August 22, 2022
Exploring the “how” of CI/CD compromises, researchers show many of the culprits will be familiar to security teams.
August 18, 2022
With software supply chain attacks surging, app sec teams should shift gears from legacy vulnerabilities to open-source repos, dev tools, and tampering.
August 18, 2022
Hacker summer camp is BACK, baby.
August 12, 2022
The NVD as it is today does not tell the full story of software risk. Here's why the NVD — and your software security approach — need to be modernized.
August 12, 2022
GitHub updated guidance on using its Copilot AI-powered code bot after researchers showed at Black Hat that it often generates vulnerable code.
August 11, 2022
DevOps teams are still ignoring the danger of open redirector pages.