Developers have been increasingly targeted by attackers. Compromising a single developer enables attackers to embed malicious code into a company's products. If that product is then used by other companies, the malware can spread to their systems in a supply chain attack.
Vulnerability Researcher at Sonar
Thomas Chauchefoin is a Vulnerability Researcher at Sonar. With a strong background in offensive security, he helps uncover and responsibly disclose 0-days in major open-source software to sharpen Sonar's static analysis technology. He also participated in competitions like Pwn2Own or Hack-a-Sat and was nominated twice for a Pwnie Award for his research on PHP supply chain security.