
Manifest Cyber offers their Beyond the Black Box: Beyond the Black Box: How AI is Forcing a Rethink of Software Supply Chain report, which reveals:
- A misalignment between corporate leadership and technical teams regarding AI security and software supply chain integrity. This includes 80 percent of executives believing their AI posture is mature, while 40 percent of security practitioners agree.
- Shadow AI is a growing risk, with 63 percent of organizations reporting the unauthorized use of AI models and datasets.
- 42 percent of companies manage AI as a separate silo, isolated from their standard software security processes. This can lead to a lack of a unified view from organization of their digital dependencies.
- Although 60 percent of organizations now generate Software Bills of Materials (SBOMs) to meet regulatory demands, over half fail to actually consume or act on that data.
- 56 percent of respondents view legacy security tools as ineffective for managing the complexities of modern, AI-integrated software. The report states that this creates a sort of "Transparency Tax" where organizations lack clear data on third-party software, and therefore suffer from slower incident responses.
- Those receiving high-quality transparency data from vendors report a 64 percent increase in implementation speed.
To read the full report, click here.



















