|
You are here |
nesbitt.io | ||
| | | | |
github.blog
|
|
| | | | | Improve your GitHub Actions security posture by securing your source repository, protecting your maintainers, and making it easy to report security incidents. | |
| | | | |
www.sonatype.com
|
|
| | | | | Open source malware is on the rise. Learn how to detect threats, comply with federal mandates, and secure your software supply chain with proactive security measures. | |
| | | | |
www.backslash.security
|
|
| | | | | A major npm supply-chain incident surfaced last week. Over 800 packages were poisoned, leading to more than 25,000 GitHub repositories being populated with stolen secrets. Projects linked to Zapier, ENS Domains, PostHog, and Postman were briefly affected. | |
| | | | |
www.sonatype.com
|
|
| | | Learn about a new, targeted backdoor supply chain attack against the popular XZ compression utility seen in many Linux distributions such as fedora and debian. Understand its impact, potential risks and what you can do about it. | ||