Latest from todaynewsLinux Foundation warns of US OFAC sanctionsThe Linux Foundation has posted a guide to navigating US Office of Foreign Assets Control sanctions and other global regulations for open source developers.By Paul KrillFeb 03, 20253 minsApplication SecurityData and Information SecurityOpen Source feature How to pick the right SAST toolBy Jenn GileJan 27, 202510 minsApplication SecurityDevSecOpsDevopsnews Palo Alto Networks releases QRNG API frameworkBy Paul KrillJan 23, 20252 minsData and Information SecurityQuantum ComputingSecurity newsSecure AI? Dream on, says AI red teamBy Paul Barker Jan 17, 20257 minsArtificial IntelligenceGenerative AISecurity newsCISA publishes security goals for software development process, product designBy Paul Krill Jan 13, 20253 minsApplication SecurityData and Information SecurityDevSecOps featureThe vital role of red teaming in safeguarding AI systems and dataBy Dane Sherrets Dec 31, 20245 minsApplication SecurityData GovernanceGenerative AI opinionWeaponizing generative AIBy Matt Asay Dec 16, 20244 minsArtificial IntelligenceGenerative AISecurity newsSupply chain compromise of Ultralytics AI library results in trojanized versionsBy Lucian Constantin Dec 09, 20241 minDevelopment Libraries and FrameworksPythonSecurity featureA GRC framework for securing generative AIBy Trevor Welsh Nov 19, 202411 minsApplication SecurityData GovernanceGenerative AI ArticlesbrandpostSponsored by IDCKazakhstan’s SOS 102: Redefining Public Safety Through InnovationBy IDC Jan 23, 2025 4 minsSecuritynewsJava proposals would boost resistance to quantum computing attacksOpenJDK proposals would provide Java implementations of a quantum-resistant module-latticed-based digital signature algorithm and key encapsulation mechanism. By Paul Krill Nov 08, 2024 2 minsApplication SecurityData and Information SecurityJavanews‘Package confusion’ attack against NPM used to trick developers into downloading malwareAttackers gunning for supply chains again, deploying innovative blockchain technique to hide command & control.By John E. Dunn Nov 06, 2024 4 minsOpen SourceSecurityVulnerabilitiesnews analysisWhat Entrust certificate distrust means for developersSecure communications between web browsers and web servers depend on digital certificates backed by certificate authorities. What if the web browsers stop trusting your CA? By Travis Van Oct 30, 2024 9 minsApplication SecurityBrowser SecurityWeb DevelopmentanalysisWhy are we still confused about cloud security?We’re building too much complexity and are ill-trained to secure it. The result will be breach after breach, while enterprises wonder what happened. Get a clue now.By David Linthicum Oct 15, 2024 5 minsCloud SecurityIdentity and Access ManagementSecurity InfrastructurenewsOpen source package entry points could be used for command jackingThreat actors could use these supply chain attacks to compromise applications, says Checkmarx.By Howard Solomon Oct 14, 2024 1 minOpen SourceSecurityVulnerabilitiesanalysisWhy cloud security outranks cost and scalabilityToo many businesses believe that adequate security is too expensive. Here are some ways to keep costs manageable. By David Linthicum Oct 04, 2024 5 minsAPIsCloud SecurityMicroservicesanalysisUnderstanding VBS Enclaves, Windows’ new security technologyMicrosoft is protecting Recall’s vector indexes in trusted execution environments. It adds a bit of computational overhead, but is a must for data security.By Simon Bisson Oct 03, 2024 8 minsContainersData and Information SecurityWindows SecuritynewsJava 23 highlights crypto performance and securitySecurity-related enhancements include crypto performance updates, new debugging options, and additions to Kerberos and PKI.By Paul Krill Sep 24, 2024 3 minsJavaProgramming LanguagesSecurityopinionSecurity takes a front seatThreats that have always existed but are now amped up by generative AI are making enterprise leadership take notice and open the purse strings. By Matt Asay Aug 19, 2024 4 minsApplication SecurityCloud SecurityTechnology IndustryanalysisRed-teaming AI with PyRITMicrosoft has open sourced a key piece of its AI security, offering a toolkit that links data sets to targets and scores results, in the cloud or with small language models.By Simon Bisson Aug 15, 2024 7 minsApplication SecurityGenerative AIMicrosoft AzureanalysisFocusing open source on security, not ideologyIn today’s world where everything gets hacked, conversations about security are what’s truly important, especially to attract younger developers to open source.By Matt Asay Jul 22, 2024 4 minsCloud SecurityOpen SourceSecurity Practices Show more Show less View all Video on demand videoHow to remove sensitive data from repositories | Git DisastersEver committed sensitive information to a git repository and realized it all too late? You can always erase the repo and start over, but there are other, more elegant solutions. In this video we explore a few options for deleting confidential data from git repositories, both built into the git tool and available as third-party solutions. Jan 31, 2025 5 minsPython How to automate web app testing with Playwright Jan 09, 2025 5 minsPython Exploring new features in Cython 3.1 Jan 07, 2025 5 minsPython How to use watchdog to monitor file system changes using Python Dec 17, 2024 3 minsPythonSee all videos Explore a topic Analytics Artificial Intelligence Careers Cloud Computing Data Management Databases Development Tools Devops Emerging Technology Generative AI Java JavaScript Microsoft .NET Open Source View all topics Show me moreLatestArticlesVideos news AWS tightens default security on Redshift By Howard Solomon 04 Feb 20255 mins Data and Information Security news Rust update fixes ‘forever’ compilation By Paul Krill 04 Feb 20252 mins Programming LanguagesRustSoftware Development news Automated builds, tests, and quality gates are key to software quality – report By Paul Krill 04 Feb 20253 mins Software Development video The power of Python's abstract base classes 13 Dec 20245 mins Python video Text drawing and screen capture with Python's Pillow library 25 Nov 20243 mins Python video Use \"__main__\" in Python to make packages runnable 22 Nov 20243 mins Python