Ravi Nayyar
banner
ravirockks.bsky.social
Ravi Nayyar
@ravirockks.bsky.social
Critical Software + CNI Law | PhD Candidate at the University of Sydney | Fellow @ASPI-org.bsky.social | Associate Fellow at the Social Cyber Institute | Blogging @atechnolegalupdate.substack.com | Cricket, #Bloods | #KalikaMataKiJai
Pinned
G’Day,

Since folks are increasingly talking about software supply chain risks to national security, here's a collection of my work on the subject.

Going back to 2022.
Tangos in the Tangled Web
Stuff Ravi's written on all things software supply chain x security x law
open.substack.com
63*

Forever.

Om Shanti.
November 28, 2025 at 12:18 AM
Mapping the supply chains for an adversary's aviation industrial base - on the reading list!

cc: @guyyeomans.bsky.social, @ciaranm.bsky.social
www.rusi.org/explore-our-...
Vulnerabilities in Sukhoi Production: Clipping Russia’s Wings
This research paper examines the critical vulnerabilities in the production of Russia’s Sukhoi combat aircraft and its implications for NATO and global defence markets.
www.rusi.org
November 27, 2025 at 1:21 AM
'The data is associated with the OnSolve CodeRED platform, which many counties, cities and towns use to send out [emergency] information ...

'... damage to the OnSolve CodeRED environment ... fully contained within that environment ...
November 27, 2025 at 1:06 AM
'The Royal Borough of Kensington and Chelsea (RBKC), and Westminster city council, which share some IT infrastructure, said a number of systems had been affected across both authorities, including phone lines.
November 27, 2025 at 1:02 AM
Recall from earlier this month
November 27, 2025 at 12:58 AM
'More than 14,000 Optus services in Frankston and the Mornington Peninsula were affected ...

'[Optus] do have photo evidence, very clear, that there has been a cut made ...
November 27, 2025 at 12:56 AM
'Overnight, Sydney Trains said engineers were on the ground inspecting and rectifying damage after severe weather brought down trees onto power lines, impacting energy supply to the network.
November 27, 2025 at 12:51 AM
On the reading list.

The anniversary was only yesterday. I remember being in New Delhi on holiday with my parents, watching the attack unfold on live television, utterly shocked.
mwi.westpoint.edu/mumbai-under...
Mumbai Under Siege: An Urban Warfare Project Case Study - Modern War Institute
Sixty hours. That's how long ten members of the Pakistan-based Lashkar-e-Taiba terrorist group effectively kept the Indian city of Mumbai under siege after they beached their boats on the evening of N...
mwi.westpoint.edu
November 27, 2025 at 12:49 AM
'... fortunately many packages have already been reclaimed by their owners, including those from Zapier and Postman, and the malicious versions have been removed from npm.
November 26, 2025 at 4:17 AM
I flagged DG ASIO's remarks in my recent essay on physical security: open.substack.com/pub/atechnol...
November 26, 2025 at 12:53 AM
'A police sergeant was left unable to drive, shower or dress herself after a Palestine Action activist allegedly hit her with a sledgehammer during a break-in at an Israeli defence firm's UK site, a trial has heard.
November 26, 2025 at 12:49 AM
'It estimates up to 310,000 of the 1.2 million housing target would have to be built in outer suburbs by mid-2029.
November 26, 2025 at 12:01 AM
'[Telstra's] backup power systems kept many services online for as long as possible, and we've been progressively restoring a number of our sites throughout last night and today

'... Telstra had restored 90 mobile sites by Tuesday afternoon.
November 25, 2025 at 11:57 PM
'The setback comes just weeks after Luke Pollard, the [UK] defence minister, showcased the Ajax fleet and declared them “safe”.

'Sources said the Iron Fist drill was immediately halted after troops reported “tingling hands, ringing in their ears and feeling sick”.
November 25, 2025 at 11:53 PM
'Exhausted delegates had long trips home ahead of them. Belém, while vibrant, was an incredibly expensive and hard-to-reach venue for negotiators from other continents.
November 25, 2025 at 11:48 PM
‘The [Wachbataillon] soldiers are expanding their infantry capabilities to protect federal government infrastructure in a crisis.

‘… a city such as Berlin posed many combat challenges including narrow streets, tall buildings, poor visibility and radio communication disruptions.
November 25, 2025 at 8:02 AM
‘The vendor, SitusAMC, has been deployed by hundreds of banks and other lenders to help originate and collect money from real estate loans and mortgages.

‘SitusAMC, based in New York, has around 5,000 employees and is owned by several private equity firms.
November 25, 2025 at 7:47 AM
‘We frequently hear from small, fast-growing companies that it can take time for them to get their governance systems and processes up to scratch when they’re growing quickly. But they never seem to have much trouble …
archive.md
November 25, 2025 at 7:40 AM
‘By the end of this week, [DroneShield’s] shares were down 80 per cent from the peak as the company issued a mea culpa and promised to bring in advisers to review its trading policies, its disclosure processes and its media dealings.
November 25, 2025 at 7:37 AM
‘They promise to “redefine security” but can’t even explain what problem they’re solving. They’re built for funding rounds, not production … the same core vulnerabilities keep wrecking companies year after year.
November 25, 2025 at 7:27 AM
‘… £155 million that will boost the UK’s resilience and global leadership in [PNT] …

‘This will support a programme of work to boost the resilience of UK PNT – including initial work that would provide PNT that is independent of signals from satellites, …
November 25, 2025 at 7:17 AM
‘This suggests that collaboration is not seamless between the agencies on all topics – at times it still needs to be shepherded. And, as The Times highlighted, perhaps on policy areas – such the proscription of terrorist groups – ‘jointery’ is much more difficult.
November 25, 2025 at 7:14 AM