In The News
November 22, 2022

Forbes: How Development Teams Can Approach A Security Reset Amid Deglobalization

Forbes: How Development Teams Can Approach A Security Reset Amid De-globalization.
October 18, 2022

Devops Digest: Secure Your Development Process - Or Face the Growing Risks to Software

During the past year-and-a-half, the US federal government developed a canon of guidance that addresses software supply chain security
October 7, 2022

The CyberWire: An unidentified threat actor deploys malicious NPM packets

ReversingLabs researchers outline the placement of a malicious NPM package in a widely used components library
October 3, 2022

SC Media: The federal government has been busy on supply chain guidance, so everyone take a deep breath

Mario Vuksan tells federal contractors what they need to know about all the new executive orders, memos, and pending legislation from the government.
September 23, 2022

The Hacker News: Malicious NPM Package Caught Mimicking Material Tailwind CSS Package

A malicious NPM package has been found masquerading as the legitimate software library for Material Tailwind.