Excited to launch SBOM Observer (sbom.observer)🚀! Covering 25 languages & OS, it's a game-changer in #SBOM management & Compliance. Easy integration and support for #CycloneDX, #SPDX, #VEX, #SLSA & more. Enhance your security posture today! #SBOMObserver#DevSecOps
Friday the 13th doesn't have to be unlucky for your system's security. Learn how to protect yourself from malicious install scripts in npm packages with our new Block Install Scripts security policy. Check out bytesafe.dev.
#npm#security#appsec#infosec#opensource
The malicious Python package SentinelSneak has been discovered (posing as a SDK for a well-known SentinelOne client). The attack shows use of typosquatting to create malicious packages with names similar to well-known components.
darkreading.com/vulnerabilit…#pypi#dependencyfirewall
Cybersecurity on the agenda? Our new tool lets you assess your organization's readiness (strengths/weak points). It only takes a couple of minutes and you'll get a free custom report.
bytesafe.dev/assessments/sof…#cybersecurity#nist#slsa#owasp
The Bytesafe Readiness Assessment Report contains specific references to relevant sections in the Executive Order 14028 (Improving Nation's Cybersecurity), NIST Cybersecurity Framework, OWASP Top 10, SLSA and more.
#cisos#csos#appsec#governance#compliance#opensource