
The Gigabyte firmware backdoor: Lessons learned about supply chain security
Firmware attacks can pose a substantial risk to the software supply chain. Here's what your software security team can learn from the latest compromise.

Firmware attacks can pose a substantial risk to the software supply chain. Here's what your software security team can learn from the latest compromise.

Welcome to the latest edition of The Week in Security, which brings you the newest headlines from both the world and our team across the full stack of security: application security, cybersecurity, and beyond.

ReversingLabs Field CISO Matt Rose explains the difference between application security hacks and software supply chain hacks.

Compiled-code behavior analysis beats old-skool app sec tools.

Your security operations team should be planning how to stay ahead of these emerging AI risks.

ConversingLabs caught up with Chris Romeo of Kerr Ventures at RSA Conference 2023 to talk about the state of application security. Watch (or listen) — and learn.

Welcome to the latest edition of The Week in Security, which brings you the newest headlines from both the world and our team across the full stack of security

The ReversingLabs research team has identified a novel attack on PyPI using compiled Python code to evade detection — possibly the first attack to take advantage of PYC file direct execution.

Experts warn ChatGPT-based coding could do to us what an asteroid did to the dinosaurs. Hype — or heads-up to reckon with?

Nvidia's tool is among the first to promise to manage the risk from generative AI. Here's what it can do — and an analysis of the scope of risk from AI.

The new Chief Operating Officer at ReversingLabs talks about the challenge of securing software supply chains — and the promise ReversingLabs offers.

Welcome to the latest edition of The Week in Security, which brings you the newest headlines from both the world and our team across the full stack of security: Application security, cybersecurity, and beyond.

In a recent survey, 300 IT and software pros were asked about the state of software supply chain security. Here are takeaways from a webinar discussion.

John Jackson and his Sakura Samurai crew took India up on an invitation to test the security of government websites and apps. Here are the lessons learned.

The Python repo was flooded with malicious typo-squatting packages. Weekend warriors quit defense and hit pause.
Get your 14-day free trial of Spectra Assure
Get Free TrialMore about Spectra Assure Free Trial