here. And Most Organizations Aren't Ready

When I read about the Vercel breach tied to a Context AI compromise, I wasn’t surprised. I’ve been talking with customers for a while now about how AI was going to introduce a new kind of supply chain risk. This is exactly what that looks like. What stands out to me is how familiar the pattern is. We saw it with open source, then again with SaaS, and again with cloud.

The 2026 software supply chain security gap

AI-generated code is now nearly universal. Enforcement is not. That gap is where your software supply chain is most exposed. Cloudsmith's CEO Glenn Weinstein, Co-Founder & CTO Lee Skillen, and VP of Product Alison Sickelka join Product Marketing Manager Meghan McGowan to unpack the 2026 State of Artifact Management report – a survey-based look at how AI development is reshaping the threat landscape, what organizations are getting wrong, and what the highest-leverage fix actually looks like.

Cloudsmith raises $72M Series C to secure the AI software supply chain

Cloudsmith raised $72 million in Series C funding, led by TCV and Insight Partners, to build the operating system for the modern software supply chain. AI agents are writing code faster than teams can secure it. That shifts the risk calculus because more software, built faster, means more attack surface. Artifact management is the control point between every software producer and consumer, and it's where Cloudsmith sits.