
Move over, DevSecOps: DevEx is the new darling
DevEx is an approach that leading firms use to achieve application security gains at speed. Here's how it works — and how to get started.
Learn More about Move over, DevSecOps: DevEx is the new darlingDevEx is an approach that leading firms use to achieve application security gains at speed. Here's how it works — and how to get started.
Learn More about Move over, DevSecOps: DevEx is the new darlingApplication security pros need to be ready to cope with security at the speed of code. Here's how to get a handle on modern software risk.
Learn More about The state of development: 5 AppSec action items3CX has transformed its software security in the two years since a damaging compromise — and RL was there to help. Here are key takeaways.
Learn More about 3CX’s Software Supply Chain Compromise: Lessons LearnedDevEx is an approach that leading firms use to achieve application security gains at speed. Here's how it works — and how to get started.
Read More about Move over, DevSecOps: DevEx is the new darlingApplication security pros need to be ready to cope with security at the speed of code. Here's how to get a handle on modern software risk.
Read More about The state of development: 5 AppSec action itemsThe new AI Vulnerability Scoring System (AIVSS) picks up where the Common Vulnerability Scoring System (CVSS) falls short.
Read More about OWASP AIVSS targets agentic AI riskPolicy as Code is emerging as a key area of focus for AppSec teams in the age of cloud-native development. But implementation can be daunting.
Read More about How to implement PaC for a more secure SDLCThe software supply chain incident highlights how quickly threat actors can turn newly revealed vulnerabilities into widespread attacks.
Read More about SharePoint zero-day: What we knowTriaging and patching, plus meeting compliance demands, all bog down modern software teams — and divert time away from development.
Read More about The true cost of CVEs: Go beyond vulnerabilitiesReplacing software engineers with AI won't be happening soon — but AI coding is already changing the software risk landscape. Is your company prepared?
Read More about Autonomous dev is coming: Is your AppSec ready?AI coding has many attractions, but organizations must have humans in the loop to keep good software risk management vibes flowing.
Read More about Vibe coding is seductive — and a serious riskIn this product release highlight, ReversingLabs is proud to announce new features for Spectra Analyze (formerly A1000).
Read More about Announcing RL Spectra Analyze Version 9.5Spectra Assure Community empowers VS Code users to verify an extension’s level of risk before trusting it to run with privileged system access.
Read More about Vet VS Code Plugins with Spectra Assure CommunityETHcode, a VS Code extension for Ethereum smart contract development, was compromised following a GitHub pull request.
Read More about Malicious pull request infects VS Code extension3CX has transformed its software security in the two years since a damaging compromise — and RL was there to help. Here are key takeaways.
Read More about 3CX’s Software Supply Chain Compromise: Lessons LearnedThe Latio AI Security Report highlights how marketing hype is creating confusion — and hurting security outcomes. Here are the top takeaways.
Read More about AI security tools and hype: Report breaks down key considerationsEU steps up to fill gaps from the US NVD and CVE. Here's what you need to know — and why you need to think beyond vulnerabilities.
Read More about Europe's EUVD could shake up the vulnerability database ecosystemThe new badge from ReversingLabs is the ultimate stamp of trust for your software supply chain.
Read More about SAFE and Trusted: Why the Spectra Assure Community Badge Belongs on Your Open Source ProjectGet your 14-day free trial of Spectra Assure
Get Free TrialMore about Spectra Assure Free Trial