Case Study
Thales and SignPath Help Software Development Company Protect Against Supply-Chain Attacks
A U.S.-based software company strengthened its defense against supply-chain attacks by adopting SignPath with Thales Luna Cloud HSM through the Data Protection on Demand (DPoD) platform. After a major breach involving malicious code injection during software builds, the company needed secure, traceable code signing. The combined solution ensures each software release is verifiable to its source code and keeps private keys protected in FIPS-certified HSMs. DPoD’s cloud-based model provides scalability, reduced costs, and minimal deployment delays. This integration enhances DevSecOps efficiency, ensures compliance, and delivers high availability and disaster recovery for end-to-end supply chain security.