
Australia (Perth) · Jun 6, 2026, 6:07 AM AWST
Force Vendor Controls and Patch Priorities for APAC Cyber Procurement
- New concrete risk: Microsoft report shows critical vulnerabilities roughly doubled and identity (elevation‑of‑privilege) is a dominant vector, shifting priority to identity/privilege controls (article 2).
- New supplier posture: JFrog data confirms high Australian self-hosting of AI and widespread secrets exposure, raising contract and audit requirements for developer tooling and provenance (article 7).
- Vendor ecosystem risk: Security brief on SMEs highlights that vendor hygiene shortfalls are now more likely to block contracts and require commercial remediation or insurance proof (article 1).