Murphy Security Research Institute
Securing the Digital World Through Supply Chain Security
Murphy Security Research Institute focuses on cutting-edge research in software supply chain security, dedicated to discovering and alerting security risks in open-source components, providing enterprises and developers with professional security governance solutions and industry insights.
Industry Research Reports
In-depth insights into software supply chain security trends

2025 Annual Software Supply Chain Poisoning Risk Report
This report provides an in-depth analysis of global software supply chain poisoning attack trends in 2025, covering security risk data across major ecosystems including npm, PyPI, and Maven, revealing the latest attack techniques and defense strategies.
- Over 12,000 poisoning incidents detected throughout the year
- npm ecosystem remains the largest target, accounting for 58%
- AI-generated malicious code emerges as a new threat
- Enterprise losses from supply chain attacks increased by 340% YoY
Industry Best Practices
Aggregating industry wisdom to build security governance standards

Security Metrics Best Practices 2026
A practical guide for enterprise security measurement, covering metric-system design, risk identification, measurement evaluation, and continuous improvement to help organizations build a more quantifiable and actionable security program.

Open Source Security Governance Best Practices 2026
An enterprise-level guide to open source software security governance, covering the full lifecycle from component selection, vulnerability management to compliance auditing. Based on practical governance experience from hundreds of enterprises.
Visionary and innovative enterprises around the world are building with Murphy Security
Trusted across finance, energy, manufacturing, internet, and telecom sectors
Contact Us
Looking forward to collaborating with you
Submit a collaboration inquiry
Use the form for collaboration, research inquiries, or event co-creation. Our team will get back to you soon.
The form opens in a new page. You can also contact us directly using the details on the right.
Follow Us
hi@murphysec.com
Location
北京市海淀区百旺弘祥文化科技创意园5118室
上海市徐汇区桂林路406号华鑫中心1号楼11层
广东省广州市番禺区奥园国际中心4座
Scan to contact our assistant

