That was then, this is now….Modernizing AppSec in Fast-Paced Development Environments

You are the weakest link. Hello.    Ninety-one percent of organizations experienced at least one software supply chain security incident in 2023. Chances are the other 9% are riding their luck: The ...
image1

Using OSC&R and ASPM to Perform a Digital Learning Loop with Agentless ADR

| | ASPM, OSC&R
Digital Learning Loops (DLLs) are gaining attention for their role in continuously enhancing processes through iterative learning and feedback. In application security (AppSec), a DLL initiates by collecting data from various security ...
image2

A Top-Ten List You Don’t Want to Be On

OX Research Maps Most Common Supply Chain Vulnerabilities to Attacker TTPs For our recent threat research report, OSC&R in the Wild: A New Look at the Most Common Software Supply Chain Exposures, ...
Applications with at least one vulnerability

OSC&R Report Exposes Software Supply Chain Security Vulnerabilities

First Annual Report Analyzes Millions of Vulnerabilities Against the Industry’s First Supply-Chain Specific Attack Matrix Software is the foundation on which today’s businesses operate. From standard enterprise applications like customer relationship management ...
osc&r blog post image 1

Elevating Software Supply Chain Security with OSC&R

| | OSC&R
Five ways the OSC&R framework helps CISOs and AppSec leaders verify their software supply chain security   Software supply chains are lucrative attack targets Software supply chains are very lucrative cybersecurity attack ...