
OWASP researcher: Supply chain attacks require going beyond vulnerabilities
Jeremy Long, who founded OWASP's Dependency Check Program, urges organizations to shift from traditional AppSec testing to tools that can remediate malicious threats.

Jeremy Long, who founded OWASP's Dependency Check Program, urges organizations to shift from traditional AppSec testing to tools that can remediate malicious threats.

Stealthy Connections: The Rising Threat of Cloudflare Tunnel Abuse in Cyber Attacks

Deep learning model knows what keys you press — “with 95% accuracy.” The password's days are numbered.

To manage risk, you need to trust the software you produce or consume — and that requires verification, provided by modern tools and a holistic approach.

Black Hat USA is a showcase for top security experts and companies. Here's our short list of must-see sessions for 2023.

Every summer, teams congregate in Las Vegas to talk about all things cybersecurity. ReversingLabs has a lot going on. Here’s what we're up to at BSides, Black Hat, and DEF CON.

Welcome to the latest edition of The Week in Security, which brings you the newest headlines from both the world and our team across the full stack of security: application security, cybersecurity, and beyond.

ReversingLabs threat researchers have identified a new malicious PyPI campaign that includes a suspicious VMConnect package published to the PyPI repo.

Your app sec team should factor in more capable malicious AI tools, coming soon.

Here's why the Rust Foundation Security Initiative's audit and resulting new tooling matter for secure coding — and software supply chain security.

Here's how to enrich your (SecOps) life with TitaniumCloud APIs focused specifically on file enrichment available in the Azure Marketplace for Microsoft Sentinel.

Selling for $1,000 on the dark web, the email fraud tool leverages generative AI to improve cybercriminals' effectiveness.

ReversingLabs researchers uncovered evidence of more malicious npm packages beyond those already disclosed — and conclude that the attack is still active.

Welcome to the latest edition of The Week in Security, which brings you the newest headlines from both the world and our team across the full stack of security: application security, cybersecurity, and beyond.

Traditional application security can't defend against today's attacks. Our report explains why — and why you need to upgrade your AppSec strategy.
Get your 14-day free trial of Spectra Assure for Software Supply Chain Security
Get Free TrialMore about Spectra Assure Free Trial