Security News

SCADA systems plagued by insecure development and slow patching (Help Net Security)
2017-05-23 19:00

“Behind most modern conveniences, there exists a SCADA system somewhere that controls them,” Trend Micro researchers pointed out in a new report that delves in the heart of vulnerabilities...

Software development teams embrace DevSecOps automation (Help Net Security)
2017-03-22 12:45

Mature development organizations ensure automated security is woven into their DevOps practice, early, everywhere, and at scale, according to Sonatype. The adoption of DevOps around the world is...

The CIA's "Development Tradecraft DOs and DON'Ts" (Schneier on Security)
2017-03-13 17:00

Useful best practices for malware writers, courtesy of the CIA. Seems like a lot of good advice. General: DO obfuscate or encrypt all strings and configuration data that directly relate to tool...

Cody Pierce on Exploit Development (Threatpost)
2017-03-13 14:27

Mike Mimoso talks to Cody Pierce, director of vulnerability research and prevention with Endgame, at RSA Conference 2017 about how attackers are changing their techniques in the face of mitigations.