Making Sense of the software bill of materials (SBOM): The Basics
Even though Software Bills of Materials (SBOMs) have been around for about 10 years, they have recently gained a lot of buzz in the software industry. This blog explores…
Schedule a 30-minute live product demo with expert Q&A
Even though Software Bills of Materials (SBOMs) have been around for about 10 years, they have recently gained a lot of buzz in the software industry. This blog explores…
Software supply chain attacks have been on the rise over the past several years. We see evidence of this daily with more and more headlines proclaiming SolarWinds-style attacks. In fact, Gartner predicts that by 2025, nearly half of all organizations will have experienced an attack on their software supply chain. In response to this rapid … Read more
CrateDepression is a software supply chain attack designed to target GitLab CI Pipelines by impersonating legitimate Rust packages and their developers.
CrateDepression is a software supply chain attack designed to target GitLab CI Pipelines by impersonating legitimate Rust packages and their developers.
DevOps enables fast development, easier maintenance, and the usage of software development best practices for applications, environments, build systems, and services…
SOC 2 Type II is prescribed to organizations handling sensitive information to verify the safe handling of precious data.
On April 15, GitHub Security announced that it experienced a software supply chain attack on many of its private repositories due to abuse of stolen OAuth user tokens…
Get 5 straightforward steps that any organization can take to harden their pipelines to keep attackers out.
Learn what a software supply chain is and what that means for security teams looking to protect them…
Over the last several weeks, Lapsus$ has taken down a who’s who of software development teams: NVIDIA, Samsung, Vodafone, Ubisoft, and Mercado Libre.