πThanks to our amazing team for all of their hard work at #BlackHat this week & thanks to all who have chatted with us! π€ #AppSec #DevSecOps #SoftwareSupplyChainSecurity
08.08.2025 14:29 β π 0 π 0 π¬ 0 π 0@reversinglabs.com.bsky.social
ReversingLabs is the trusted name in file and software security. RL - Trust Delivered.
πThanks to our amazing team for all of their hard work at #BlackHat this week & thanks to all who have chatted with us! π€ #AppSec #DevSecOps #SoftwareSupplyChainSecurity
08.08.2025 14:29 β π 0 π 0 π¬ 0 π 0ICYMI: RL's @paulroberts.bsky.social speaks with
@silascutler.bsky.social utler.bsky.social & @gigastacey.bsky.social bsky.social at #BSidesLV about the threats posed to end-of-life #EoL equipment. Watch the full talk here: bit.ly/45EwYhs
π«Ά Huge thanks to @shehackspurple.bsky.social
for joining us at #BlackHat booth 3261 yesterday! She spoke with attendees about her essential book: Alice & Bob Learn #SecureCoding. Go Tanya π―
π€ The new AI Vulnerability Scoring System (AIVSS) from
@owasp.org aims to pick up what the #CVSS falls short on for #AI. Here's what #AppSec experts are saying.π www.reversinglabs.com/blog/owasp-a...
βοΈ #PolicyAsCode #PaC is emerging as a key area of focus for #AppSec in the age of cloud-native software development, but putting it into practice remains a challenge.π www.reversinglabs.com/blog/policy-...
06.08.2025 13:18 β π 1 π 0 π¬ 0 π 0We had to! π Stop by RL #BlackHat booth 3261 this week for a chance to win a #Labubu.
06.08.2025 13:17 β π 0 π 0 π¬ 0 π 0βοΈ #HackerSummerCamp is almost here. If youβre attending, you want to make the most of it. Check out this list of #BlackHat talks you should attend.π www.linkedin.com/pulse/black-...
05.08.2025 13:54 β π 1 π 0 π¬ 0 π 0βοΈ Start off #HackerSummerCamp right with this @bsideslv.org
panel: #EOL Equipment should not mean End of Life (Your Life), ft. @paulroberts.bsky.social, @silascutler.bsky.social & @gigastacey.bsky.social. #BSidesLV
Triaging & patching CVEs, plus meeting compliance demands, all bog down modern software teams. Here's what #AppSec & #Dev teams need to know. π www.reversinglabs.com/blog/the-tru...
24.07.2025 20:16 β π 0 π 0 π¬ 0 π 0π RL Spectra Detect v5.5 is transforming enterprise #malware detection. Register for this live deep-dive on the technology to learn more.π www.reversinglabs.com/webinar/icap...
24.07.2025 20:15 β π 0 π 0 π¬ 0 π 0π Happening this Friday at
BSides Albuquerque: @kadigrigg.bsky.social
will be taking the stage for her talk - Trail Blazing: Lessons from the Oregon Trail for a Secure Software Supply Chain. Learn more: bit.ly/410BILC #BSidesABQ #AppSec #OpenSourceSecurity
The 2025 Verizon Data Breach Investigations Report #DBIR reveals a 100% increase in third-party breaches. Join this talk next Wednesday to learn more about this sharp increase: bit.ly/45Pa47J #SoftwareSupplyChainSecurity #TPRM
24.07.2025 13:28 β π 0 π 0 π¬ 0 π 0β οΈ Microsoft links SharePoint #ToolShell zero-day to widespread attacks. Here's what we know.π www.reversinglabs.com/blog/sharepo...
23.07.2025 13:31 β π 0 π 0 π¬ 0 π 0As of writing of this thread, the obfuscated file is still under analysis. We will post any updates here, so stay tuned!
22.07.2025 20:22 β π 0 π 0 π¬ 0 π 0Another package, dsjdsdksfndfdfiodsfdsfd1212 (secure.software/npm/packages...), containing the same file was published a bit later. It was impersonating the npm package "is."
22.07.2025 20:22 β π 0 π 0 π¬ 1 π 0β οΈπ§΅ RL researches have detected a supply chain attack in an #npm package with a total download count of over 2 million: secure.software/npm/packages... #OSS #Dev
22.07.2025 20:22 β π 1 π 0 π¬ 1 π 0#BHUSA attendees: #SecureCoding all-star
@shehackspurple.bsky.social
will be at RL Booth 3261 on 8/06 from 2-3pm to discuss her new book. Stop by to snag a free copy! Learn more: bit.ly/446vhc2 #BlackHat
ICYMI: We'll be hosting a live conversation tomorrow with the threat researchers who made this discovery. Register here & come ready with your questions: reversinglabs.com/webinar/unma... #VSCode #Dev #DevSecOps
21.07.2025 17:02 β π 2 π 0 π¬ 0 π 0π€ Replacing software engineers with AI won't be happening soon β but #AICoding is already changing the software risk landscape. Is your company prepared?π #DevSecOps #AppSec #Dev
www.reversinglabs.com/blog/fully-a...
For years, software vendors enjoyed implicit trust... but that era is over. Join this webinar to learn how to move from passive trust in commercial software to active assurance. #SoftwareSupplyChainSecurity #TPRM #TPSRM
www.reversinglabs.com/webinar/how-...
π Join this live convo, where experts will dissect the compromise of ETHcode, a trusted #VSCode extension for #Ethereum smart contract development with nearly 6,000 installs. #Dev #DevSecOps www.reversinglabs.com/webinar/unma...
17.07.2025 13:02 β π 1 π 0 π¬ 0 π 0ποΈ The 2020 attack on #SolarWinds served as a wake-up call to take #SoftwareSupplyChainSecurity seriously. Watch the webinar now to learn how your organization can step up its #SBOM game: bit.ly/3ZYaQLZ
17.07.2025 13:01 β π 0 π 0 π¬ 0 π 0Make your trip home from #BHUSA secure with an anti-theft backpack! π All you need to do is book 10 minutes with our experts at #BlackHat Booth 3261. Sign up here: bit.ly/446vhc2
15.07.2025 15:50 β π 0 π 0 π¬ 0 π 0#AICoding has many attractions, but organizations must have humans in the loop to keep good software risk management vibes flowing. #VibeCoding #DevSecOps #Dev www.reversinglabs.com/blog/vibe-co...
14.07.2025 17:14 β π 1 π 0 π¬ 0 π 0We found evidence of malicious code inclusion in one of the repositories hosted in #GitHub: t.co/4ujxsbDtlt
11.07.2025 18:08 β π 1 π 0 π¬ 0 π 0Redirect location hosts another downloader instruction, which downloads MSI installer that contains logic for downloading further stages of this malicious campaign.
11.07.2025 18:08 β π 0 π 0 π¬ 1 π 0Exploring the blockchain data for the given contract address reveals the URL redirect hidden in contract data published to blockchain.
11.07.2025 18:08 β π 0 π 0 π¬ 1 π 0β οΈπ§΅ RL threat researchers detected a malicious #npm package abusing #blockchain for malicious command hosting: secure.software/npm/packages...
#Dev #SoftwareSupplyChainSecurity #OpenSource
π Big news! RL is excited to announce new features for Spectra Analyze v9.5, which includes wins for URL analysis, flexible intel feeds, & an ICAP server: www.reversinglabs.com/blog/announc...
#MalwareAnalysis #Cybersecurity #SecOps #SOC
Spectra Assure Community, RL's #OpenSource platform, now empowers #VSCode users to verify an extensionβs level of risk before trusting it to run with privileged system access: bit.ly/40GSv6d #DevSecOps #AppSec #SoftwareSupplyChainSecurity #Dev
10.07.2025 13:30 β π 3 π 0 π¬ 0 π 0