From the blog
Perspectives on regulation, supply-chain attacks and compliance.
TrustSource adds EoL data
Unknown EoL components silently threaten security every day. The EU Cyber Resilience Act makes lifecycle management mandatory. TrustSource alerts you automatically – before it's too late.
Securing the foundations
SCA in C/C++ world remains a challenge. Learn how bimodal scanning will help you to reduce analysis efforts...
Beyond the Horizon: The Architecture of Quantum Resilience
Post Quantum Readiness requires as a first step to set up an asset inventory cataloging the algorithms used. This is a prerequisite to achieve "Quantum Agility". Read what is required to provide such an inventory and how TrustSource may help you to achieve it.
ts-scan available as github-action
TrustSource added ts-scan github action to github's marketplace. You may add it directly into your repositories workflows. Read more for details!
Navigating PQC Threat
Understand the threats arising from quantum computing to today's cryptography and learn how to protect your applications.
Update ts-scan to v1.5.2
Based on the learnings from the Shai-Hulud attack, we decided to limit the default configuration of ts-scan to prevent the execution of scripts referred to in the package.json. To profit from this additional security, you will need to upgrade to the latest version of ts-scan.
Tackling the nx-Challenge
the latest software supply chain attack on the nx component is a good example on how vulnerable our development environments are. This article gives summarizes the situation, shows how you may resolve it fast and gives some advice for future setups.
TrustSource Security Information - TSSI250000 - empty Vulnerability
# TSSI-25:0000 - Security Information issued: 2025-01-28T22:30:00.000Zupdated: 2025-01-28T22:30:00.000Z ## Synopsis Informational: This document has been prepared and will be continuously updated to p...
Cyber Resilience Act published
The EU Cyber Resilience Act (CRA) has been published recently. This article summarises the major impacts and obligations this will cause.