
Groundhog day: NPM package caught stealing browser passwords
This blog discusses the process used to find another NPM package that steals saved Chrome browser passwords.

This blog discusses the process used to find another NPM package that steals saved Chrome browser passwords.

Recognizing risks introduced by statically linked third-party libraries

Extend Your Integrations and Enrich Your Workflows Using Python

The rise of software supply chain attacks, with SolarWinds SunBurst being the most notable, has elevated this issue with every board of directors for every company that’s producing or accepting software.

They say there’s no such thing as bad press, but getting name recognition for a data breach never feels good. Enter Codecov.

Relying on legacy functionalities comes with inherent security risks

One of the core tenets of computer science is code reuse.


How to Rebuild Trust in the SDLC and 3rd Party Software Supply Chain

The SunBurst supply chain attack, which was behind the breach of SolarWinds, took sophistication and patience.

Welcome to the latest edition of The Week in Security, which brings you the newest headlines from both the world and our team across the full stack of security: application security, cybersecurity, and beyond.

ReversingLabs and Sophos partner to bring high-quality threat intelligence to security practitioners and data scientists
Get your 14-day free trial of Spectra Assure
Get Free TrialMore about Spectra Assure Free Trial