Supply Chain Security

New ‘Carderbee’ APT Targeted Chinese Security Software in Supply Chain Attack

New ‘Carderbee’ APT Targeted Chinese Security Software in Supply Chain Attack 22/08/2023 at 14:33 By Ionut Arghire A new APT group called Carderbee has been observed deploying the PlugX backdoor via a supply chain attack targeting organizations in Hong Kong. The post New ‘Carderbee’ APT Targeted Chinese Security Software in Supply Chain Attack appeared first […]

React to this headline:

Loading spinner

New ‘Carderbee’ APT Targeted Chinese Security Software in Supply Chain Attack Read More »

Google Brings AI Magic to Fuzz Testing With Eye-Opening Results

Google Brings AI Magic to Fuzz Testing With Eye-Opening Results 17/08/2023 at 20:46 By Ryan Naraine Google sprinkles magic of generative-AI into its open source fuzz testing infrastructure and finds immediate success with code coverage. The post Google Brings AI Magic to Fuzz Testing With Eye-Opening Results appeared first on SecurityWeek. This article is an

React to this headline:

Loading spinner

Google Brings AI Magic to Fuzz Testing With Eye-Opening Results Read More »

CISA Calls Urgent Attention to UEFI Attack Surfaces

CISA Calls Urgent Attention to UEFI Attack Surfaces 04/08/2023 at 03:03 By Ryan Naraine The US government’s cybersecurity agency describes UEFI as “critical attack surface” that requires urgent security attention. The post CISA Calls Urgent Attention to UEFI Attack Surfaces appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original

React to this headline:

Loading spinner

CISA Calls Urgent Attention to UEFI Attack Surfaces Read More »

Software Supply Chain Startup Endor Labs Scores Massive $70M Series A Round

Software Supply Chain Startup Endor Labs Scores Massive $70M Series A Round 03/08/2023 at 11:04 By Ryan Naraine Endor Labs has closed a massive $70 million Series A round of financing to fuel ambitious plans to build a dependency lifecycle management platform.   The post Software Supply Chain Startup Endor Labs Scores Massive $70M Series A

React to this headline:

Loading spinner

Software Supply Chain Startup Endor Labs Scores Massive $70M Series A Round Read More »

Socket Scores $20M as Investors Bet on Software Supply Chain Security Startups

Socket Scores $20M as Investors Bet on Software Supply Chain Security Startups 01/08/2023 at 17:34 By Ryan Naraine San Francisco startup Socket raises $20 million as investors continue to bet on companies in the open source software security category. The post Socket Scores $20M as Investors Bet on Software Supply Chain Security Startups appeared first

React to this headline:

Loading spinner

Socket Scores $20M as Investors Bet on Software Supply Chain Security Startups Read More »

Verifying Software Integrity With Sigstore

Verifying Software Integrity With Sigstore 11/07/2023 at 17:48 By Matt Honea Signing code is very important to defend against supply chain attacks, but it’s also one of the most cumbersome to implement for internal development. The post Verifying Software Integrity With Sigstore appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

React to this headline:

Loading spinner

Verifying Software Integrity With Sigstore Read More »

Infisical Snags $2.8M Seed Funding for Secrets Sprawl Security Tech

Infisical Snags $2.8M Seed Funding for Secrets Sprawl Security Tech 05/07/2023 at 19:47 By Ryan Naraine Infisical banks $2.8 million in seed funding as investors continue to bet on companies in the software supply chain security space. The post Infisical Snags $2.8M Seed Funding for Secrets Sprawl Security Tech appeared first on SecurityWeek. This article

React to this headline:

Loading spinner

Infisical Snags $2.8M Seed Funding for Secrets Sprawl Security Tech Read More »

Rapid7: Japan Threat Landscape Takes on Global Significance

Rapid7: Japan Threat Landscape Takes on Global Significance 29/06/2023 at 18:46 By Kevin Townsend Rapid7 analyzes the Japan threat landscape and warns that attacks against the third-largest economy in the world have global consequences. The post Rapid7: Japan Threat Landscape Takes on Global Significance appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

React to this headline:

Loading spinner

Rapid7: Japan Threat Landscape Takes on Global Significance Read More »

HashiCorp Buys BluBracket for Secrets Scanning Tech

HashiCorp Buys BluBracket for Secrets Scanning Tech 27/06/2023 at 23:24 By Ryan Naraine HashiCorp acquires BluBracket secrets-scanning technology to help businesses block accidental leaks and fight secret sprawl. The post HashiCorp Buys BluBracket for Secrets Scanning Tech appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source React to

React to this headline:

Loading spinner

HashiCorp Buys BluBracket for Secrets Scanning Tech Read More »

Software Supply Chain: The Golden Container Ship

Software Supply Chain: The Golden Container Ship 12/06/2023 at 15:18 By Matt Honea By having a golden image you will put a process in place that allows you to quickly take action when a vulnerability is found within your organization. The post Software Supply Chain: The Golden Container Ship appeared first on SecurityWeek. This article

React to this headline:

Loading spinner

Software Supply Chain: The Golden Container Ship Read More »

SBOMs – Software Supply Chain Security’s Future or Fantasy?

SBOMs – Software Supply Chain Security’s Future or Fantasy? 05/06/2023 at 14:39 By Kevin Townsend If after eighteen months, meaningful use of SBOMs is unachievable, we need to ask what needs to be done to fulfill Biden’s executive order. The post SBOMs – Software Supply Chain Security’s Future or Fantasy? appeared first on SecurityWeek. This

React to this headline:

Loading spinner

SBOMs – Software Supply Chain Security’s Future or Fantasy? Read More »

Researchers Spot APTs Targeting Small Business MSPs

Researchers Spot APTs Targeting Small Business MSPs 24/05/2023 at 21:37 By Ryan Naraine Proofpoint warns that APT actors linked to Russia Iran and North Korea are increasingly targeting small- and medium-sized businesses. The post Researchers Spot APTs Targeting Small Business MSPs appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View

React to this headline:

Loading spinner

Researchers Spot APTs Targeting Small Business MSPs Read More »

Red Hat Pushes New Tools to Secure Software Supply Chain

Red Hat Pushes New Tools to Secure Software Supply Chain 23/05/2023 at 17:49 By Ryan Naraine Red Hat rolls out a new suite of tools and services to help mitigate vulnerabilities across every stage of the modern software supply chain. The post Red Hat Pushes New Tools to Secure Software Supply Chain appeared first on

React to this headline:

Loading spinner

Red Hat Pushes New Tools to Secure Software Supply Chain Read More »

China Tells Tech Manufacturers to Stop Using Micron Chips, Stepping Up Feud With United States

China Tells Tech Manufacturers to Stop Using Micron Chips, Stepping Up Feud With United States 22/05/2023 at 14:20 By Associated Press China’s government told users of computer equipment deemed sensitive to stop buying products from the biggest U.S. memory chipmaker, Micron. The post China Tells Tech Manufacturers to Stop Using Micron Chips, Stepping Up Feud

React to this headline:

Loading spinner

China Tells Tech Manufacturers to Stop Using Micron Chips, Stepping Up Feud With United States Read More »

Pimcore Platform Flaws Exposed Users to Code Execution

Pimcore Platform Flaws Exposed Users to Code Execution 19/05/2023 at 23:09 By Ionut Arghire Security researchers are warning that newly patched vulnerabilities in the Pimcore platform bring code execution risks. The post Pimcore Platform Flaws Exposed Users to Code Execution appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original

React to this headline:

Loading spinner

Pimcore Platform Flaws Exposed Users to Code Execution Read More »

Investors Make $6M Bet on Manifest for SBOM Management Technology

Investors Make $6M Bet on Manifest for SBOM Management Technology 18/05/2023 at 22:05 By Ryan Naraine Manifest raises $6 million in seed funding to help businesses generate, collect, and manage software bill of materials (SBOMs). The post Investors Make $6M Bet on Manifest for SBOM Management Technology appeared first on SecurityWeek. This article is an

React to this headline:

Loading spinner

Investors Make $6M Bet on Manifest for SBOM Management Technology Read More »

Entro Raises $6M to Tackle Secrets Sprawl

Entro Raises $6M to Tackle Secrets Sprawl 17/05/2023 at 15:10 By Ryan Naraine Israeli startup Entro launches with $6 million in seed-stage funding and a product to help manage secrets sprawl in the enterprise. The post Entro Raises $6M to Tackle Secrets Sprawl appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS

React to this headline:

Loading spinner

Entro Raises $6M to Tackle Secrets Sprawl Read More »

Scroll to Top