
What’s hot at RSA Conference 2023: 8 must-see software supply chain security talks
Software supply chain security is taking center-stage at RSAC 2023. Here are the talks you don't want to miss.

Software supply chain security is taking center-stage at RSAC 2023. Here are the talks you don't want to miss.

Secrets are increasingly exposed during software development, creating a field-day for malicious actors. Here are key takeaways from our special report series, Secrets Exposed.

The Python Software Foundation is very, very unhappy with the draft Cyber Resilience Act (CRA) and Product Liability Act (PLA).

There is so much to take in at RSAC. Cut through the noise with our list of threat-focused talks you don't want to miss.

Here's what the Open Software Supply Chain Attack Reference (OSC&R) framework move means in the short run — and long term.

Welcome to the latest edition of The Week in Security, which brings you the newest headlines from both the world and our team across the full stack of security: application security, cybersecurity, and beyond.

Déjà vu, but carry protection, dev teams traveling with credentials: Public-USB hacks could finally have gone rogue, per the FBI.

Here's why some security practitioners question the term — and what they think app sec teams should focus on instead.

Experts break down the incident, and explain how app sec tools are evolving to detect and prevent such attacks.

Research connects the rise of AI tools and an increase in social engineering attacks. Also: A stolen credentials site is seized.

CPGs are now better aligned with NIST's Cybersecurity Framework (CSF), and supply chain goals have been added. MFA guidance is also new.

First, Twitter's source code was leaked. Then it open-sourced its ranking algorithm. Should we worry about the unintended consequences of “transparency”?

Here's what you need to know about BuildKit and its Supply Chain Levels for Software Artifacts (SLSA) provenance capabilities for SBOMs.

The compromise was limited to their app. But there's a bigger lesson: Supply chain security complacency comes with a cost.

Here's how robust threat hunting and malware analysis can enhance your triage process — and help you get a handle on software supply chain security.
Get your 14-day free trial of Spectra Assure
Get Free TrialMore about Spectra Assure Free Trial