RL Blog

Topics

All Blog PostsAppSec & Supply Chain SecurityDev & DevSecOpsProducts & TechnologySecurity OperationsThreat Research

Follow us

XX / TwitterLinkedInLinkedInFacebookFacebookInstagramInstagramYouTubeYouTubeblueskyBluesky

Subscribe

Get the best of RL Blog delivered to your in-box weekly. Stay up to date on key trends, analysis and best practices across threat intelligence and software supply chain security.

ReversingLabs: The More Powerful, Cost-Effective Alternative to VirusTotalSee Why
Skip to main content
Contact UsSupportLoginBlogCommunity
reversinglabsReversingLabs: Home
Solutions
Secure Software OnboardingSecure Build & ReleaseProtect Virtual MachinesIntegrate Safe Open SourceGo Beyond the SBOM
Increase Email Threat ResilienceDetect Malware in File Shares & StorageAdvanced Malware Analysis SuiteICAP Enabled Solutions
Scalable File AnalysisHigh-Fidelity Threat IntelligenceCurated Ransomware FeedAutomate Malware Analysis Workflows
Products & Technology
Spectra Assure®Software Supply Chain SecuritySpectra DetectHigh-Speed, High-Volume, Large File AnalysisSpectra AnalyzeIn-Depth Malware Analysis & Hunting for the SOCSpectra IntelligenceAuthoritative Reputation Data & Intelligence
Spectra CoreIntegrations
Industry
Energy & UtilitiesFinanceHealthcareHigh TechPublic Sector
Partners
Become a PartnerValue-Added PartnersTechnology PartnersMarketplacesOEM Partners
Alliances
Resources
BlogContent LibraryCybersecurity GlossaryConversingLabs PodcastEvents & WebinarsLearning with ReversingLabsWeekly Insights Newsletter
Customer StoriesDemo VideosDocumentationOpenSource YARA Rules
Company
About UsLeadershipCareersSeries B Investment
EventsRL at RSAC
Press ReleasesIn the News
Pricing
Software Supply Chain SecurityMalware Analysis and Threat Hunting
Request a demo
Menu
Products & TechnologyMay 10, 2021

ReversingLabs Launches Managed Software Assurance Program

The rise of software supply chain attacks, with SolarWinds SunBurst being the most notable, has elevated this issue with every board of directors for every company that’s producing or accepting software.

FacebookFacebookXX / TwitterLinkedInLinkedInblueskyBlueskyEmail Us
ReversingLabs Launches Managed Software Assurance Program

The strategic importance of addressing the security of software, the very code that controls our daily lives - our banking systems and ATMs, medical records, utilities and even our connected homes and cars - cannot be understated. The world moves at a faster pace each day. Which is why the software industry puts a significant amount of pressure on software development to keep up with these increasing demands. There’s a need to get product releases out the door quickly, and without compromising on the quality. Software security is an expectation, not a feature that can be pushed down on the roadmap.

Malicious actors have noticed this pressure as well. They are now actively targeting software developers and publishers, with a new level of sophistication and patience. Looking for weaknesses to exploit, subvert the established trust, and gain unauthorized access through an unchecked software supply chain.

In response, ReversingLabs is announcing the launch of its Managed Software Assurance Service to assist companies in mitigating against future software supply chain attacks. On the forefront of hunting down the source of the SunBurst supply chain breach, as well as sounding earlier alerts on Python, NPM and RubyGems supply chain attacks, ReversingLabs is offering new SDLC security solutions, and additional managed services to further assist organizations in their fight against supply chain attacks.

Introducing the ReversingLabs Managed Software Assurance Service

The service is built on the foundation of ReversingLabs Titanium Platform, and provides advanced analysis of software packages, interpretation and audit tracking. Application security teams, developers, or release engineers upload software packages requiring analysis by ReversingLabs leveraging a secure channel. The resulting report (see Figure 1) enables you to understand software quality at a glance with an overview dashboard.

Sample report overview.

Figure 1: Sample report overview.
Fully interactive sample reports are available at https://www.secure.software/

The report tabs deliver additional insights needed to improve and assure the software package behaves in a trustworthy manner, such as:

  • Description of full software bill of materials extracted with recursive package decomposition
  • Components are verified if they are found in our file reputation dbs or trusted repositories
  • Have correct version information, and have no malware
  • Software quality issues, malware threats, vulnerability mitigation coverage, data protection issues, and malicious behavior uncovered by deep inspection and advanced analysis
  • An audit report with explainable insights in both machine-readable and human-readable formatting for all embedded files

This managed service also includes a review session with one of ReversingLabs research analysts to help teams:

  • Understand the reported results
  • Obtain guidance on remediating software supply chain issues
  • Prioritize and monitor remediation efforts
Find risks your AppSec tools cant verify today
Find risks your AppSec tools cant verify today


Learn more about ReversingLabs Titanium PlatformTalk with an expert

Explore RL's Spectra suite: Spectra Assure for software supply chain security, Spectra Detect for scalable file analysis, Spectra Analyze for malware analysis and threat hunting, and Spectra Intelligence for reputation data and intelligence.


Explore RL's Spectra suite: Spectra Assure for software supply chain security, Spectra Detect for scalable file analysis, Spectra Analyze for malware analysis and threat hunting, and Spectra Intelligence for reputation data and intelligence.

Tags:Products & Technology

More Blog Posts

QR Code Phishing Is Evolving: Here’s How Your Detection Can Keep Up

QR Code Phishing Evolves: How to Keep Up

Here's what you need to know about the rise of quishing — and how your threat hunting team can get out in front of it.

Learn More about QR Code Phishing Evolves: How to Keep Up
QR Code Phishing Evolves: How to Keep Up
Why RL Built Spectra Assure Community

Why RL Built Spectra Assure Community

We set out to help dev and AppSec teams secure the village: OSS dependencies, malware, more. Learn how.

Learn More about Why RL Built Spectra Assure Community
Why RL Built Spectra Assure Community
How a Simple YARA Rule Catches What AV Misses

ClickFix: YARA Rules Catch What AV Misses

Learn about the antivirus detection gap — and how to develop a simple YARA rule using Spectra Analyze.

Learn More about ClickFix: YARA Rules Catch What AV Misses
ClickFix: YARA Rules Catch What AV Misses
Polyglot File Examination with Spectra Analyze

How to Examine Polyglot Files with Spectra Analyze

Here's how to assess a sample using Spectra Analyze in your environment — and create a YARA rule.

Learn More about How to Examine Polyglot Files with Spectra Analyze
How to Examine Polyglot Files with Spectra Analyze

Spectra Assure Free Trial

Get your 14-day free trial of Spectra Assure for Software Supply Chain Security

Get Free TrialMore about Spectra Assure Free Trial
Blog
Events
About Us
Webinars
In the News
Careers
Demo Videos
Cybersecurity Glossary
Contact Us
reversinglabsReversingLabs: Home
Privacy PolicyCookiesImpressum
All rights reserved ReversingLabs © 2026
XX / TwitterLinkedInLinkedInFacebookFacebookInstagramInstagramYouTubeYouTubeblueskyBlueskyRSSRSS
Back to Top