Business

RL SSCSR Feature Image

Report: Epidemic of Flaws in Commercial and Open Source Code

ReversingLabs’ 2025 Software Supply Chain Security Report finds that security flaws in commercial and open source code are epidemic as hackers target supply chains including those for cryptocurrency and AI in a play for access to sensitive data and IT assets.

teaching secure coding

Episode 260: The Art of Teaching Secure Coding with Tanya Janca

In this episode of the podcast, host Paul Roberts welcomes Tanya Janca of She Hacks Purple back into the studio. Tanya talks about her newly released book: Alice and Bob Learn Secure Coding, published by Wiley and the larger problem of how to promote the teaching of secure coding practices to developers.

A Subaru being remotely unlocked following a hack of the owner's STARLINK account. (Image courtesy of Sam Curry)

More Of The Shame: Software Flaw Exposes Millions of Subarus, Rivers of Driver Data

A now-patched flaw in Subaru’s STARLINK connected vehicle service exposed location information and driver data for millions of vehicles with nothing more than the vehicle’s license plate number – the latest jaw dropping smart vehicle security flaw discovered by the researcher Sam Curry.

White Kia Rio Car on Road

KIA KO! Web Hackers Vs. The Auto Industry Round 2

Researcher Sam Curry revealed a flaw in a KIA website that gave anyone with the license plate number of a KIA vehicle access to vehicle controls and driver data – highlighting the dire state of smart vehicle cyber security. 

A cyber investigator

Report Finds Lack of Talent, Tools Frustrates Cyber Investigations

Firms face challenges in combating sophisticated cyber attacks due to a shortage of skilled workers and complex, costly investigative tools. A report by Command Zero highlights the acute need for cybersecurity talent, especially for cloud platforms. Organizations struggle with tool integration and lack standardized processes, complicating cyber investigations. Command Zero recommends adopting unified platforms and enhancing automation.