Home Tags Security

Tag: security

EU’s proposed CE mark for software could have dire impact on open source

The EU’s proposed Cyber Resilience Act (CRA), which aims to “bolster cybersecurity rules to ensure more secure hardware […]

CircleCI security incident report: customer secrets stolen, unauthorised access to GitHub repos and third-party systems

DevOps player CircleCI has published details of the security incident that forced it to warn cloud customers to […]

Researchers demonstrate a thousand installs of fake VS Code extension in 48 hours

Researchers at Aqua Security have shown how easy it is to distribute an extension to Visual Studio Code […]

State of DevOps report 2022: for secure software, team culture counts more than technology

Google’s DORA (DevOps Research and Assessment) team has published its 2022 State of DevOps report, finding a drop […]

Microsoft’s devcontainer.json: Just for VS Code or an evolving standard?

Last month,  Microsoft declared that “dev containers have become broadly useful for scenarios beyond VS Code” and introduced […]

Break point: GitHub, Istio, Snyk, SQLite, Vitesse, and Twist

GitHub opened its database of open source-related CVEs and security advisories for community contributions this week. The company […]

Break point: Cassandra, Elastic, GitHub, KubeOne, New Relic, and CNCF

Users of Apache Cassandra who haven’t updated their systems in the last couple of days should consider an […]

Update alert: GitLab and Argo CD push out fixes for new high severity issues

GitLab and the Argo CD project have released a number of security fixes, strongly recommending users to upgrade […]

Break point: Cloudera, NeuVector, Mirantis Secure Registry, Apache Hop, Java Operator SDK, and Istio

The team behind Cloudera Streaming Analytics has put the finishing touches to its 1.6 release. The update, available […]

All hands on deck: Log4j team rethinks defaults to help prevent Log4Shell – how to know if it affects you

The team behind Java logging framework Log4j has reworked the standard behaviour of its project slightly and made […]