Fragile by Design: Large-Scale Evidence of Supply Chain Risk @FIRSTdotorg
Fragile by Design: Large-Scale Evidence of Supply Chain Risk  @FIRSTdotorg
Uploaded May 2026 | Updated September 2026, 46 minutes ago
Gary Schwartz (NetRise)

Analysis of millions of binaries across firmware, containers, applications, and cloud workloads shows systemic risk: 88% contained vulnerabilities, more than half had hardcoded credentials, and nearly a third exposed private keys. This session presents aggregated findings on the fragility of the global software supply chain.

---

Gary Schwartz is Senior Vice President at NetRise, where he leads go-to-market strategy for the company’s software supply chain security platform and works closely with security and risk leaders to understand how they assess third party software and supply chain risk. Before joining NetRise, Gary held senior marketing roles at cybersecurity companies including Veracode and Forter, helping organizations adopt modern approaches to application security and fraud prevention. He has also consulted with multiple cybersecurity vendors on how to translate complex technical capabilities into clear value for the teams responsible for managing software security.
Fragile by Design: Large-Scale Evidence of Supply Chain RiskFriday Keynote Address - Network Security is a Team Sport, so How Do We Set and Manage the TeamVulnerabilities Without CVEs: Governing the Dark Matter of Internal and Unknown SoftwareEpisode 61: Chris Butera, CISA, FIRSTCON26 Speakernx Compromise - AI as an Attack VectorAutomating CNA CVE Reporting and Monthly Bulletins at AtlassianClosing RemarksArtemis: How CERT PL Improves the Security of the Polish InternetImproving Security Across Nations with FIRST: Carlos Leonardo, FIRST Board of Directors MemberOne Poisoned Artifact Can Steer Your AI: How Robust Are Your LLM-Assisted Security Workflows?The Vulnerability Identity CrisisSpeeding Up Vulnerability Triage: Automating Context Retrieval with AI Agents
FIRST |

Fragile by Design: Large-Scale Evidence of Supply Chain Risk

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER