<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>ReversingLabs Blog</title>
    <link>https://www.reversinglabs.com/blog</link>
    <description>Latest blog posts from ReversingLabs</description>
    <language>en-US</language>
    <pubDate>Wed, 16 Sep 2026 02:00:51 GMT</pubDate>
    <dc:date>2026-09-16T02:00:51.237Z</dc:date>
    <dc:language>en</dc:language>
    <lastBuildDate>Wed, 16 Sep 2026 02:00:51 GMT</lastBuildDate>
    <atom:link href="https://www.reversinglabs.com/blog/rss.xml" rel="self" type="application/rss+xml" />
    
    <item>
      <title><![CDATA[AI coding puts Secure by Design in the spotlight]]></title>
      <link>https://www.reversinglabs.com/blog/ai-secure-by-design-spotlight</link>
      <guid>https://www.reversinglabs.com/blog/ai-secure-by-design-spotlight</guid>
      <pubDate>Tue, 15 Sep 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-09-15T15:00:00.000Z</dc:date>
      <description><![CDATA[The software industry is entering the AI era burdened by legacy flaws and weaknesses, making Secure by Design essential.]]></description>
      <dc:creator><![CDATA[Jaikumar Vijayan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Blog%20AI%20puts%20Secure%20by%20Design%20in%20the%20spotlight.png" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Rubrik + RL: Bring Threat Intelligence and Detection to Backups]]></title>
      <link>https://www.reversinglabs.com/blog/rubrik-rl-threat-intelligence-ransomware-backups</link>
      <guid>https://www.reversinglabs.com/blog/rubrik-rl-threat-intelligence-ransomware-backups</guid>
      <pubDate>Thu, 10 Sep 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-09-10T15:00:00.000Z</dc:date>
      <description><![CDATA[With this integration, Rubrik users can now tap ReversingLabs' ransomware feed to decide whether each file in their backup is safe.]]></description>
      <dc:creator><![CDATA[Jim Wojno]]></dc:creator>
      <author><![CDATA[jim.wojno@reversinglabs.com (Jim Wojno)]]></author>
      <enclosure url="https://www.reversinglabs.com/api/media/file/reversinglabs-rubrik-blog.webp" type="image/jpeg" />
      <category><![CDATA[Products & Technology]]></category>
    </item>
    <item>
      <title><![CDATA[OpenAI: Hugging Face mob agent incident is 'a warning shot']]></title>
      <link>https://www.reversinglabs.com/blog/openai-hugging-face-warning-shot</link>
      <guid>https://www.reversinglabs.com/blog/openai-hugging-face-warning-shot</guid>
      <pubDate>Wed, 09 Sep 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-09-09T15:00:00.000Z</dc:date>
      <description><![CDATA[The post-mortem reaches sobering conclusions, and demands a plan of action for the AI industry — plus your SecOps strategy.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/OpenAI-Hugging-Face-Incident-Blog.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[AI summary attack conceals code that tampers with LLMs]]></title>
      <link>https://www.reversinglabs.com/blog/ai-summary-attack-conceals-code-that-tampers-with-llms</link>
      <guid>https://www.reversinglabs.com/blog/ai-summary-attack-conceals-code-that-tampers-with-llms</guid>
      <pubDate>Tue, 08 Sep 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-09-08T15:00:00.000Z</dc:date>
      <description><![CDATA[Research confirms email summary design flaws — and that any unverified content is an attack vector, so invest in threat intel.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/AI-summary-attack-conceals-code-that-tampers-with-LLMs-Blog.webp" type="image/jpeg" />
      <category><![CDATA[Security Operations]]></category>
    </item>
    <item>
      <title><![CDATA[Best Enterprise File Scanning Tools of 2026]]></title>
      <link>https://www.reversinglabs.com/blog/best-enterprise-file-scanning-tools-of-2026</link>
      <guid>https://www.reversinglabs.com/blog/best-enterprise-file-scanning-tools-of-2026</guid>
      <pubDate>Thu, 03 Sep 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-09-03T15:00:00.000Z</dc:date>
      <description><![CDATA[This guide compares leading file security tools across connector coverage, throughput, file-size range, and file-type breadth.]]></description>
      <dc:creator><![CDATA[RL Research Team]]></dc:creator>
      <author><![CDATA[content@reversinglabs.com (RL Research Team)]]></author>
      <enclosure url="https://www.reversinglabs.com/api/media/file/CrowdStrike-Blog-Cover.png" type="image/jpeg" />
      <category><![CDATA[Products & Technology]]></category>
    </item>
    <item>
      <title><![CDATA[Get the Spectra Assure Community Plugin for JFrog Artifactory]]></title>
      <link>https://www.reversinglabs.com/blog/spectra-assure-community-plugin-for-jfrog-artifactory</link>
      <guid>https://www.reversinglabs.com/blog/spectra-assure-community-plugin-for-jfrog-artifactory</guid>
      <pubDate>Wed, 02 Sep 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-09-02T15:00:00.000Z</dc:date>
      <description><![CDATA[Package managers auto-pull the latest OSS version — malware included. Protect your pipelines with this free plugin.]]></description>
      <dc:creator><![CDATA[Dave Ferguson]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Stop-Malicious-Packages-with-the-Spectra-Assure-Community-Plugin-for-JFrog-Artifactory-Blog-Cover.webp" type="image/jpeg" />
      <category><![CDATA[Products & Technology]]></category>
    </item>
    <item>
      <title><![CDATA[How to build effective agentic SOCs: What you need to know]]></title>
      <link>https://www.reversinglabs.com/blog/how-to-build-effective-agentic-socs</link>
      <guid>https://www.reversinglabs.com/blog/how-to-build-effective-agentic-socs</guid>
      <pubDate>Tue, 01 Sep 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-09-01T15:00:00.000Z</dc:date>
      <description><![CDATA[ExtraHop's Kanaiya Vasani unpacks the concept of the agentic SOC — and how the Agentic SOC Alliance is working to build them out.]]></description>
      <dc:creator><![CDATA[Paul Roberts]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/How-to-build-effective-agentic-SOCs-Blog-Cover-1.png" type="image/jpeg" />
      <category><![CDATA[Security Operations]]></category>
    </item>
    <item>
      <title><![CDATA[Shai-Hulud worm arrests: Why this is not the end]]></title>
      <link>https://www.reversinglabs.com/blog/shai-hulud-worm-arrests-what-you-need-to-know</link>
      <guid>https://www.reversinglabs.com/blog/shai-hulud-worm-arrests-what-you-need-to-know</guid>
      <pubDate>Fri, 28 Aug 2026 17:00:00 GMT</pubDate>
      <dc:date>2026-08-28T17:00:00.000Z</dc:date>
      <description><![CDATA[The TeamPCP actors, alleged to be behind one of the most active supply chain threats, were arrested — but this is not the end of Shai-Hulud.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Shai-Hulud-worm-arrests-Blog-cover.webp" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Extend CrowdStrike Falcon with Permanent Intelligence]]></title>
      <link>https://www.reversinglabs.com/blog/extend-crowdstrike-falcon-with-permanent-intelligence</link>
      <guid>https://www.reversinglabs.com/blog/extend-crowdstrike-falcon-with-permanent-intelligence</guid>
      <pubDate>Thu, 27 Aug 2026 16:30:00 GMT</pubDate>
      <dc:date>2026-08-27T16:30:00.000Z</dc:date>
      <description><![CDATA[ReversingLabs built a Spectra Analyze integration with CrowdStrike Falcon. The connector is available now as part of Spectra Analyze v9.6.0.]]></description>
      <dc:creator><![CDATA[Richard Robitaille-Muffler]]></dc:creator>
      <author><![CDATA[richard.robitaille-muffler@reversinglabs.com (Richard Robitaille-Muffler)]]></author>
      <enclosure url="https://www.reversinglabs.com/api/media/file/CrowdStrike%20-%20Blog%20Cover.png" type="image/jpeg" />
      <category><![CDATA[Products & Technology]]></category>
    </item>
    <item>
      <title><![CDATA[Infostealers highlight malware-as-a-service trend]]></title>
      <link>https://www.reversinglabs.com/blog/infostealers-highlight-malware-as-a-service-trend</link>
      <guid>https://www.reversinglabs.com/blog/infostealers-highlight-malware-as-a-service-trend</guid>
      <pubDate>Wed, 26 Aug 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-08-26T15:00:00.000Z</dc:date>
      <description><![CDATA[Aurastealer, ACRStealer, and RemusStealer, a new potential LumaStealer variant, show MaaS in action. Here's what you need to know.]]></description>
      <dc:creator><![CDATA[Zaria Vuksan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Infostealers-highlight-MaaS-trend-Blog-Cover.webp" type="image/jpeg" />
      <category><![CDATA[Threat Research]]></category>
    </item>
    <item>
      <title><![CDATA[Agentic AI scales semiautonomous server attacks]]></title>
      <link>https://www.reversinglabs.com/blog/threat-actors-leverage-agentic-ai</link>
      <guid>https://www.reversinglabs.com/blog/threat-actors-leverage-agentic-ai</guid>
      <pubDate>Tue, 25 Aug 2026 16:00:00 GMT</pubDate>
      <dc:date>2026-08-25T16:00:00.000Z</dc:date>
      <description><![CDATA[UAT-10147 leveraged agentic AI to go beyond scripting to deliver a backdoor. The method highlights the need for agentic SOCs.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Agentic-AI-scales-semiautonomous-server-attacks.webp" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Why shadow AI is far riskier than shadow IT]]></title>
      <link>https://www.reversinglabs.com/blog/why-shadow-ai-is-far-riskier-than-shadow-it</link>
      <guid>https://www.reversinglabs.com/blog/why-shadow-ai-is-far-riskier-than-shadow-it</guid>
      <pubDate>Wed, 19 Aug 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-08-19T15:00:00.000Z</dc:date>
      <description><![CDATA[Organizations don’t realize how pervasive shadow AI has become. And as AI's capability grows, shadow use is harder to manage.]]></description>
      <dc:creator><![CDATA[Jaikumar Vijayan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Why-shadow-AI-is-far-riskier-than-shadow-IT-Blog.webp" type="image/jpeg" />
      <category><![CDATA[Artificial Intelligence (AI)/Machine Learning (ML)]]></category>
    </item>
    <item>
      <title><![CDATA[Why software delivery cannot depend on trust alone]]></title>
      <link>https://www.reversinglabs.com/blog/why-software-delivery-cannot-depend-on-trust-alone</link>
      <guid>https://www.reversinglabs.com/blog/why-software-delivery-cannot-depend-on-trust-alone</guid>
      <pubDate>Wed, 19 Aug 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-08-19T15:00:00.000Z</dc:date>
      <description><![CDATA[Attackers turned the trusted AsyncAPI CI/CD publishing pipeline against its users, and the provenance checks all came back clean.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Why%20software%20delivery%20cannot%20depend%20on%20trust%20alone%20-%20Blog%20cover.png" type="image/jpeg" />
      <category><![CDATA[Dev & DevSecOps]]></category>
    </item>
    <item>
      <title><![CDATA[Black Hat 2026: AI rewrites the rules of cybersecurity ]]></title>
      <link>https://www.reversinglabs.com/blog/black-hat-2026-ai-is-rewriting-the-rules-of-cybersecurity</link>
      <guid>https://www.reversinglabs.com/blog/black-hat-2026-ai-is-rewriting-the-rules-of-cybersecurity</guid>
      <pubDate>Tue, 18 Aug 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-08-18T15:00:00.000Z</dc:date>
      <description><![CDATA[The annual cybersecurity conference focused on frontier AI agents — and what they mean for cyber. Here are three key takeaways.]]></description>
      <dc:creator><![CDATA[Paul Roberts]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/ReversingLabs%20Black%20Hat%20Recap.png" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[AI worms are coming — and traditional controls won't stop them]]></title>
      <link>https://www.reversinglabs.com/blog/ai-worms-are-coming</link>
      <guid>https://www.reversinglabs.com/blog/ai-worms-are-coming</guid>
      <pubDate>Thu, 13 Aug 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-08-13T15:00:00.000Z</dc:date>
      <description><![CDATA[Researchers built a worm that reasons about hosts it infects, and the open-weight models powering it sit outside AI-provider safety controls.]]></description>
      <dc:creator><![CDATA[Paul Roberts]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/AI-worms-are-coming-Blog.webp" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[OWASP Top 10 for LLM Apps 2026: Excessive agency risk on the rise]]></title>
      <link>https://www.reversinglabs.com/blog/owasp-top-10-for-llm-apps-excessive-agency</link>
      <guid>https://www.reversinglabs.com/blog/owasp-top-10-for-llm-apps-excessive-agency</guid>
      <pubDate>Wed, 12 Aug 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-08-12T15:00:00.000Z</dc:date>
      <description><![CDATA[While prompt injection and data disclosure remain concerns, excessive agency climbed the list — not surprising with recent security incidents.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/OWASP-Top-10-for-LLM-Apps-2026.webp" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Frontier AI agents: Only as safe as their containment]]></title>
      <link>https://www.reversinglabs.com/blog/ai-agents-containment</link>
      <guid>https://www.reversinglabs.com/blog/ai-agents-containment</guid>
      <pubDate>Tue, 11 Aug 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-08-11T15:00:00.000Z</dc:date>
      <description><![CDATA[The post-mortems of two compromises by rogue AI agents show that security teams need to focus on guardrails, not the AI model.]]></description>
      <dc:creator><![CDATA[Jaikumar Vijayan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Frontier%20AI%20agents_%20Only%20as%20safe%20as%20their%20containment%20-%20Blog%20Cover.png" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[AI domain takeover takeaway: Focus on the harness not the model]]></title>
      <link>https://www.reversinglabs.com/blog/ai-domain-takeover-takeaway</link>
      <guid>https://www.reversinglabs.com/blog/ai-domain-takeover-takeaway</guid>
      <pubDate>Thu, 06 Aug 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-08-06T15:00:00.000Z</dc:date>
      <description><![CDATA[Research into an Active Directory takeover with a single AI prompt highlights why organizations need to focus on agentic SOCs.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/AI-domain-takeover-takeaway-Blog.webp" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[How to Leverage Spectra Analyze's Search for SVG Analysis]]></title>
      <link>https://www.reversinglabs.com/blog/spectra-analyze-search-function-for-svg-analysis</link>
      <guid>https://www.reversinglabs.com/blog/spectra-analyze-search-function-for-svg-analysis</guid>
      <pubDate>Wed, 05 Aug 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-08-05T15:00:00.000Z</dc:date>
      <description><![CDATA[Here's how to use Spectra Analyze to hunt for malicious SVGs, from setting up queries and evaluations of samples to tips for investigation.]]></description>
      <dc:creator><![CDATA[Zaria Vuksan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Hunting-Malicious-SVG-code-Spectra-Analyze.webp" type="image/jpeg" />
      <category><![CDATA[Products & Technology]]></category>
    </item>
    <item>
      <title><![CDATA[Why AI coding makes zero trust an AppSec requirement]]></title>
      <link>https://www.reversinglabs.com/blog/ai-zero-trust-appsec</link>
      <guid>https://www.reversinglabs.com/blog/ai-zero-trust-appsec</guid>
      <pubDate>Tue, 04 Aug 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-08-04T15:00:00.000Z</dc:date>
      <description><![CDATA[Traditional SBOMs, signing, and provenance all have blind spots, making them no longer capable of assuring software security.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/zero-trust-appsec.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Can Lean improve security for AI-coded software?]]></title>
      <link>https://www.reversinglabs.com/blog/can-lean-improve-security-for-ai-coded-software</link>
      <guid>https://www.reversinglabs.com/blog/can-lean-improve-security-for-ai-coded-software</guid>
      <pubDate>Thu, 30 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-30T15:00:00.000Z</dc:date>
      <description><![CDATA[AI coding requires the stack be reconstructed with mathematical proofs built in — a task well suited to the Lean language. Here’s the reality.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/lean-language.jpg" type="image/jpeg" />
      <category><![CDATA[Dev & DevSecOps]]></category>
    </item>
    <item>
      <title><![CDATA[RL Malware Analysis and Threat Hunting Updates for H1 2026]]></title>
      <link>https://www.reversinglabs.com/blog/rl-math-update-h1-2026</link>
      <guid>https://www.reversinglabs.com/blog/rl-math-update-h1-2026</guid>
      <pubDate>Thu, 30 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-30T15:00:00.000Z</dc:date>
      <description><![CDATA[Spectra Detect is now Kubernetes-native. Spectra Analyze adds AI workflows for the agentic SOC. Here's everything that shipped.]]></description>
      <dc:creator><![CDATA[Amy Pace]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/MATH-Updates-H1-2026-blog.webp" type="image/jpeg" />
      <category><![CDATA[Products & Technology]]></category>
    </item>
    <item>
      <title><![CDATA[AI coding agents: A call to action on dependency cooldowns]]></title>
      <link>https://www.reversinglabs.com/blog/ai-coding-agents-dependency-cooldowns</link>
      <guid>https://www.reversinglabs.com/blog/ai-coding-agents-dependency-cooldowns</guid>
      <pubDate>Tue, 28 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-28T15:00:00.000Z</dc:date>
      <description><![CDATA[Delaying software upgrades creates a buffer against poisoned packages, but transitive dependencies continue to be a problem.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/dependency-cooldown.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Security teams ditch AI-only pen testing]]></title>
      <link>https://www.reversinglabs.com/blog/automated-ai-pen-testing-out</link>
      <guid>https://www.reversinglabs.com/blog/automated-ai-pen-testing-out</guid>
      <pubDate>Thu, 23 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-23T15:00:00.000Z</dc:date>
      <description><![CDATA[A new report finds weakening trust in AI-only testing — and more willingness to keep humans in the loop. Here's why.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/human-robot-partnerships.jpg" type="image/jpeg" />
      <category><![CDATA[Dev & DevSecOps]]></category>
    </item>
    <item>
      <title><![CDATA[Akrites marshals the open source community to counter AI threats]]></title>
      <link>https://www.reversinglabs.com/blog/akrites-counter-ai-threats</link>
      <guid>https://www.reversinglabs.com/blog/akrites-counter-ai-threats</guid>
      <pubDate>Wed, 22 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-22T15:00:00.000Z</dc:date>
      <description><![CDATA[Industry heavyweights bring new focus to vulnerabilities in the age of AI. Here’s how it might help improve security.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/open-source-hardening.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Hidden in plain sight: How SVGs carry malicious scripts]]></title>
      <link>https://www.reversinglabs.com/blog/how-svgs-carry-dangerous-scripts</link>
      <guid>https://www.reversinglabs.com/blog/how-svgs-carry-dangerous-scripts</guid>
      <pubDate>Tue, 21 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-21T15:00:00.000Z</dc:date>
      <description><![CDATA[SVGs are difficult to detect, can be snuck into content — and can do malicious and legitimate actions. Here's how malicious SVGs work.]]></description>
      <dc:creator><![CDATA[Zaria Vuksan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Reasearchers-Notebook-SVG.webp" type="image/jpeg" />
      <category><![CDATA[Threat Research]]></category>
    </item>
    <item>
      <title><![CDATA[ClickFix doesn't attack your knowledge. It attacks your trust.]]></title>
      <link>https://www.reversinglabs.com/blog/clickfix-attacks-your-trust</link>
      <guid>https://www.reversinglabs.com/blog/clickfix-attacks-your-trust</guid>
      <pubDate>Thu, 16 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-16T15:00:00.000Z</dc:date>
      <description><![CDATA[One of the most effective attack methods I've analyzed this year runs on legitimate tools and willing users — and AV and EDR is blind to it.]]></description>
      <dc:creator><![CDATA[Toni Dujmović]]></dc:creator>
      <author><![CDATA[toni.dujmovic@reversinglabs.com (Toni Dujmović)]]></author>
      <enclosure url="https://www.reversinglabs.com/api/media/file/trust-clickfix.jpg" type="image/jpeg" />
      <category><![CDATA[Threat Research]]></category>
    </item>
    <item>
      <title><![CDATA[New OWASP tool structures AI threat modeling]]></title>
      <link>https://www.reversinglabs.com/blog/owasp-threat-advisor</link>
      <guid>https://www.reversinglabs.com/blog/owasp-threat-advisor</guid>
      <pubDate>Wed, 15 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-15T15:00:00.000Z</dc:date>
      <description><![CDATA[Threat Advisor could help teams with AI-specific risks. But a broader AppSec strategy rethink is needed in the AI era.]]></description>
      <dc:creator><![CDATA[Jaikumar Vijayan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/ai-threat-advisor-robot.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[The tale of ClickFix: 5 takeaways from RL’s new threat report]]></title>
      <link>https://www.reversinglabs.com/blog/5-takeaways-from-clickfix-threat-report</link>
      <guid>https://www.reversinglabs.com/blog/5-takeaways-from-clickfix-threat-report</guid>
      <pubDate>Tue, 14 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-14T15:00:00.000Z</dc:date>
      <description><![CDATA[New RL research explains why ClickFix attacks are multiplying — and why reliable detection requires going beyond AV and EDR.]]></description>
      <dc:creator><![CDATA[Paul Roberts]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/The-Tale-of-ClickFix-Blog.webp" type="image/jpeg" />
      <category><![CDATA[Threat Research]]></category>
    </item>
    <item>
      <title><![CDATA[AI-BOM push borrows from the SBOM playbook]]></title>
      <link>https://www.reversinglabs.com/blog/ai-bom-minimum-elements-proposal</link>
      <guid>https://www.reversinglabs.com/blog/ai-bom-minimum-elements-proposal</guid>
      <pubDate>Thu, 09 Jul 2026 16:00:00 GMT</pubDate>
      <dc:date>2026-07-09T16:00:00.000Z</dc:date>
      <description><![CDATA[The Institute for Security and Technology's 'Driving AI Transparency' policy paper makes the case for AI-BOM minimum requirements.]]></description>
      <dc:creator><![CDATA[Ericka Chickowski]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/requirement-ai-bom.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Hunting Device Code Phishing Pages]]></title>
      <link>https://www.reversinglabs.com/blog/device-code-phishing-walkthrough</link>
      <guid>https://www.reversinglabs.com/blog/device-code-phishing-walkthrough</guid>
      <pubDate>Wed, 08 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-08T15:00:00.000Z</dc:date>
      <description><![CDATA[RL recently discovered active Microsoft 365 device code phishing. Here's a walkthrough of how our researchers found the campaign.]]></description>
      <dc:creator><![CDATA[RL Research Team]]></dc:creator>
      <author><![CDATA[content@reversinglabs.com (RL Research Team)]]></author>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Spectra-Analyze-in-Action-Hunting-Device-Code-Phishing-Pages.webp" type="image/jpeg" />
      <category><![CDATA[Products & Technology]]></category>
    </item>
    <item>
      <title><![CDATA[‘Download pumping’ joins the trust-abuse bandwagon]]></title>
      <link>https://www.reversinglabs.com/blog/download-pumping-trust-abuse</link>
      <guid>https://www.reversinglabs.com/blog/download-pumping-trust-abuse</guid>
      <pubDate>Tue, 07 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-07T15:00:00.000Z</dc:date>
      <description><![CDATA[While this repository vector is not new, researchers have uncovered a new twist for exploiting trusted metrics to hide malicious code.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/trust-abuse.jpg" type="image/jpeg" />
      <category><![CDATA[Dev & DevSecOps]]></category>
    </item>
    <item>
      <title><![CDATA[This Report from Gartner Defines the Software Supply Chain Security Market]]></title>
      <link>https://www.reversinglabs.com/blog/gartner-report-defines-sscs-market</link>
      <guid>https://www.reversinglabs.com/blog/gartner-report-defines-sscs-market</guid>
      <pubDate>Thu, 02 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-02T15:00:00.000Z</dc:date>
      <description><![CDATA[Explore the new Gartner® Magic Quadrant™ for software supply chain security and learn why ReversingLabs is recognized. ]]></description>
      <dc:creator><![CDATA[Jasmine Noel]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/This-Report-from-Gartner-Defines-the-Software-Supply-Chain-Security-Market.webp" type="image/jpeg" />
      <category><![CDATA[Products & Technology]]></category>
    </item>
    <item>
      <title><![CDATA[AI use in cybersecurity is on the rise — and so is burnout]]></title>
      <link>https://www.reversinglabs.com/blog/ai-cybersecurity-burnout</link>
      <guid>https://www.reversinglabs.com/blog/ai-cybersecurity-burnout</guid>
      <pubDate>Wed, 01 Jul 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-07-01T15:00:00.000Z</dc:date>
      <description><![CDATA[The Life and Times of Cybersecurity Professionals study highlights a trend that has accelerated as cyber has become more complex.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/burnout-secops-ai.jpg" type="image/jpeg" />
      <category><![CDATA[Security Operations]]></category>
    </item>
    <item>
      <title><![CDATA[2026 Gartner® Magic Quadrant™ for Software Supply Chain Security: 5 takeaways]]></title>
      <link>https://www.reversinglabs.com/blog/5-takeaways-2026-gartner-magic-quadrant-sscs</link>
      <guid>https://www.reversinglabs.com/blog/5-takeaways-2026-gartner-magic-quadrant-sscs</guid>
      <pubDate>Tue, 30 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-30T15:00:00.000Z</dc:date>
      <description><![CDATA[The Magic Quadrant™ for Software Supply Chain Security is a 45-minute read. Here's what we feel security leaders need to pull from it.]]></description>
      <dc:creator><![CDATA[Jasmine Noel]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/mq-five-takeaways.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Software Supply Chain Security Just Got Its Own Magic Quadrant — and RL Is In It   ]]></title>
      <link>https://www.reversinglabs.com/blog/sscs-magic-quadrant-rl-is-on-it</link>
      <guid>https://www.reversinglabs.com/blog/sscs-magic-quadrant-rl-is-on-it</guid>
      <pubDate>Thu, 25 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-25T15:00:00.000Z</dc:date>
      <description><![CDATA[SSCS is a footnote that grew up, moved out, and got its own report. ]]></description>
      <dc:creator><![CDATA[Mario Vuksan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Blog-Gartner-Mario-Vuksan.webp" type="image/jpeg" />
      <category><![CDATA[Products & Technology]]></category>
    </item>
    <item>
      <title><![CDATA[Should frontier AI firms fund OSS ecosystem security?]]></title>
      <link>https://www.reversinglabs.com/blog/frontier-ai-fund-oss-security</link>
      <guid>https://www.reversinglabs.com/blog/frontier-ai-fund-oss-security</guid>
      <pubDate>Wed, 24 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-24T15:00:00.000Z</dc:date>
      <description><![CDATA[With a ‘vulnpocalypse’ expected, AppSec leaders are calling for the companies to invest in a Great Refactor Fund to secure open source.]]></description>
      <dc:creator><![CDATA[Jaikumar Vijayan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/oss-security-funding.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Can AI beat AI? 3 challenges with VulnOps adoption]]></title>
      <link>https://www.reversinglabs.com/blog/3-challenges-ai-driven-vulnops</link>
      <guid>https://www.reversinglabs.com/blog/3-challenges-ai-driven-vulnops</guid>
      <pubDate>Tue, 23 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-23T15:00:00.000Z</dc:date>
      <description><![CDATA[SecOps leaders must tackle cost and risk to deliver autonomous vulnerability operations. But with frontier AI, it's critical.]]></description>
      <dc:creator><![CDATA[Ericka Chickowski]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/rock-em-sock-em-robots.jpg" type="image/jpeg" />
      <category><![CDATA[Security Operations]]></category>
    </item>
    <item>
      <title><![CDATA[Gartner® Named RL a Software Supply Chain Security Visionary. Here’s What We See Coming]]></title>
      <link>https://www.reversinglabs.com/blog/gartner-rl-sscs-visionary-mario-vuksan</link>
      <guid>https://www.reversinglabs.com/blog/gartner-rl-sscs-visionary-mario-vuksan</guid>
      <pubDate>Thu, 18 Jun 2026 16:00:00 GMT</pubDate>
      <dc:date>2026-06-18T16:00:00.000Z</dc:date>
      <description><![CDATA[The first Magic Quadrant™ for Software Supply Chain Security comes as, we feel,  the demand for greater supply chain visibility explodes.]]></description>
      <dc:creator><![CDATA[Mario Vuksan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Blog-Gartner-Mario-Vuksan.webp" type="image/jpeg" />
      <category><![CDATA[Products & Technology]]></category>
    </item>
    <item>
      <title><![CDATA[Agentic AI risk isn't a model problem. It's an architecture problem.]]></title>
      <link>https://www.reversinglabs.com/blog/agentic-ai-risk-architecture-problem</link>
      <guid>https://www.reversinglabs.com/blog/agentic-ai-risk-architecture-problem</guid>
      <pubDate>Thu, 18 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-18T15:00:00.000Z</dc:date>
      <description><![CDATA[Agentic AI is moving the perimeter from components to data — and most strategies aren't built for that.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/agentic-ai-archictecture.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[The race to secure AI coding: 4 steps to rein agents in]]></title>
      <link>https://www.reversinglabs.com/blog/race-to-secure-ai-coding</link>
      <guid>https://www.reversinglabs.com/blog/race-to-secure-ai-coding</guid>
      <pubDate>Wed, 17 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-17T15:00:00.000Z</dc:date>
      <description><![CDATA[Coding agents are privileged insiders — with keys to CI/CD pipelines even as they give rise to ‘slopsquatting.’ Here’s how to govern them.]]></description>
      <dc:creator><![CDATA[Jaikumar Vijayan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/ai-coding-agents.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[31 Red Hat npm packages backdoored by Miasma in 72 seconds]]></title>
      <link>https://www.reversinglabs.com/blog/red-hat-cloud-service-npm-packages-backdoored-in-72-seconds</link>
      <guid>https://www.reversinglabs.com/blog/red-hat-cloud-service-npm-packages-backdoored-in-72-seconds</guid>
      <pubDate>Wed, 17 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-17T15:00:00.000Z</dc:date>
      <description><![CDATA[RL has discovered the Miasma supply chain attack affecting 9.8M total downloads across Red Hat's Hybrid Cloud Console JavaScript ecosystem.]]></description>
      <dc:creator><![CDATA[RL Research Team]]></dc:creator>
      <author><![CDATA[content@reversinglabs.com (RL Research Team)]]></author>
      <enclosure url="https://www.reversinglabs.com/api/media/file/malicious-npm-patch-delivers-reverse-shell.webp" type="image/jpeg" />
      <category><![CDATA[Threat Research]]></category>
    </item>
    <item>
      <title><![CDATA[Update to npm blocks install scripts: What it means for AppSec]]></title>
      <link>https://www.reversinglabs.com/blog/npm-v12-blocks-install-scripts</link>
      <guid>https://www.reversinglabs.com/blog/npm-v12-blocks-install-scripts</guid>
      <pubDate>Tue, 16 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-16T15:00:00.000Z</dc:date>
      <description><![CDATA[Disabling scripts by default closes the vector worms like Shai-Hulud rely on. Here's what the update fixes — and what it doesn't.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Shai-hulud%20worm.png" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Device code phishing bypasses password stealing]]></title>
      <link>https://www.reversinglabs.com/blog/device-code-phishing-campaign</link>
      <guid>https://www.reversinglabs.com/blog/device-code-phishing-campaign</guid>
      <pubDate>Fri, 12 Jun 2026 17:00:00 GMT</pubDate>
      <dc:date>2026-06-12T17:00:00.000Z</dc:date>
      <description><![CDATA[The Microsoft 365 phishing campaign persuades victims to complete a real authentication process that authorizes an attacker-controlled device.]]></description>
      <dc:creator><![CDATA[Robert Simmons]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/device-code-phishing.jpg" type="image/jpeg" />
      <category><![CDATA[Threat Research]]></category>
    </item>
    <item>
      <title><![CDATA[How to defend ARM64 cloud infrastructure from ITScape]]></title>
      <link>https://www.reversinglabs.com/blog/defend-cloud-infrastructure-itscape</link>
      <guid>https://www.reversinglabs.com/blog/defend-cloud-infrastructure-itscape</guid>
      <pubDate>Thu, 11 Jun 2026 19:00:00 GMT</pubDate>
      <dc:date>2026-06-11T19:00:00.000Z</dc:date>
      <description><![CDATA[RL has documented CVE-2026-46316, and developed two YARA rules to help detect exploits of the multi-tenant cloud vulnerability.]]></description>
      <dc:creator><![CDATA[Robert Simmons]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/cloud-security-itscape.jpg" type="image/jpeg" />
      <category><![CDATA[Threat Research]]></category>
    </item>
    <item>
      <title><![CDATA[MCP security tracks API's playbook — we know how that ends]]></title>
      <link>https://www.reversinglabs.com/blog/mcp-security-tracks-api-playbook</link>
      <guid>https://www.reversinglabs.com/blog/mcp-security-tracks-api-playbook</guid>
      <pubDate>Thu, 11 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-11T15:00:00.000Z</dc:date>
      <description><![CDATA[The standard connecting AI agents to tools and data leaves security to others. Make it a do-over.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/mcp-api-lessons.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
    <item>
      <title><![CDATA[Working with agentic AI: A SecOps survival guide]]></title>
      <link>https://www.reversinglabs.com/blog/agentic-secops-survival-guide</link>
      <guid>https://www.reversinglabs.com/blog/agentic-secops-survival-guide</guid>
      <pubDate>Wed, 10 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-10T15:00:00.000Z</dc:date>
      <description><![CDATA[Agentic AI will disrupt how SOC teams are built — and the way CISOs hire. Here’s how to embrace AI.]]></description>
      <dc:creator><![CDATA[Ericka Chickowski]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/robot-secops.jpg" type="image/jpeg" />
      <category><![CDATA[Security Operations]]></category>
    </item>
    <item>
      <title><![CDATA[Phishing attacks leverage TikTok, Instagram Reels]]></title>
      <link>https://www.reversinglabs.com/blog/social-media-attacks-phishing</link>
      <guid>https://www.reversinglabs.com/blog/social-media-attacks-phishing</guid>
      <pubDate>Tue, 09 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-09T15:00:00.000Z</dc:date>
      <description><![CDATA[RL has discovered two social engineering attack techniques targeting users via short-form videos. Here’s how they work.]]></description>
      <dc:creator><![CDATA[Zaria Vuksan]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Reasearchers-Notebook-TikTok-Blog.webp" type="image/jpeg" />
      <category><![CDATA[Threat Research]]></category>
    </item>
    <item>
      <title><![CDATA[How 56 npm packages used binding.gyp to steal secrets]]></title>
      <link>https://www.reversinglabs.com/blog/npm-bindinggyp-cicd-secrets</link>
      <guid>https://www.reversinglabs.com/blog/npm-bindinggyp-cicd-secrets</guid>
      <pubDate>Thu, 04 Jun 2026 21:30:00 GMT</pubDate>
      <dc:date>2026-06-04T21:30:00.000Z</dc:date>
      <description><![CDATA[The attack is notable for its breadth, flooding npm with malicious package versions.]]></description>
      <dc:creator><![CDATA[RL Research Team]]></dc:creator>
      <author><![CDATA[content@reversinglabs.com (RL Research Team)]]></author>
      <enclosure url="https://www.reversinglabs.com/api/media/file/Blog-Thousands-of-developer-projects-compromised-in-npm%20hack.jpg" type="image/jpeg" />
      <category><![CDATA[Threat Research]]></category>
    </item>
    <item>
      <title><![CDATA[Dependency remediation bolstered with CVE Lite CLI]]></title>
      <link>https://www.reversinglabs.com/blog/cve-lite-cli</link>
      <guid>https://www.reversinglabs.com/blog/cve-lite-cli</guid>
      <pubDate>Thu, 04 Jun 2026 15:00:00 GMT</pubDate>
      <dc:date>2026-06-04T15:00:00.000Z</dc:date>
      <description><![CDATA[OWASP's new dependency scanner gives developers actionable fixes. But supply chain attacks aren’t yet CVEs.]]></description>
      <dc:creator><![CDATA[John P. Mello Jr.]]></dc:creator>
      <enclosure url="https://www.reversinglabs.com/api/media/file/dependency-cve-lite.jpg" type="image/jpeg" />
      <category><![CDATA[AppSec & Supply Chain Security]]></category>
    </item>
  </channel>
</rss>