Cyber Insights 2024 talks to hundreds of industry experts from dozens of companies covering seven primary topics.
The post SecurityWeek Cyber Insights 2024 Series appeared first on SecurityWeek.
Cyber Insights 2024 talks to hundreds of industry experts from dozens of companies covering seven primary topics.
The post SecurityWeek Cyber Insights 2024 Series appeared first on SecurityWeek.
Supply chain security insights: A successful attack against a supplier can lead to multiple opportunities against the supplier’s downstream customers.
The post Cyber Insights 2024: Supply Chain appeared first on SecurityWeek.
AnyDesk is revoking certificates and passwords in response to a recently discovered security breach impacting production systems.
The post AnyDesk Revokes Passwords, Certificates in Response to Hack appeared first on SecurityWeek.
Two new products aim to secure the traditional OSS supply chain, and the new AI model software supply chain.
The post New Offerings From Protect AI, Venafi Tackle Software Supply Chain Security appeared first on SecurityWeek.
Kusari has raised $8 million to help organizations gain visibility into and secure their software supply chain.
The post Software Supply Chain Security Startup Kusari Raises $8 Million appeared first on SecurityWeek.
Quarkslab finds serious, remotely exploitable vulnerabilities in EDK II, the de-facto open source reference implementation of the UEFI spec.
The post Remotely Exploitable ‘PixieFail’ Flaws Found in Tianocore EDK II PXE Implementation appeared first on SecurityWeek.
Researchers detail a CI/CD attack leading to PyTorch releases compromise via GitHub Actions self-hosted runners.
The post New Class of CI/CD Attacks Could Have Led to PyTorch Supply Chain Compromise appeared first on SecurityWeek.
Self-hosted GitHub Actions runners could allow attackers to inject malicious code into repositories, leading to supply chain attacks.
The post Major IT, Crypto Firms Exposed to Supply Chain Compromise via New Class of CI/CD Attack appeared first on SecurityWeek.
NSA has published guidance to help organizations incorporate SBOM to mitigate supply chain risks.
The post NSA Issues Guidance on Incorporating SBOMs to Improve Cybersecurity appeared first on SecurityWeek.
US, UK, and Poland warn of Russia-linked cyberespionage group’s broad exploitation of recent TeamCity vulnerability.
The post Russian Cyberspies Exploiting TeamCity Vulnerability at Scale: Government Agencies appeared first on SecurityWeek.