
OWASP adopts DockSec: Why it matters
OWASP has adopted the container security tool to slow information overload. Here’s what you need to know.

Freelance technology writer. John's work has appeared in the The Boston Globe and Boston Herald, as well as CFO, CIO, CSO, and Inc. magazines. He is a former managing editor of the Boston Business Journal and Boston Phoenix, as well as a staff writer for Government Security News.
find John P. Mello Jr. on:

OWASP has adopted the container security tool to slow information overload. Here’s what you need to know.

AI coding is a game-changer — and requires AI-powered application security to fight fire with fire.

AI coding is the new reality — and it will further destabilize software supply chain security. So step up your AppSec.

The Vulnerable MCP Servers Lab delivers integration training, demos, and instruction on attack methods.

AI tools are making Rust a favorite language of developers — even those maintaining codebases like Microsoft’s.

NIST has broadened the Secure Software Development Framework to include the full SDLC. Here’s why it matters.

The EU’s Cyber Resilience Act legally obliges software producers to create and maintain an SBOM. Are you prepared?

A new CSA report stresses getting out in front of AI risk — and why it matters for SecOps.

Researchers explain that as threat actors move to AI-enabled malware in active operations, existing defenses will fail.
Get your 14-day free trial of Spectra Assure
Get Free TrialMore about Spectra Assure Free Trial