Tag 4 unserer TrendTage – heute in München und der Abschluss unserer Roadshow. Vielen Dank an unsere Partner und unsere zahlreichen Teilnehmer!
Tag 4 unserer TrendTage – heute in München und der Abschluss unserer Roadshow. Vielen Dank an unsere Partner und unsere zahlreichen Teilnehmer!
cirosec TrendTage 2026:
Nutzen Sie die Gelegenheit, sich auf unserer kostenlosen eintägigen Veranstaltung umfassend über moderne IT-Sicherheitsstrategien zu informieren. Sie erwarten spannende Einblicke in die Absicherung von AD Infrastrukturen, die Sicherheit der Software Supply Chain, verschiedene Formen des Pentestings sowie praxisnahe Ansätze zur Mikrosegmentierung.
Details und Anmeldung unter: https://cirosec.de/trendtage
#roadshow #cirosec #TrendTage2026 #pentesting #redteaming #activedirectory #mikrosegmentierung #reversingLabs #specterops #zeronetworks
Nothing says career growth like a coding challenge that installs a RAT.
ReversingLabs says fake crypto/blockchain recruiters pushed 192 malicious packages on npm/PyPI; “bigmathutils” hit 10,000 downloads before turning bad in v1.1.0.
If the repo smells off, don’t run it 😼
"A new variation of the fake recruiter campaign from North Korean threat actors is targeting JavaScript and Python developers with cryptocurrency-related tasks," reports the Register. Researchers at software supply-chain security company ReversingLabs say that the threat actor creates fake compani...
🎯 NOW PUBLISHING: On-Location Coverage from #BlackHat USA 2025!
We're back in the office and excited to start sharing all the conversations we captured on location in Las Vegas with our amazing sponsors and editorial coverage!
🔔 Follow ITSPmagazine, Sean Martin, CISSP, and Marco Ciappelli to get this content fresh as it drops!
We're thrilled to share this critical Brand Story conversation thanks to our friends at ReversingLabs 🙏
Your Business Apps Are Bringing Friends You Didn't Invite
Every commercial software application is a complex assembly of first-party, contracted, open source, and third-party code. But when #SolarWinds, #Kaseya, and #Ivanti happened, we learned that vendor questionnaires and contractual assurances offer little protection against supply chain compromises.
At #BlackHat2025, Saša Zdjelar, Chief Trust Officer at ReversingLabs, reveals how organizations can finally verify the integrity of #software from outside vendors—without relying on blind trust.
The game-changer: Comprehensive binary analysis that deconstructs any file into its components to:
• Detect malware, tampering, and embedded secrets
• Identify #vulnerabilities and insecure practices
• Uncover undocumented network connections
• Flag #compliance risks from restricted regions
This isn't just another policy checkbox—it's a true technical control that inspects the software itself, regardless of size or complexity.
Real-world applications:
• Procurement: Auto-scan all software before deployment
• Version Monitoring: Detect unexpected behavior changes between releases
• Critical Environments: Verify integrity before software enters OT, ICS, or financial systems
• Risk Management: Assess COTS software as part of ongoing vendor reviews
With regulations like EO 14028 and the EU's #CyberResilience Act demanding transparency, the ability to technically validate every application delivers both strategic protection and measurable benefits.
📺 Watch the video: https://youtu.be/pU9bHYFND7c
➤ Learn more about ReversingLabs: https://itspm.ag/reversinglabs-v57b
✦ Catch more stories from #ReversingLabs: https://www.itspmagazine.com/directory/reversinglabs
🎪 Follow all of our #BHUSA 2025 coverage: https://www.itspmagazine.com/bhusa25
#Cybersecurity #SupplyChainSecurity #SoftwareIntegrity #BlackHatUSA #BHUSA25 #ThirdPartyRisk #SBOM #BinaryAnalysis #Compliance #ZeroTrust
A newly discovered campaign pushing malicious open source software packages is designed to steal mnemonic phrases used to recover lost or destroyed crypto wallets, according to a report by ReversingLabs.
#ChatGPT is wrong more than half the time—makes many conceptual errors, but sounds confident, authoritative.
So, hard to spot the errors, say researchers. In this week’s #SSBlogwatch we can’t say we’re totally surprised. For #ReversingLabs: https://reversinglabs.com/blog/ai-coding-helpers-get-failing-grade?utm_source=richisoc&utm_medium=social #AI #DevOps
Google employees are to be protected from themselves. In what’s being described as a pilot program, they’ll lose internet access at work and/or root privileges.
The idea is to stop break-ins by bad actors. In this week’s #SSBlogwatch we try not to imagine the horror. For #ReversingLabs: https://www.reversinglabs.com/blog/no-net-for-some-no-root-for-devs-google-cuts-off-staff-internet-for-safety?utm_source=richisoc&utm_medium=social