threat-intel Offensive Security Investments Surge as AI Threats Increase Research from Omdia, led by Theresa Lanowitz, indicates a growing investment in offensive cybersecurity practices due to the increasing speed and sophistication of AI-driven attacks. Organizations are seeking to expand their use of AI for penetration testing, red teaming, and vulnerability assessments, but with signifi… Dark Reading · 1d ago High aioffensive securityred teaming
threat-intel CISA Issues Fresh SBOM Guidance. Did They Get It Right? CISA has released updated guidance on Software Bill of Materials (SBOMs), adding 10 new elements and refining existing ones to improve comprehensiveness. However, critics, like OWASP founder Jeff Williams, argue that the… Dark Reading · Jul 31, 2026 Medium sbomopen sourcesupply chain
threat-intel US and Allies Update SBOM Guidance The US government, alongside 13 allied nations, has released updated guidance on Software Bill of Materials (SBOMs) to enhance software supply chain security and transparency. This revised guidance builds upon previous e… SecurityWeek · Jul 30, 2026 Info USAUsbomsupply chainsoftware security
threat-intel 2026 Minimum Elements for a Software Bill of Materials (SBOM) The U.S. government, alongside international partners, released updated guidance on Software Bill of Materials (SBOMs). This new standard, effective as of 2026, outlines the essential components needed for SBOMs, aiming… CISA Advisories · Jul 29, 2026 Info sbomsoftware securitysupply chain
threat-intel What’s Hiding in Your Mobile Apps? Lookout MSEC Aims to Find Out Lookout has launched a new Mobile Security Exposure Center (MSEC) designed to provide organizations with a deeper understanding of the vulnerabilities hidden within their mobile apps. MSEC creates a ‘software bill of mat… SecurityWeek · Jul 27, 2026 High CHmobile-securitysbomvulnerability
supply-chain Trump Orders Defense Contractors to Map Software, Suppliers Across Critical Supply Chains President Trump has signed an executive order requiring defense contractors to map and vet their entire supply chains, including software and materials, to protect national security systems from foreign influence and sub… SecurityWeek · Jul 21, 2026 High supply chainthird party risksbom
threat-intel OWASP Incubator Project Helps Developers Find and Fix Vulnerable Dependencies in Seconds This article discusses the launch of CVE Lite CLI, an open-source command-line security scanner developed by Sonu Kapoor to address the challenges of managing vulnerabilities within JavaScript and Typescript projects usi… SecurityWeek · Jun 5, 2026 Medium dependency-scanningvulnerabilityjavascript
threat-intel What Will Make AI BOMs Real? This article discusses the growing momentum behind the adoption of AI Bills of Materials (AIBOMs) within the cybersecurity industry. Driven by standards development, commercial tool releases, regulatory pressure, and evo… Dark Reading · May 19, 2026 Medium USEUaisbommodel-training