We spend a lot of time worrying about zero-days, but neglect is a much more common entry point. If you're running EOL libraries in production, you're essentially flying solo. This on-demand webinar covers pragmatic ways to identify and remediate these "neglect-based" risks.

Watch a technical discussion between Anchore and HeroDevs on demand now.
https://anchore.com/blog/managing-the-eol-trap-why-software-neglect-is-your-biggest-supply-chain-risk/

#CyberSecurity #InfoSec #EOL

Node.js EOL 2026: cuándo expira cada versión

Node.js 20 llegó a EOL el 30 de abril de 2026. ¿Tu producción sigue sin parches? Conocé las fechas fin de vida Node.js EOL y migrá a tiempo.

https://donweb.news/fechas-fin-vida-nodejs-eol-2026/

#nodejs #eol #seguridad #javascript #devops

Node.js EOL 2026: cuándo expira cada versión

Node.js 20 ya está sin soporte desde abril 2026. Calendarios, riesgos y guía de migración a Node.js 22 y 24 para producción.

DonWeb News

I never get tired of giving #OldTech a new life.

But now the battery says Charge: 9.6 Wh (31.1%) condition: 30.9/30.9 Wh (100.0%) power because this battery 🪫 was original but was replaced with a new, genuine $17ish battery. (I long for yesterday and its snap-in replacement batteries!)

I also ordered some matching (but #EOL) #Crucial #DDR4 #RAM because this old broad only has 4 GB in it, but goes to 8. Sad it was like $55-60 but hey. 🤷‍♀️ I should get another 2-3 years min out of this laptop 🌟.

Is your Java application actually secure, or does it just look that way? In this episode of the Foojay Podcast, Frank is joined by Steve Poole and David Welch, both from HeroDevs, to dig deep into the state of Java security in 2025 and beyond. Steve introduces the concept of zombie dependencies: end-of-life libraries that…...
#ai #cve #dependencies #endoflife #EOL #Security #Updates
https://foojay.io/today/foojay-podcast-95/
Foojay Podcast #95: Is Your Java App Actually Secure, Or Does It Just Look That Way?

foojay is the place for all OpenJDK Update Release Information. Learn More.

foojay

@simontatham I find endoflife.date extremely useful for such information, it has almost all projects (and some hardware like smartphones too) and one can guess most URLs:

https://endoflife.date/debian

#endoflife #eol

Debian

Check end-of-life, release policy and support schedule for Debian.

endoflife.date

New Mirai Campaign exploits RCE Flaw in EoL D-Link Routers.

The Mirai exploit CVE-2025-29635 allows an attacker to execute arbitrary commands on remote devices by sending a POST request to a vulnerable endpoint, triggering remote command execution [RCE].

https://nvd.nist.gov/vuln/detail/CVE-2025-29635

Akamai's SIRT, which detected the Mirai campaign in March 2026, reports that, although the flaw was first disclosed 13 months ago by security researchers Wang Jinshuai and Zhao Jiangting, this is the first time in-the-wild active exploitation has been observed.

https://www.akamai.com/blog/security-research/cve-2025-29635-mirai-campaign-targets-d-link-devices

#dlink #eol #router #security #privacy #engineer #media #infosec #tech #news

Tod auf Raten: Microsoft zieht Clipchamp für iOS den Stecker

Microsoft mag den Videoeditor Clipchamp als lokale App offenbar nicht mehr. Unter iOS zieht der Hersteller im Juni den Stecker.

heise online
Tomorrow I start (o so early) for JCON Europe in Cologne and then, at the tail end of the week, go to Devoxx France to give more talks. If you're at either, come say hi. Herodevs has a booth at both. After digging into the CVE stories behind Tomcat 8.5's end of life, I turned…...
#cve #endoflife #EOL #migration #Security #springboot #SpringBoot35 #SpringBoot40 #SpringFramework #supplychain #Zombies
https://foojay.io/today/crossing-the-river-styx-spring-boot-3-5-and-the-zombie-dependency-problem/
Spring Boot 3.5 EOL — The CVE Blind Spot Nobody Talks About

Spring Boot 3.5 goes EOL June 30, 2026. But the real risk isn't the migration. It's what happens to CVE reporting once a project reaches end of life.

foojay
Android 13 erreicht Support-Ende: Millionen Geräte betroffen

Android 13 ist raus. Google hat schon Anfang März den Support für die im Jahr 2022 veröffentlichte OS-Version eingestellt.

heise online