DevSecOps

Measuring the True Economic Impact of DevSecOps Tooling
Security Operations & Management Measuring the True Economic Impact of DevSecOps Tooling

Modern delivery pipelines suffer from a linear accumulation of security checks that eventually creates a non-linear drag on the speed at which organizations can ship software to production. While the industry has long championed the concept of shifting security left, the actual execution often

ICO Reprimands UK Criminal Records Office for Data Breach
Data Protection & Privacy ICO Reprimands UK Criminal Records Office for Data Breach

The recent formal reprimand issued by the Information Commissioner’s Office against the ACRO Criminal Records Office serves as a stark reminder that even the most sensitive national security databases are not immune to critical cybersecurity failures that can expose millions to identity theft. This

Why Is eBPF Critical for Kubernetes Runtime Security?
Infrastructure & Network Security Why Is eBPF Critical for Kubernetes Runtime Security?

The speed at which malicious actors identify and exploit newly provisioned infrastructure has reached a point where traditional security measures often fail before they even begin their first scheduled scan. Research indicates that an Azure Kubernetes Service (AKS) cluster typically encounters its

LiteLLM Supply Chain Attack Hits AI Development Pipelines
Security Operations & Management LiteLLM Supply Chain Attack Hits AI Development Pipelines

The rapid expansion of artificial intelligence infrastructure has created a vast new surface for cyber threats, as evidenced by a sophisticated breach targeting the LiteLLM library. This library, which serves as a critical bridge between developers and various large language models, recently fell

Cursor AI Editor Fixes Remote Code Execution Vulnerability
Infrastructure & Network Security Cursor AI Editor Fixes Remote Code Execution Vulnerability

Rupert Marais joins us to discuss a critical oversight in the Cursor editor’s AI agent that left developers vulnerable to remote code execution. While the tool’s "worktree" feature was designed to isolate AI-driven changes from a user's main project, a security flaw allowed malicious repositories

OpenAI Releases Codex Security Tools to Automate Patching
Security Operations & Management OpenAI Releases Codex Security Tools to Automate Patching

The sheer volume of newly discovered software vulnerabilities has reached a point where manual intervention alone can no longer keep pace with the rapidly evolving threat landscape. OpenAI has addressed this critical bottleneck by introducing a suite of security tools built upon the Codex model,

Loading

Subscribe to our weekly news digest.

Join now and become a part of our fast-growing community.

Invalid Email Address
Thanks for Subscribing!
We'll be sending you our best soon!
Something went wrong, please try again later