
VS Code extensions use fake image containing a trojan
RL researchers have identified 19 malicious extensions on the VS Code Marketplace — the majority containing a malicious file posing as a PNG.

RL researchers have identified 19 malicious extensions on the VS Code Marketplace — the majority containing a malicious file posing as a PNG.

AI will reshape SecOps by tackling alert fatigue and streamlining workflows, for starters. Here’s what to expect.

Researchers studied how well the top frameworks mitigate modern attack techniques. They found serious security gaps.

RL researchers have identified 19 malicious extensions on the VS Code Marketplace — the majority containing a malicious file posing as a PNG.

A wave of malware has spread to 795 npm packages — and been downloaded more than 100 million times.

AI will reshape SecOps by tackling alert fatigue and streamlining workflows, for starters. Here’s what to expect.

Researchers studied how well the top frameworks mitigate modern attack techniques. They found serious security gaps.

Yesterday's security practices can't tackle today's risks, a new CSA guide notes — making updating tooling essential.

Learn how the ReversingLabs Browser Extension operationalizes RL threat intelligence cloud in powerful ways.

Proving the road to takeover is paved with setuptools alternatives, the script for a popular Python package for building and installing PyPI packages leaves them vulnerable.

The Open Worldwide Application Security Project’s widely used AppSec priority list is expanding to cover systemic risk.

Development is in freefall toward software entropy and insecurity. Can spec-driven development help?

Gartner's Continuous Threat Exposure Management model represents an evolution from CVSS. Here’s what you need to know.

PowerShell's broad use and open access make it an attractive target for supply chain attacks. Here's how Spectra Assure Community can help.

Google and others are inundating developers with AI-driven reporting. Are AI-enabled fixes the answer?

Learn what’s been added to the framework — and how you can use it to advance your threat detection and response.

Risk Rubric gives assessments for LLM transparency, security and more. But it's only one tool in your AI security toolbox.

With this evolving malware domain, you need clear, specific, and accurate YARA rules. Here's how Spectra Analyze can help.
Get your 14-day free trial of Spectra Assure
Get Free TrialMore about Spectra Assure Free Trial