Cyber Tactics Don’t Ignore the Most Important System You Manage Be sure to maintain the most critical piece of infrastructure: the human running it. Pam Nigro July 30, 2026 Be sure to maintain the most critical piece of infrastructure: the human running it.Read More
Cyber Tactics Weaponizing SBOMs: A Practical Guide for Security Practitioners Turn guesswork into precision with Software Bills of Materials. Pam Nigro May 25, 2026 Turn guesswork into precision with Software Bills of Materials.Read More
Democratized Software, Democratized Risk: Who’s Accountable When Everyone Codes? John Peluso April 16, 2026 How to modernize risk management when software creation becomes broadly distributed. Read More
U.S. Senator Calls for Investigation of Microsoft Jordyn Alger September 16, 2025 U.S. Senator Ron Wyden (D-OR) has called for an investigation of Microsoft, claiming the company’s insecure software has enabled cyber threats. Read More
The Top Threats Undermining the Security of Software Supply Chains Paul Davis September 9, 2025 While the volume of threats to the software supply chain continues to rise, building security into software development from the very beginning can help ensure a more proactive line of defense against these pervasive threats. Read More
CISA Issues Software Bill of Materials Draft, Encourages Public Comments Security Staff August 25, 2025 CISA published a Minimum Elements for a Software Bill of Materials (SBOM) draft and has encouraged the public to offer comments. Read More
New Research: Multi-Stage Malware Attack on Python Package Index Discovered Jordyn Alger June 18, 2025 Researchers have discovered that the Python Package Index (PyPI) has a malicious package in its repository. Read More
More Organizations Are Using Software-Based Pentesting Security Staff May 12, 2025 More than 50% of CISOs deploy software-based pentesting to bolster in-house testing practices. Read More
CISA report calls on US government to close the software knowledge gap Security Staff January 21, 2025 CISA has released a report on the state of software understanding.Read More
How businesses can protect themselves from data breaches Eric Cohen December 17, 2024 Although PCI compliance isn’t mandated by law, failing to comply with PCI DSS can result in investigations, fines, and penalties.Read More