April 11, 2023, 4:40 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Posted by Jesper Sarnesjo and Nicky Ringland, Google Open Source Security Team



Today, we are excited to announce the deps.dev API, which provides free access to the deps.dev dataset of security metadata, including dependencies, licenses, advisories, and other critical health and security signals for more than 50 million open source package versions.



Software supply chain attacks are increasingly common and harmful, with high profile incidents such as Log4Shell, Codecov, and the recent 3CX hack. The overwhelming …

3cx access api attacks codecov complexity critical data dependencies dependency deps.dev dev diligent ecosystem free google hack health high incidents licenses log4shell metadata open source open source security open source security team package profile security security team signals software software supply chain software supply chain attacks supply supply chain supply chain attacks supply chains team

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

DevSecOps Engineer

@ LinQuest | Beavercreek, Ohio, United States

Senior Developer, Vulnerability Collections (Contractor)

@ SecurityScorecard | Remote (Turkey or Latin America)

Cyber Security Intern 03416 NWSOL

@ North Wind Group | RICHLAND, WA

Senior Cybersecurity Process Engineer

@ Peraton | Fort Meade, MD, United States

Sr. Manager, Cybersecurity and Info Security

@ AESC | Smyrna, TN 37167, Smyrna, TN, US | Santa Clara, CA 95054, Santa Clara, CA, US | Florence, SC 29501, Florence, SC, US | Bowling Green, KY 42101, Bowling Green, KY, US