OpenSSF Malicious Packages Repository

OpenSSF Malicious Packages Repository

Courtesy : OpenSSF The Open-Source Security Foundation (OpenSSF) has introduced a new initiative called the Malicious Packages Repository to fight against malicious code and is aimed at enhancing the security…
GitLab Governence Enhancements

GitLab Governence Enhancements

GitLab has announced numerous new security and compliance features and enhancements to its platform that are intended for securing software supply chain. The new capabilities include security policy management, compliance…
NIST Publication on Supply Chain Risk Management

NIST Publication on Supply Chain Risk Management

The National Institute of Standards and Technology (NIST) has updated its cybersecurity guidance for addressing software supply-chain risk, offering tailored sets of suggested security controls for various stakeholders. Software supply-chain…

BillQuick ZeroDay Deploys Ransomware

At least one hacking group is exploiting a security flaw in a popular billing software suite to gain initial access, take over servers, and then deploy ransomware inside companies’ networks.…