<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>chs.us — Carl Sampson</title><link>https://chs.us/</link><description/><language>en-us</language><managingEditor>carl.sampson@gmail.com (Carl Sampson)</managingEditor><webMaster>carl.sampson@gmail.com (Carl Sampson)</webMaster><lastBuildDate>Tue, 30 Jun 2026 14:00:00 +0000</lastBuildDate><atom:link href="https://chs.us/tags/supply-chain/index.xml" rel="self" type="application/rss+xml"/><item><title>OWASP A03: Software Supply Chain Failures Guide 2025</title><link>https://chs.us/2026/06/owasp-a03-software-supply-chain-failures-prevention/</link><pubDate>Tue, 30 Jun 2026 14:00:00 +0000</pubDate><author>carl.sampson@gmail.com (Carl Sampson)</author><guid>https://chs.us/2026/06/owasp-a03-software-supply-chain-failures-prevention/</guid><description>A practical guide to OWASP A03:2025 Software Supply Chain Failures. Learn why it&amp;#39;s a brand-new Top 10 category, real attacks from xz to dependency confusion, and how to lock down your dependencies and CI/CD pipeline.</description><category>Security</category><category>Owasp</category><category>Supply-Chain</category><category>Python-Security</category><category>Websec</category></item></channel></rss>