
Security Intelligence Exploits of public-facing apps are surging. Why?
Feb 25, 2026
Joe Xatruch, CTM Chief Architect focusing on AI security and supply-chain governance. Claire Nuñez, Creative Director of a cyber range specializing in security education and exercises. Chris Caridi, cyber threat analyst and contributor to the 2026 Threat Intelligence Index. They discuss the surge in public-facing app exploitation, risks from compromised packages and AI agent theft, and why AI infrastructure and supply-chain gaps keep failing defenders.
AI Snips
Chapters
Transcript
Episode notes
Public Facing Apps Became Top Attack Vector
- Exploitation of public-facing applications rose 44% and 56% of those vulnerabilities required no authentication.
- Chris Caridi links this surge to supply chain complexity and exposed interfaces between systems that attackers now target.
Supply Chain Breaches Quadrupled
- Major supply chain breaches increased fourfold, reflecting weak due diligence with partners.
- Claire Nuñez notes organizations often skip deep risk assessments because full assessments take time and money.
Inventory Your External Footprint Now
- Inventory and monitor your external footprint, including domains and dark web exposure.
- Chris Caridi says knowing what assets are publicly exposed and building strong authentication into apps and APIs reduces risk dramatically.
