RL Blog
man with pen checking three boxes
January 7, 2025

Compliance as cybersecurity: A reality check on checkbox risk management

Here's what's driving the compliance-as-security trend — and why it's essential to go beyond checkbox cybersecurity amid a rapidly changing threat landscape.

Read More about Compliance as cybersecurity: A reality check on checkbox risk management
Compliance as cybersecurity: A reality check on checkbox risk management
2024 collage black and white
December 24, 2024

SEC cybersecurity disclosures and lessons to be learned: A timeline

Here’s what the 2024 8-K security-incident filings are all about, lessons to be learned — and the bigger picture for cybersecurity.

Read More about SEC cybersecurity disclosures and lessons to be learned: A timeline
SEC cybersecurity disclosures and lessons to be learned: A timeline
hooded figure at computer with globe hologram
December 20, 2024

A new playground: Malicious campaigns proliferate from VSCode to npm

To avoid compromised packages being introduced as a dependency in a larger project, security teams need to keep an eye peeled for such malicious code.

Read More about A new playground: Malicious campaigns proliferate from VSCode to npm
A new playground: Malicious campaigns proliferate from VSCode to npm
person walking in sneakers with shadow on sidewalk
December 20, 2024

The year in ransomware: Security lessons to help you stay one step ahead

Ransomware kept its stride in 2024. In 2025, threat actors are moving toward targeting key parts of the software supply chain. Here are key lessons.

Read More about The year in ransomware: Security lessons to help you stay one step ahead
The year in ransomware: Security lessons to help you stay one step ahead
man with glasses reflecting computer screen
December 20, 2024

OSS in the crosshairs: Cryptomining hacks highlight key new threat

Hacks of rspack, vant highlight the growing trend of cryptomining compromises spreading via top open-source packages.

Read More about OSS in the crosshairs: Cryptomining hacks highlight key new threat
OSS in the crosshairs: Cryptomining hacks highlight key new threat
man in suit standing on cliff looking at sky
December 11, 2024

U.K. cybersecurity chief warns of gap between risks and defenses

The new NCSC lead warned that cybersecurity risk is 'widely underestimated.' But experts say AI could close the gap — if the industry comes together.

Read More about U.K. cybersecurity chief warns of gap between risks and defenses
U.K. cybersecurity chief warns of gap between risks and defenses
squeegee wiping across sky
December 10, 2024

SEC action raises the bar on software transparency

Four firms have been fined for playing down how the SolarWinds attack impacted them. It’s part of a government push for greater supply chain transparency.

Read More about SEC action raises the bar on software transparency
SEC action raises the bar on software transparency
dart board with dart on bullseye
December 10, 2024

AI-based fuzzing targets open-source LLM vulnerabilities

Google researchers using OSS-Fuzz have identified 26 vulnerabilities, but experts warn that AI fuzzing is not a panacea for AI/ML security.

Read More about AI-based fuzzing targets open-source LLM vulnerabilities
AI-based fuzzing targets open-source LLM vulnerabilities
computer insides with lit up bitcoin
December 9, 2024

Compromised ultralytics PyPI package delivers crypto coinminer

A compromised build environment led to a malicious deployment of a popular AI library that had the potential of delivering other malware.

Read More about Compromised ultralytics PyPI package delivers crypto coinminer
Compromised ultralytics PyPI package delivers crypto coinminer
aws re invent on purple background
December 5, 2024

Secure Your AWS Environments: Go Beyond Traditional Tooling in 2025

Whether it is managing a data lake, orchestrating CI/CD pipelines, or safeguarding data, your security needs are evolving — and so must your strategy.

Read More about Secure Your AWS Environments: Go Beyond Traditional Tooling in 2025
Secure Your AWS Environments: Go Beyond Traditional Tooling in 2025
gold bitcoin sticking out of leather wallet
December 5, 2024

Malware found in Solana npm library raises the bar for crypto security

Two recent versions of the Solana web3.js open source library were infected with code to steal private keys, putting crypto platforms and wallets at risk.

Read More about Malware found in Solana npm library raises the bar for crypto security
Malware found in Solana npm library raises the bar for crypto security
net catching fish in tank
December 3, 2024

.Net Devs Can Now Vet NuGet Packages with the Spectra Assure Community

The RL community's search interface allows software development teams to quickly assess risk before choosing or updating open source NuGet packages.

Read More about .Net Devs Can Now Vet NuGet Packages with the Spectra Assure Community
.Net Devs Can Now Vet NuGet Packages with the Spectra Assure Community
construction worker climbing stairway into sky
December 3, 2024

The state of AppSec tooling: Step up to modern software security

Organizations are struggling with outdated tools. Here's what you need to know about modernizing your AppSec tooling for today's supply chain threats.

Read More about The state of AppSec tooling: Step up to modern software security
The state of AppSec tooling: Step up to modern software security
elephant crossing street sign
December 2, 2024

Why shift left alone can't manage your software risk

The state of application security was on the agenda at the Elephant in AppSec Conference. One clear takeaway: Modern threats demand an all-in approach.

Read More about Why shift left alone can't manage your software risk
Why shift left alone can't manage your software risk
caution wet floor sign
December 2, 2024

Software liability gets real: 5 ways to get ahead of the EU's new directive

Here's what your organization needs to know about the Product Liability Directive — and how to avoid any slip-ups.

Read More about Software liability gets real: 5 ways to get ahead of the EU's new directive
Software liability gets real: 5 ways to get ahead of the EU's new directive
Previous1...141516...55Next

Topics

All Blog PostsAppSec & Supply Chain SecurityDev & DevSecOpsProducts & TechnologySecurity OperationsThreat Research

Follow us

XX / TwitterLinkedInLinkedInFacebookFacebookInstagramInstagramYouTubeYouTubeblueskyBluesky

Subscribe

Get the best of RL Blog delivered to your in-box weekly. Stay up to date on key trends, analysis and best practices across threat intelligence and software supply chain security.

ReversingLabs: The More Powerful, Cost-Effective Alternative to VirusTotalSee Why
Skip to main content
Contact UsSupportLoginBlogCommunity
reversinglabsReversingLabs: Home
Solutions
Secure Software OnboardingSecure Build & ReleaseProtect Virtual MachinesIntegrate Safe Open SourceGo Beyond the SBOM
Increase Email Threat ResilienceDetect Malware in File Shares & StorageAdvanced Malware Analysis SuiteICAP Enabled Solutions
Scalable File AnalysisHigh-Fidelity Threat IntelligenceCurated Ransomware FeedAutomate Malware Analysis Workflows
Products & Technology
Spectra Assure®Software Supply Chain SecuritySpectra DetectHigh-Speed, High-Volume, Large File AnalysisSpectra AnalyzeIn-Depth Malware Analysis & Hunting for the SOCSpectra IntelligenceAuthoritative Reputation Data & Intelligence
Spectra CoreIntegrations
Industry
Energy & UtilitiesFinanceHealthcareHigh TechPublic Sector
Partners
Become a PartnerValue-Added PartnersTechnology PartnersMarketplacesOEM Partners
Alliances
Resources
BlogContent LibraryCybersecurity GlossaryConversingLabs PodcastEvents & WebinarsLearning with ReversingLabsWeekly Insights Newsletter
Customer StoriesDemo VideosDocumentationOpenSource YARA Rules
Company
About UsLeadershipCareersSeries B Investment
EventsRL at RSAC
Press ReleasesIn the News
Pricing
Software Supply Chain SecurityMalware Analysis and Threat Hunting
Request a demo
Menu

Spectra Assure Free Trial

Get your 14-day free trial of Spectra Assure for Software Supply Chain Security

Get Free TrialMore about Spectra Assure Free Trial
Blog
Events
About Us
Webinars
In the News
Careers
Demo Videos
Cybersecurity Glossary
Contact Us
reversinglabsReversingLabs: Home
Privacy PolicyCookiesImpressum
All rights reserved ReversingLabs © 2026
XX / TwitterLinkedInLinkedInFacebookFacebookInstagramInstagramYouTubeYouTubeblueskyBlueskyRSSRSS
Back to Top