0 Days Since The Last Supply Chain Attack: Protecting the WordPress Project in an AI World

Session Info

Track:

Time:

AI is improving every day, giving us tools that surface security vulnerabilities in our software faster than ever before. But there’s a catch. Those same tools are available to everyone, including attackers.

It feels like every day a new supply chain attack rolls across your feed. Bad actors are using AI to discover vulnerabilities, steal credentials, and inject malware into packages consumed by millions. After years of skating by on suboptimal dependency hygiene, many projects are now paying the price.

So how do we protect ourselves from becoming the next headline? What does this shift mean for a massive open source project like WordPress, with its sprawling ecosystem of plugins, themes, and contributors? And what’s now non-negotiable on our security checklist in an age where AI finds the vulnerabilities first?


All sessions included in general admission tickets thanks to our wonderful sponsors!