Blog

From the blog

Perspectives on regulation, supply-chain attacks and compliance.

Categories
Topics
9 posts
10 Mar 2026 · Resources, Solutions

TrustSource adds EoL data

Unknown EoL components silently threaten security every day. The EU Cyber Resilience Act makes lifecycle management mandatory. TrustSource alerts you automatically – before it's too late.

27 Feb 2026 · Knowledge, Resources, Solutions

Securing the foundations

SCA in C/C++ world remains a challenge. Learn how bimodal scanning will help you to reduce analysis efforts...

cpluspluscryptocybersecurityembeddedSBOM
1 Feb 2026 · Cryptography, Knowledge

Beyond the Horizon: The Architecture of Quantum Resilience

Post Quantum Readiness requires as a first step to set up an asset inventory cataloging the algorithms used. This is a prerequisite to achieve "Quantum Agility". Read what is required to provide such an inventory and how TrustSource may help you to achieve it.

crypto-algorithmsinventorypost-quantumquantumquantum agility
28 Jan 2026 · Announcements, Products, Solutions

ts-scan available as github-action

TrustSource added ts-scan github action to github's marketplace. You may add it directly into your repositories workflows. Read more for details!

algorithmsautomationcompliancecrypto-algorithmscyclonedx
25 Jan 2026 · Cryptography, Knowledge, Security, Solutions

Navigating PQC Threat

Understand the threats arising from quantum computing to today's cryptography and learn how to protect your applications.

crypto-agorithmsencryptionpost-quantumquantumSCA
24 Sept 2025 · Products, Security, Solutions

Update ts-scan to v1.5.2

Based on the learnings from the Shai-Hulud attack, we decided to limit the default configuration of ts-scan to prevent the execution of scripts referred to in the package.json. To profit from this additional security, you will need to upgrade to the latest version of ts-scan.

9 Sept 2025 · Knowledge, Security

Tackling the nx-Challenge

the latest software supply chain attack on the nx component is a good example on how vulnerable our development environments are. This article gives summarizes the situation, shows how you may resolve it fast and gives some advice for future setups.

component impactsoftware supply chain securitySSCS
28 Jan 2025 · Security

TrustSource Security Information - TSSI250000 - empty Vulnerability

# TSSI-25:0000 - Security Information issued: 2025-01-28T22:30:00.000Zupdated: 2025-01-28T22:30:00.000Z ## Synopsis Informational: This document has been prepared and will be continuously updated to p...

informationsecurityvdf
19 Jan 2025 · Announcements, Knowledge, Resources

Cyber Resilience Act published

The EU Cyber Resilience Act (CRA) has been published recently. This article summarises the major impacts and obligations this will cause.

CRACyber Resilience ActEunew regulationsobligations