Log4j and why it's not safe to relax yet [Q&A]
The Log4j vulnerability first hit the headlines in December last year. Since then we've heard less about it, but it hasn't gone away, like most vulnerabilities it has a long tail.
Stay updated with breaking news from Secure Software Development Framework. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.
The Log4j vulnerability first hit the headlines in December last year. Since then we've heard less about it, but it hasn't gone away, like most vulnerabilities it has a long tail.
Scorecards automatically generates a score for open-source projects based on potential vulnerabilities and dependencies.
The Cloud Native Computing Foundation (CNCF) announced new initiatives this week to make Kubernetes safer and easier for telcos to use.
Utility industry news and analysis for energy professionals.
New top-level guidance—and requirements—are coming for managing software security risk at federal agencies