
How agentic AI flips the trust model
As AppSec shifts focus from the components to data, your strategy needs updating. Are you on top of your trust debt?

Freelance technology writer. John's work has appeared in the The Boston Globe and Boston Herald, as well as CFO, CIO, CSO, and Inc. magazines. He is a former managing editor of the Boston Business Journal and Boston Phoenix, as well as a staff writer for Government Security News.
find John P. Mello Jr. on:

As AppSec shifts focus from the components to data, your strategy needs updating. Are you on top of your trust debt?

This new class of AI tool supply chain attack highlights how trust of agents can be exploited.

Researchers show how LLM fingerprinting can be used to automate generation of customized attacks.

Threat actors are leveraging the freewheeling vibe-coding trend to deliver malicious software at scale.

With AI ramping up risk, OWASP stepped up its project to help AppSec teams get up to speed — and take action.

Research shows that AI coding can tap integrated development environments to become privileged insider threats.

Here’s a look at the Ethereum Foundation’s new PQC security effort — and why you need to modernize your SecOps.

OWASP has adopted the container security tool to slow information overload. Here’s what you need to know.

AI coding is a game-changer — and requires AI-powered application security to fight fire with fire.
Get your 14-day free trial of Spectra Assure for Software Supply Chain Security
Get Free TrialMore about Spectra Assure Free Trial