Supply Chain Attack Surface Map
Interactive map of software supply chain vulnerabilities across npm, PyPI, and Docker Hub with severity scoring.
Key Highlights
- ✓ npm, PyPI, Docker Hub coverage
- ✓ CVSS severity scoring
- ✓ Transitive dependency analysis
- ✓ Malicious package detection
- ✓ Remediation recommendations
Overview
An interactive tool mapping software supply chain vulnerabilities across major package registries. Includes severity scoring, dependency analysis, and remediation recommendations.
What's Inside
Data Sources
We aggregate vulnerability data from NVD, OSV, GitHub Security Advisories, and proprietary malicious package detection. The map updates hourly with new advisories and package takedowns.
Risk Scoring
Each package is scored based on vulnerability count, severity, exploitability, dependency depth, and download volume. High-risk packages are flagged for immediate remediation.
Ready to dive in?
Explore this resource and discover more across our 12 technology frontiers.