
Mandatory SBOMs: Why CRA matters
The EU’s Cyber Resilience Act legally obliges software producers to create and maintain an SBOM. Are you prepared?

Freelance technology writer. John's work has appeared in the The Boston Globe and Boston Herald, as well as CFO, CIO, CSO, and Inc. magazines. He is a former managing editor of the Boston Business Journal and Boston Phoenix, as well as a staff writer for Government Security News.
find John P. Mello Jr. on:

The EU’s Cyber Resilience Act legally obliges software producers to create and maintain an SBOM. Are you prepared?

A new CSA report stresses getting out in front of AI risk — and why it matters for SecOps.

Researchers explain that as threat actors move to AI-enabled malware in active operations, existing defenses will fail.

AI platforms exacerbate existing security risks. Here’s what you need to know to stay out of technical debt.

The Open Worldwide Application Security Project now includes an Agentic Top 10, an AI testing guide, and an AI vulnerability scoring tool.

Researchers studied how well the top frameworks mitigate modern attack techniques. They found serious security gaps.

Yesterday's security practices can't tackle today's risks, a new CSA guide notes — making updating tooling essential.

The Open Worldwide Application Security Project’s widely used AppSec priority list is expanding to cover systemic risk.

Gartner's Continuous Threat Exposure Management model represents an evolution from CVSS. Here’s what you need to know.
Get your 14-day free trial of Spectra Assure
Get Free TrialMore about Spectra Assure Free Trial