Application Security
Cloud security startup Aqua Security has partnered with the Center for Internet Security (CIS) to create guidelines for software supply chain security and followed...
Hi, what are you looking for?
Hackers pushed a poisoned arrayref version that added a dependency to fetch a malicious payload from a remote server.
Cloud security startup Aqua Security has partnered with the Center for Internet Security (CIS) to create guidelines for software supply chain security and followed...
OT:Icefall: 56 vulnerabilities plague OT devices from 10 different major industrial manufacturers
Air raid sirens sounded in the Israeli cities of Jerusalem and Eilat on Sunday evening and it appears that they were triggered by a...
Divergent goals often result in data protection laws that are fundamentally flawed
Teachers unable to get paychecks. Tax and customs systems paralyzed. Health officials unable to access medical records or track the spread of COVID-19. A...
Jit, an Israeli startup promising technology to help developers simplify security when deploying cloud apps, has banked an eye-opening $38.5 million in seed-stage funding.The...
The Coalition to Reduce Cyber Risk (CR2) announced this week that it has been joined by 37 organizations across eight countries in signing a...
It doesn’t pay to pay. This advice on ransomware payment is often given, but rarely enumerated. Now it has been. A new study finds...
Hundreds of companies are showcasing their products and services this week at the 2022 edition of the RSA Conference in San Francisco.
Question: If we can mitigate file encryption ransomware with backup, can we mitigate double extortion by adding advanced PII protection through data encryption or tokenization?
Ten Eleven Ventures has joined a growing list of cybersecurity-focused venture capital firms raising new funds to invest in startups solving information security problems.
Venture capital powerhouse Sequoia is leading a massive $50 million early-stage investment in Chainguard, a startup created by a team of ex-Google software engineers...
Microsoft says it has uncovered and disabled the OneDrive infrastructure of a Lebanon-based threat actor targeting organizations in Israel.
Cloud security startup JupiterOne has raised $70 million in a new round of financing that values the company north of $1 billion.
CISA's SBOM champion Allan Friedman and YL Ventures’ Andy Ellis joins JupiterOne’s CISO Sounil Yu dig deeper into the U.S. government's response to supply...
Critical industries must prepare themselves for a new wave of ransomware attacks specifically targeting OT
Boston, Mass.-based Tidelift, a company on a mission to address open source supply chain “health and security,” has raised $27 million in Series C...
WhiteSource Changes Company Name to Mend
A popular Python package was compromised recently and replaced with a malicious version apparently designed to help the attacker obtain AWS credentials.
Security researchers at SentinelLabs are calling attention to a software chain supply attack targeting Rust developers with malware aimed directly at infecting GitLab Continuous...