#softwaresecurity
📣 Our paper “On the (In)Security of Loading Machine Learning Models” has been accepted at IEEE S&P 2026 (13% acceptance rate this cycle). (1/5)

👇 Preprint: arxiv.org/abs/2509.06703

#ieeesp #ieeesp26 #ieee #cybersecurity #softwaresecurity #aisecurity #machinelearning #ml #zeroday
March 16, 2026 at 8:25 AM
In this Q2 2026 FreeBSD Journal article, Alice Sowerby looks at the growing role of Software Bills of Materials (SBOMs), why they matter for software security, and what FreeBSD is doing in this area.

Read more:
buff.ly/Ytgk9Bm

#FreeBSD #FreeBSDJournal #OpenSource #SBOM #SoftwareSecurity
July 28, 2026 at 8:44 PM
About a week left to apply for this #phd project where we will develop novel #machinelearning methods for #softwaresecurity.
We are #hiring a #phd student to develop novel #MachineLearning methods to analyse software from a security perspective. A PhD position at @umeauniversitet.bsky.social, fully funded by WASP (wasp-sweden.org). See full ad and apply here: www.umu.se/en/work-with...
PhD student in Computing Science with a focus on Machine Learning for Software Security
www.umu.se
March 13, 2026 at 3:30 PM
New free CRA training is now available from the Open Regulatory Compliance (ORC) Working Group.

Start learning:
 orcwg.org/training/

Learn more about the Foundation's CRA Readiness Project:
 buff.ly/bfp8xkQ

#FreeBSD #OpenSource #CyberResilienceAct #CRA #SoftwareSecurity
July 7, 2026 at 5:14 PM
🔐 Compile-time or post-compilation protection?

Join our webinar to explore CodeMeter Protection Suite and strategies for protecting software IP, licensing, and applications.

📅 Oct 6 | 10 AM PDT / 1 PM EDT
👉 register.gotowebinar.com/register/252...

#CodeMeter #SoftwareSecurity
September 25, 2026 at 4:24 PM
🎉 Today we celebrate #OpenSSFCommunity Day NA 2025, welcoming six new member organizations and honoring incredible contributors with the Golden Egg Awards 🥚.

Read the full update:
🌐 openssf.org/blog/2025/06...

#OpenSSF #OpenSource #SoftwareSecurity #OSS
June 26, 2025 at 2:00 PM
Critical vulnerability in React Native CLI exposes developers to remote code execution. Update to version 20.0.0 immediately to secure your projects. #ReactNative #CyberSecurity #SoftwareSecurity Link: thedailytechfeed.com/react-native...
November 5, 2025 at 6:44 PM
January 28, 2026 at 5:00 PM
A cross-ecosystem software supply chain attack campaign is targeting various package repositories to distribute credential-stealing malware. #CybersecurityThreat #SoftwareSecurity #DevTools
May 27, 2026 at 3:35 AM
Veronika hat sich selbst Programmieren beigebracht. Heute schützt sie ein Unternehmen vor Hackern. Sie verdient 7.500 Euro – und hat doch Schulden. Der Kontoausug
Softwaresecurity-Expertin: "Ich habe mich auf Cybersecurity spezialisiert, um mehr zu verdienen"
Veronika hat sich selbst Programmieren beigebracht. Heute schützt sie ein Unternehmen vor Hackern. Sie verdient 7.500 Euro – und hat doch Schulden. Der Kontoausug
www.zeit.de
June 30, 2024 at 4:24 AM
npm 12 boosts security by disabling install scripts by default, requiring explicit approval. #npm12 #GitHub #SoftwareSecurity #SupplyChain #DevSecOps #NodeJS thedailytechfeed.com/npm-12-disab...
July 9, 2026 at 5:05 PM
Log4Shell - Spring4Shell - The XZ Backdoor

As the software ecosystem grows more complex, are we ready for the next #CyberSecurity crisis?

Discover practical strategies to secure your development lifecycle, whether you're a lean startup or a global enterprise.

🎬 bit.ly/4m1LyGg

#SoftwareSecurity
April 2, 2026 at 12:16 PM
Malicious code was found hiding inside npm packages downloaded 5.4M+ times, activating only after install to dodge security scans. Lesson for business owners: the software you rely on is only as safe as its weakest dependency. #MJE #Cybersecurity #SupplyChain #SoftwareSecurity
September 21, 2026 at 11:59 AM
The latest update for #SignMyCode includes "What is SLH-DSA? Hash-Based Post-Quantum Digital Signature Guide" and "What Is ML-KEM? Guide to #NIST's Post-Quantum Key Encapsulation Mechanism".

#cybersecurity #softwaresecurity #codesigning https://opsmtrs.com/3SAy0lg
SignMyCode
SignMyCode is a one-stop shop for an affordable and authentic code signing solution offering code signing certificates from reputed certificate authorities like Comodo & Sectigo.
opsmtrs.com
September 19, 2026 at 3:55 AM
More details and official guidance from #Microsoft here:
buff.ly/QHRV8ht
Patch promptly to reduce exposure to #RequestSmuggling attacks.
#SoftwareSecurity #Developers #PatchManagement #CyberSecurity
🧵5/5
October 24, 2025 at 9:08 PM
June 6, 2026 at 9:40 AM
FBI warns of TeamPCP's attacks on developer tools, compromising open-source packages and stealing credentials. #CyberSecurity #TeamPCP #DeveloperTools #SupplyChainAttack #OpenSource #FBI #SoftwareSecurity thedailytechfeed.com/fbi-warns-of...
July 3, 2026 at 4:48 PM
Our primitives are built assuming the person deploying might not know what row-level security is. April didn't surprise us. It clarified us.

The table looks assembled. Do the joints hold?

#AI #vibecoding #softwaresecurity #appsec #buildinpublic
September 12, 2026 at 7:00 PM
💡 Secure Coding = Developer Power: How To Convince Your Boss To Invest In You

🎙️💥 Jim Manico,
🎙️💥 Jimmy Mesta

📍💥 REGISTER HERE: www.crowdcast.io/c/secure-cod...

#webinar #securecoding, #developerlife #cybersecurity, #infosec #softwaresecurity, #devsecops #itspmagazine #infosecurity #technology
April 2, 2025 at 2:53 AM
You can tell how broken a tool is by the size of the industry selling armor for it. How much of your stack is armor?

#AI #vibecoding #AIagents #softwaresecurity #buildinpublic
September 2, 2026 at 7:00 PM
Open source evolves to meet new security challenges, balancing openness with compliance to ensure reliability. #OpenSource #Cybersecurity #SoftwareSecurity #Compliance #TechNews #DigitalTransformation https://thedailytechfeed.com/open-source-faces-maturity-amid-security-challenges/
August 7, 2026 at 12:42 PM
AI coding tools are boosting productivity... but are they secretly multiplying your security risks?
Read more: blog.synergyit.ca/how-to-close...

#AIGovernance #AISecurity #DevSecOps #SoftwareDevelopment #CISO #ITSecurity #LLMSecurity #SoftwareSecurity #AppSec #MLOps #USA #Canada
September 30, 2025 at 4:38 PM
Docker Hardened Images: Making Container Security Free and Accessible for Everyone

techlife.blog/posts/docker...

#Docker #Security #Devops #SoftwareSecurity
Docker Hardened Images: Making Container Security Free and Accessible for Everyone
Docker announces free Docker Hardened Images, bringing enterprise-grade container security to all 26 million developers in the ecosystem.
techlife.blog
December 18, 2025 at 6:09 PM
The industry keeps asking how to make the AI safe enough to trust with everything.

The better question: what if the AI was never handed the thing it could get catastrophically wrong?

#AI #vibecoding #AIcoding #softwaresecurity #buildinpublic
August 30, 2026 at 9:54 AM
AI coding feels like a shortcut, but it's a high-stakes gamble. Learn why AI-generated code is increasing technical debt, security risks, and eroding crucial developer skills.

https://thepixelspulse.com/posts/why-ai-coding-risks-strategic-play-2026/

#aicoding #aigeneratedcode #softwaresecurity
March 18, 2026 at 8:15 PM