RL Blog

Spectra Assure Free Trial

Get your 14-day free trial of Spectra Assure for Software Supply Chain Security

Get Free TrialMore about Spectra Assure Free Trial
Blog
Events
About Us
Webinars
In the News
Careers
Demo Videos
Cybersecurity Glossary
Contact Us
reversinglabsReversingLabs: Home
Privacy PolicyCookiesImpressum
All rights reserved ReversingLabs © 2026
XX / TwitterLinkedInLinkedInFacebookFacebookInstagramInstagramYouTubeYouTubeblueskyBlueskyRSSRSS
Back to Top
The inaugural Gartner® Magic Quadrant™ for Software Supply Chain Security is outGET THE REPORT
Skip to main content
Contact UsSupportBlogCommunity
reversinglabs
ReversingLabs: Home
Solutions
Secure Software OnboardingSecure Build & ReleaseVerify AI Supply ChainIntegrate Safe Open SourceGo Beyond the SBOM
Increase Email Threat ResilienceDetect Malware in File Shares & StorageAdvanced Malware Analysis SuiteICAP Enabled Solutions
Scalable File AnalysisHigh-Fidelity Threat IntelligenceCurated Ransomware FeedAutomate Malware Analysis Workflows
Products & Technology
Spectra Assure®Software Supply Chain SecuritySpectra DetectHigh-Speed, High-Volume, Large File AnalysisSpectra AnalyzeIn-Depth Malware Analysis & Hunting for the SOCSpectra IntelligenceAuthoritative Reputation Data & Intelligence
Spectra CoreIntegrations
Industry
Energy & UtilitiesFinanceHealthcareHigh TechPublic Sector
Partners
Become a PartnerValue-Added PartnersTechnology PartnersMarketplacesOEM Partners
Alliances
Resources
BlogContent LibraryCybersecurity GlossaryConversingLabs PodcastEvents & WebinarsLearning with ReversingLabsWeekly Insights Newsletter
Customer StoriesDemo VideosDocumentationOpenSource YARA Rules
Company
About UsLeadershipCareersSeries B Investment
Events
Press ReleasesIn the News
Pricing
Software Supply Chain SecurityMalware Analysis and Threat Hunting
Request a demo
Menu
Products & TechnologyMay 10, 2021

ReversingLabs Launches Managed Software Assurance Program

The rise of software supply chain attacks, with SolarWinds SunBurst being the most notable, has elevated this issue with every board of directors for every company that’s producing or accepting software.

FacebookFacebookXX / TwitterLinkedIn
LinkedIn
blueskyBluesky
Email Us

The strategic importance of addressing the security of software, the very code that controls our daily lives - our banking systems and ATMs, medical records, utilities and even our connected homes and cars - cannot be understated. The world moves at a faster pace each day. Which is why the software industry puts a significant amount of pressure on software development to keep up with these increasing demands. There’s a need to get product releases out the door quickly, and without compromising on the quality. Software security is an expectation, not a feature that can be pushed down on the roadmap.

Malicious actors have noticed this pressure as well. They are now actively targeting software developers and publishers, with a new level of sophistication and patience. Looking for weaknesses to exploit, subvert the established trust, and gain unauthorized access through an unchecked software supply chain.

In response, ReversingLabs is announcing the launch of its Managed Software Assurance Service to assist companies in mitigating against future software supply chain attacks. On the forefront of hunting down the source of the SunBurst supply chain breach, as well as sounding earlier alerts on Python, NPM and RubyGems supply chain attacks, ReversingLabs is offering new SDLC security solutions, and additional managed services to further assist organizations in their fight against supply chain attacks.

Introducing the ReversingLabs Managed Software Assurance Service

The service is built on the foundation of ReversingLabs Titanium Platform, and provides advanced analysis of software packages, interpretation and audit tracking. Application security teams, developers, or release engineers upload software packages requiring analysis by ReversingLabs leveraging a secure channel. The resulting report (see Figure 1) enables you to understand software quality at a glance with an overview dashboard.

Figure 1: Sample report overview.
Fully interactive sample reports are available at https://www.secure.software/

The report tabs deliver additional insights needed to improve and assure the software package behaves in a trustworthy manner, such as:

  • Description of full software bill of materials extracted with recursive package decomposition
  • Components are verified if they are found in our file reputation dbs or trusted repositories
  • Have correct version information, and have no malware
  • Software quality issues, malware threats, vulnerability mitigation coverage, data protection issues, and malicious behavior uncovered by deep inspection and advanced analysis
  • An audit report with explainable insights in both machine-readable and human-readable formatting for all embedded files

This managed service also includes a review session with one of ReversingLabs research analysts to help teams:

  • Understand the reported results
  • Obtain guidance on remediating software supply chain issues
  • Prioritize and monitor remediation efforts
Find risks your AppSec tools cant verify today


Learn more about ReversingLabs Titanium PlatformTalk with an expert

Explore RL's Spectra suite: Spectra Assure for software supply chain security, Spectra Detect for scalable file analysis, Spectra Analyze for malware analysis and threat hunting, and Spectra Intelligence for reputation data and intelligence.

Tags:Products & Technology

More Blog Posts

Follow us

XX / TwitterLinkedInLinkedInFacebookFacebookInstagram
ReversingLabs Launches Managed Software Assurance Program

Join the free Spectra Assure Community today to get hands-on with RL's binary analysis-based software supply chain security platform.

Keep learning

  • Get up to speed on the agentic SOC in this webinar: Autonomy, Not Autopilot: Talking Agentic SOC. Plus: Learn about the new Agentic SOC Alliance.
  • Get all of RL's malware analysis and threat hunting updates with this H1 product update post — and join the webinar to discuss what a modern SOC looks like.
  • Get on top of Malware-as-a-Service with RL's report, "Copy, Paste, Compromise: The Tale of ClickFix" — and grab the related YARA rule.
  • Learn how Gartner® named RL a supply chain security 'visionary.' Download: Gartner® Magic Quadrant™ for Software Supply Chain Security.
  • Update your understanding of the Agentic Development Security tools landscape in this webinar with Forrester Sr. Analyst Janet Worthington.
  • Take a deep dive on the state of software security with RL's Software Supply Chain Security Report 2026. Plus: See the .
Instagram
YouTubeYouTube
blueskyBluesky
the webinar discussing the findings

Explore RL's Spectra suite: Spectra Assure for software supply chain security, Spectra Detect for scalable file analysis, Spectra Analyze for malware analysis and threat hunting, and Spectra Intelligence for reputation data and intelligence.

Sample report overview.
Find risks your AppSec tools cant verify today

Subscribe

Get the best of RL Blog delivered to your in-box weekly. Stay up to date on key trends, analysis and best practices across threat intelligence and software supply chain security.

Related

How to Leverage Spectra Analyze's Search for SVG AnalysisRL Malware Analysis and Threat Hunting Updates for H1 2026Hunting Device Code Phishing Pages

How to Leverage Spectra Analyze's Search for SVG Analysis

Here's how to use Spectra Analyze to hunt for malicious SVGs, from setting up queries and evaluations of samples to tips for investigation.

Learn More about How to Leverage Spectra Analyze's Search for SVG Analysis
How to Leverage Spectra Analyze's Search for SVG Analysis

RL Malware Analysis and Threat Hunting Updates for H1 2026

Spectra Detect is now Kubernetes-native. Spectra Analyze adds AI workflows for the agentic SOC. Here's everything that shipped.

Learn More about RL Malware Analysis and Threat Hunting Updates for H1 2026
RL Malware Analysis and Threat Hunting Updates for H1 2026

Hunting Device Code Phishing Pages

RL recently discovered active Microsoft 365 device code phishing. Here's a walkthrough of how our researchers found the campaign.

Learn More about Hunting Device Code Phishing Pages
Hunting Device Code Phishing Pages
Leveraging the Spectra Analyze Search Function for SVG Analysis
MATH H1 2026
Spectra Analyze in Action: Hunting Device Code Phishing Pages

Topics

All Blog PostsAppSec & Supply Chain SecurityDev & DevSecOpsProducts & TechnologySecurity OperationsThreat Research