π New Case Study: How is Google securing the future of machine learning?
By partnering with #sigstore and the Open Source Security Foundation (OpenSSF), theyβve implemented model signing that makes AI systems more trustworthy by default.
openssf.org/blog/2025/07...
28.07.2025 19:13 β π 5 π 3 π¬ 0 π 1
Wild times! π¨ Cybercrime meets geopoliticsβ$1M stolen by North Korean hackers. This underscores the urgent need for robust security in crypto. Time to bolster defenses! ππ° #CryptoSecurity #Innovation
04.07.2025 07:54 β π 1 π 1 π¬ 0 π 0
Talks from the Purdue CERIAS 2025 Cybersecurity Symposium, which took place at the start of April, are available on YouTube
www.youtube.com/playlist?lis...
www.youtube.com/playlist?lis...
02.07.2025 21:41 β π 3 π 3 π¬ 0 π 0
GitLab catches MongoDB Go module supply chain attack
Learn how GitLab detected a supply chain attack targeting Go developers through fake MongoDB drivers that deploy persistent backdoor malware.
"Software supply chain attacks via malicious dependencies continue to be one of the most significant security threats to modern software development"
Kudos to our friends over at @gitlab.com for the solid detection and writeup!
about.gitlab.com/blog/gitlab-...
01.07.2025 01:00 β π 0 π 0 π¬ 0 π 0
Threat Actors Attacking Cryptocurrency and Blockchain Developers with Weaponized npm and PyPI Packages - Bytes Europe
The cryptocurrency and blockchain development ecosystem is facing an unprecedented surge in sophisticated malware campaigns targeting the open source supply
Threat Actors Attacking Cryptocurrency and Blockchain Developers with Weaponized npm and PyPI Packages
https://www.byteseu.com/1103527/
The cryptocurrency and blockchain development ecosystem is facing an unprecedented surge in sophisticated malware campaigns targeting the open source supply β¦
14.06.2025 07:52 β π 1 π 1 π¬ 0 π 0
OSSPREY
Published on April 11, 2025
π¨ Supply Chain Security in Focus
See our latest blog post for a technical deep dive into what happened and what it means for engineers and defenders.
π ossprey.com/blog/tj-acti...
Let us know your thoughts or what your team is doing to reduce this kind of risk.
#ossprey #BirdsOfCyber
22.04.2025 07:08 β π 1 π 0 π¬ 0 π 0
OSSPREY
Published on April 15, 2025
In the era of AI assistants and vibe coding, a new threat emerges from the shadows. It has lurked, hidden and patient, waiting for the right moment.
Zombie Dependencies: theyβre not after brainsβ¦ theyβre after your code. :π§ π»
Read the full post here
π ossprey.com/blog/zombie-...
17.04.2025 07:22 β π 1 π 0 π¬ 0 π 0
Band wagons are for hopping on, right? Especially if they're easy and fun!
So, everyone, meet Ozzy the Ossprey! He's a lean, mean malware-fighting machine that's here to stomp out open source malware!
Get this limited edition Ozzy the Ossprey in a package manager near you!
#BirdsOfCyber #Ossprey
14.04.2025 07:19 β π 2 π 1 π¬ 1 π 0
Blog | OSSPREY
π Read our blog here : ossprey.com/blog/ π
Massive thanks to Plexal, Department of Science, Technology and Innovation, our mentors, and the incredible UK cyber community for backing bold ideas.
11.04.2025 11:32 β π 2 π 1 π¬ 0 π 0
π¦
Last month, OSSPREY graduated from both Cyber Runway!
What started as an idea in a bootcamp is now a full-flight cybersecurity startup with a beta product that hunts for malware in open source.
Over 60 sessions. 6 cities. Countless insights.
π₯ Top takeaways - Build fast, Validate faster.
π§΅
11.04.2025 11:30 β π 1 π 1 π¬ 1 π 0
he/they | Junior Software Engineer | VR Enthusiast
https://thevirusofdoom.xyz/
runner / cyber security guy / aging punk / baltimorean
https://linktr.ee/mcflynnthm
The largest collection of malware source code, samples, and papers on the internet.
Password: infected
(unofficial, this is a bot! Maintained by @yjb.bsky.social, the bot can't handle retweets, video, and maybe a few other things)
Mom // software engineer // developer stuff @ aws
Iβm Scout β your AI sidekick for threat hunting.
I help analysts ask better questions, follow the trail, and never lose context.
Built by Huntbase to think like a human, not a rule engine.
π https://www.huntbase.io
π¦ Node.js Secure Coding: http://nodejs-security.com
π @GitHub Star
π
@OpenJS Pathfinder award for Security
π₯ DevRel at @snyksec
JavaScript / software engineer focused on green tech. Outdoor enthusiast based in Boulder, CO, originally from Germany. Passionate about sustainability and the great outdoors.
A podcast about developer tools by @just-be.dev and @hipstersmoothie.com.
https://devtools.fm
A person trying to leave things better than I found them.
Software Engineer building tools that help consumers fight environmental and pharmaceutical harm.
Hangs out in the @believeinsls.bsky.social Discord.
Likely in Oregon 𦫠or Puerto Rico π΅π·.
Technologist | Speaker | Author | AWS Serverless Hero | Team Topologies Advocate | Serverless Development on AWS (O'Reilly) | Speak Effectively At Conferences
https://sheenbrisals.com
Cloud and container security β’ Security research and open source at Datadog
π¨ππ«π·
https://christophetd.fr
personal website @ cloudcurio.us β¦ researching @ Wiz Security (threats.wiz.io) π maintaining @ cloudvulndb.org ποΈ podcasting @ cryingoutcloud.io πΊοΈ pivoting @ Pivot Atlas (gopivot.ing)
Fast, reliable, and secure package management. Account managed by @mael.dev
The package manager for JavaScript. Problem? Visit npmjs.com/support or GitHub.com/npm/feedback
Python 3.16 & 3.17 Release Manager. CPython Core Developer. Python @ Snowflake. Jupyter Foundation Governing Board treasurer. Likes containers, compilers, open source + cats. My code is running on your machine.
savannah.dev
github.com/savannahostrowski
The AI-powered developer platform to build, scale, and deliver secure software.
Full Stack Software Engineer
I write (mediocre) code articles @ ncoughlin.com
Founder @ cascadiacode.io
Current side project: #basalt electron/vite/typescript , node directed graph automations app
Product Engineer, Ruby on Rails Developer
β£ Curator of newsletter.shortruby.com
β£ Helping #Ruby developers design better test cases at https://goodenoughtesting.com
β Cybersecurity reporter
β
Newsletters at Risky Business
#infosec #cybersecurity
https://risky.biz