RL Blog
SSCS Report 2026: 2025 Retrospective

RL SSCS Report: A 2025 retrospective

ReversingLabs looked at last year’s Software Supply Chain Security Report in the rear-view mirror. Here’s what RL got right — and wrong.

Read More about RL SSCS Report: A 2025 retrospective
RL SSCS Report: A 2025 retrospective
Researchers Notebook

Inside the EmEditor supply chain compromise

By combining early infrastructure detection with supply chain security controls you can give your defenders a leg up.

Read More about Inside the EmEditor supply chain compromise
Inside the EmEditor supply chain compromise
AI coding new life for Rust

How AI coding is breathing new life into Rust 

AI tools are making Rust a favorite language of developers — even those maintaining codebases like Microsoft’s.

Read More about How AI coding is breathing new life into Rust 
How AI coding is breathing new life into Rust 
SSCS Report 2026: Guidance timeline

RL SSCS Report 2026: A guidance timeline

Here are the guidelines, mandates, frameworks, and goals that have refined software supply chain security policy.

Read More about RL SSCS Report 2026: A guidance timeline
RL SSCS Report 2026: A guidance timeline
SSCS Report 2026 key takeaways

RL SSCS Report 2026: 5 key takeaways

OSS and dev tools are targets as AI risk rises. Learn more in the Software Supply Chain Security Report 2026.

Read More about RL SSCS Report 2026: 5 key takeaways
RL SSCS Report 2026: 5 key takeaways
Open-source software (OSS)

Anthropic’s PSF investment: Why it matters

Here’s what the $1.5M investment in the Python Software Foundation will mean for AI coding and open-source security.

Read More about Anthropic’s PSF investment: Why it matters
Anthropic’s PSF investment: Why it matters
AppSec is a journey

SSDF 1.2 sees AppSec as a journey

NIST has broadened the Secure Software Development Framework to include the full SDLC. Here’s why it matters.

Read More about SSDF 1.2 sees AppSec as a journey
SSDF 1.2 sees AppSec as a journey
SBOM: check

Mandatory SBOMs: Why CRA matters

The EU’s Cyber Resilience Act legally obliges software producers to create and maintain an SBOM. Are you prepared?

Read More about Mandatory SBOMs: Why CRA matters
Mandatory SBOMs: Why CRA matters
AI adoption guardrails

Why governance is key to safe AI adoption

A new CSA report stresses getting out in front of AI risk — and why it matters for SecOps.

Read More about Why governance is key to safe AI adoption
Why governance is key to safe AI adoption
Shai-hulud worm DevOps

Shai-hulud post-mortem: A call to action on AppSec

Trigger.dev's experience shows that you need modern controls to combat today's supply chain attacks.

Read More about Shai-hulud post-mortem: A call to action on AppSec
Shai-hulud post-mortem: A call to action on AppSec
Adversarial AI rise

Adversarial AI is on the rise: What you need to know

Researchers explain that as threat actors move to AI-enabled malware in active operations, existing defenses will fail.

Read More about Adversarial AI is on the rise: What you need to know
Adversarial AI is on the rise: What you need to know
Supply chain risk and insurance

How supply chain risk can affect cyber insurance

Gaining visibility into supply chain threats — and adding controls for software risk — are essential to insurability.

Read More about How supply chain risk can affect cyber insurance
How supply chain risk can affect cyber insurance
AI technical debt

AI technical debt: What it is — and why it matters

AI platforms exacerbate existing security risks. Here’s what you need to know to stay out of technical debt. 

Read More about AI technical debt: What it is — and why it matters
AI technical debt: What it is — and why it matters
RL-Researcher's-Notebook

Unpacking the packer ‘pkr_mtsi’

This RL Researcher’s Notebook highlights the packer’s evolution — and offers a YARA rule to detect all versions.

Read More about Unpacking the packer ‘pkr_mtsi’
Unpacking the packer ‘pkr_mtsi’
Software factory

SF² aims to help you scale SecOps wisely 

The Software Factory Security Framework eyes scaling SecOps as a resource problem — not just head count.

Read More about SF² aims to help you scale SecOps wisely 
SF² aims to help you scale SecOps wisely 
Previous1...678...59Next

Topics

All Blog PostsAppSec & Supply Chain SecurityDev & DevSecOpsProducts & TechnologySecurity OperationsThreat Research
Mario Vuksan

Gartner® Named RL a Software Supply Chain Security Visionary. Here’s What We See Coming

The first Magic Quadrant™ for Software Supply Chain Security comes as, we feel, the demand for greater supply chain visibility explodes.

Read More about Gartner® Named RL a Software Supply Chain Security Visionary. Here’s What We See Coming
Gartner® Named RL a Software Supply Chain Security Visionary. Here’s What We See Coming

Follow us

XX / TwitterLinkedInLinkedInFacebookFacebookInstagramInstagramYouTubeYouTubeblueskyBluesky

Subscribe

Get the best of RL Blog delivered to your in-box weekly. Stay up to date on key trends, analysis and best practices across threat intelligence and software supply chain security.

The inaugural Gartner® Magic Quadrant™ for Software Supply Chain Security is outGET THE REPORT
Skip to main content
Contact UsSupportBlogCommunity
reversinglabsReversingLabs: Home
Solutions
Secure Software OnboardingSecure Build & ReleaseVerify AI Supply ChainIntegrate Safe Open SourceGo Beyond the SBOM
Increase Email Threat ResilienceDetect Malware in File Shares & StorageAdvanced Malware Analysis SuiteICAP Enabled Solutions
Scalable File AnalysisHigh-Fidelity Threat IntelligenceCurated Ransomware FeedAutomate Malware Analysis Workflows
Products & Technology
Spectra Assure®Software Supply Chain SecuritySpectra DetectHigh-Speed, High-Volume, Large File AnalysisSpectra AnalyzeIn-Depth Malware Analysis & Hunting for the SOCSpectra IntelligenceAuthoritative Reputation Data & Intelligence
Spectra CoreIntegrations
Industry
Energy & UtilitiesFinanceHealthcareHigh TechPublic Sector
Partners
Become a PartnerValue-Added PartnersTechnology PartnersMarketplacesOEM Partners
Alliances
Resources
BlogContent LibraryCybersecurity GlossaryConversingLabs PodcastEvents & WebinarsLearning with ReversingLabsWeekly Insights Newsletter
Customer StoriesDemo VideosDocumentationOpenSource YARA Rules
Company
About UsLeadershipCareersSeries B Investment
EventsBlack Hat 2026
Press ReleasesIn the News
Pricing
Software Supply Chain SecurityMalware Analysis and Threat Hunting
Request a demo
Menu

Spectra Assure Free Trial

Get your 14-day free trial of Spectra Assure for Software Supply Chain Security

Get Free TrialMore about Spectra Assure Free Trial
Blog
Events
About Us
Webinars
In the News
Careers
Demo Videos
Cybersecurity Glossary
Contact Us
reversinglabsReversingLabs: Home
Privacy PolicyCookiesImpressum
All rights reserved ReversingLabs © 2026
XX / TwitterLinkedInLinkedInFacebookFacebookInstagramInstagramYouTubeYouTubeblueskyBlueskyRSSRSS
Back to Top