CSO

The day's top cybersecurity news and in-depth coverage

CSO First Look

February 22, 2022

Drop the SBOM

Software bills of material are having a moment, but the costs of an externally visible SBOM are likely to outweigh the benefits, says Andy Ellis. Read more ▶

Image: Why DevOps pipelines are under attack and how to fight back

Why DevOps pipelines are under attack and how to fight back

NotPetya proved the effectiveness of an attack on the software supply chain, and attackers are targeting it more now. Here's advice to reduce risk to your DevOps processes.

Dangerous privilege escalation bugs found in Linux package manager Snap

Newly discovered Snap flaw allows a low-privileged user to gain root access.

Top cybersecurity M&A deals for 2022

The hot cybersecurity mergers and acquisition market continues into 2022 as vendors look to solidify their positions and expand their offerings.

Image: Motorola case shows importance of detecting insider IP theft quickly

Motorola case shows importance of detecting insider IP theft quickly

Departing Motorola employees took thousands of documents with them in 2008 when they were hired by a competitor, but it wasn't discovered until 2017.

Security asset management should be buttoned down. It isn’t.

Organizations struggle to understand what assets they have and whether they are at risk. This opens the door for exploitation.

Shifting security left at WGU

“We have better security success when the developers are taking part in it,” says James Chandler, VP of security for Western Governors University.

CSO
Facebook Twitter LinkedIn
© 2022 CSO
140 Kendrick Street, Building B
Needham, MA 02494