Murphy Security Research Institute

Securing the Digital World Through Supply Chain Security

Murphy Security Research Institute focuses on cutting-edge research in software supply chain security, dedicated to discovering and alerting security risks in open-source components, providing enterprises and developers with professional security governance solutions and industry insights.

Industry Research Reports

In-depth insights into software supply chain security trends

2025 Annual Software Supply Chain Poisoning Risk Report cover
NEW2026-02-28

2025 Annual Software Supply Chain Poisoning Risk Report

This report provides an in-depth analysis of global software supply chain poisoning attack trends in 2025, covering security risk data across major ecosystems including npm, PyPI, and Maven, revealing the latest attack techniques and defense strategies.

  • Over 12,000 poisoning incidents detected throughout the year
  • npm ecosystem remains the largest target, accounting for 58%
  • AI-generated malicious code emerges as a new threat
  • Enterprise losses from supply chain attacks increased by 340% YoY
Supply Chain SecurityPoisoning AttacksOpen Source Security
Download Report

Industry Best Practices

Aggregating industry wisdom to build security governance standards

Security Metrics Best Practices 2026 cover
BEST PRACTICE2026-04-20

Security Metrics Best Practices 2026

A practical guide for enterprise security measurement, covering metric-system design, risk identification, measurement evaluation, and continuous improvement to help organizations build a more quantifiable and actionable security program.

Security MetricsSecurity OperationsMetrics FrameworkContinuous Improvement
Open Source Security Governance Best Practices 2026 cover
2026-03-13

Open Source Security Governance Best Practices 2026

An enterprise-level guide to open source software security governance, covering the full lifecycle from component selection, vulnerability management to compliance auditing. Based on practical governance experience from hundreds of enterprises.

Open Source GovernanceSupply Chain SecurityComplianceVulnerability Management

Visionary and innovative enterprises around the world are building with Murphy Security

Trusted across finance, energy, manufacturing, internet, and telecom sectors

Contact Us

Looking forward to collaborating with you

Inquiry

Submit a collaboration inquiry

Use the form for collaboration, research inquiries, or event co-creation. Our team will get back to you soon.

For collaboration and research exchange
Supports event and ecosystem cooperation
Fill Out the Form

The form opens in a new page. You can also contact us directly using the details on the right.

Follow Us

Email

hi@murphysec.com

Location

北京市海淀区百旺弘祥文化科技创意园5118室

上海市徐汇区桂林路406号华鑫中心1号楼11层

广东省广州市番禺区奥园国际中心4座

Scan to contact our assistant

扫码联系小助理