#securesoftware — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #securesoftware, aggregated by home.social.
-
We tried “vibe coding” a web app with AI, then checked it against OWASP Top 10 2025.
Even a clean-looking MVP quickly picked up real security issues: SSRF, XSS, insecure defaults, missing logging.
Iterating with AI helped, but didn’t solve everything. See the results of the experiment:
https://softwaremill.com/vibe-coding-against-owasp-top-10-2025/ -
We tried “vibe coding” a web app with AI, then checked it against OWASP Top 10 2025.
Even a clean-looking MVP quickly picked up real security issues: SSRF, XSS, insecure defaults, missing logging.
Iterating with AI helped, but didn’t solve everything. See the results of the experiment:
https://softwaremill.com/vibe-coding-against-owasp-top-10-2025/ -
We tried “vibe coding” a web app with AI, then checked it against OWASP Top 10 2025.
Even a clean-looking MVP quickly picked up real security issues: SSRF, XSS, insecure defaults, missing logging.
Iterating with AI helped, but didn’t solve everything. See the results of the experiment:
https://softwaremill.com/vibe-coding-against-owasp-top-10-2025/ -
We tried “vibe coding” a web app with AI, then checked it against OWASP Top 10 2025.
Even a clean-looking MVP quickly picked up real security issues: SSRF, XSS, insecure defaults, missing logging.
Iterating with AI helped, but didn’t solve everything. See the results of the experiment:
https://softwaremill.com/vibe-coding-against-owasp-top-10-2025/ -
We tried “vibe coding” a web app with AI, then checked it against OWASP Top 10 2025.
Even a clean-looking MVP quickly picked up real security issues: SSRF, XSS, insecure defaults, missing logging.
Iterating with AI helped, but didn’t solve everything. See the results of the experiment:
https://softwaremill.com/vibe-coding-against-owasp-top-10-2025/ -
The EU Cyber Resilience Act (CRA) is about to fundamentally change how software teams build and ship products in the EU.
We break down how teams can prepare without slowing innovation.
Link to the full guide: https://www.activestate.com/blog/eu-cyber-resilience-act-and-secure-open-source-and-containers/
#EUCRA #DevSecOps #OpenSourceSecurity #SecureSoftware #ContainerSecurity
-
The EU Cyber Resilience Act (CRA) is about to fundamentally change how software teams build and ship products in the EU.
We break down how teams can prepare without slowing innovation.
Link to the full guide: https://www.activestate.com/blog/eu-cyber-resilience-act-and-secure-open-source-and-containers/
#EUCRA #DevSecOps #OpenSourceSecurity #SecureSoftware #ContainerSecurity
-
Federal Cybersecurity Rollbacks: What Got Cut—And What Still Stands
In June 2025, a quiet executive order from the White House eliminated several key cybersecurity requirements for federal systems. In this episode of Cyberside Chats, @sherridavidoff and @MDurrin break down what’s changing and why it matters for your organization.
We'll share:
▪ Which cybersecurity rules were rolled back (and which ones remain)
▪ What the removal of secure software attestations means for vendors
▪ Why post-quantum encryption and the FTC Cyber Trust Mark still matter
▪ How this moment echoes past compliance gaps like PCI
▪ What security leaders should prioritize right now▶ Watch the video: https://youtu.be/GIWBHKwydMA
🎧 Listen to the podcast: https://www.chatcyberside.com/e/executive-order-shockwave-the-future-of-cybersecurity-unveiled/#FederalCybersecurity #CyberExecutiveOrder #CybersecurityPolicy #ExecutiveOrder #CISOs #CyberCompliance #SupplyChainSecurity #ZeroTrust #PostQuantum #LMGSecurity #Cybersecurity #CyberRisk #SecureSoftware #CybersideChats #RiskManagement
-
Federal Cybersecurity Rollbacks: What Got Cut—And What Still Stands
In June 2025, a quiet executive order from the White House eliminated several key cybersecurity requirements for federal systems. In this episode of Cyberside Chats, @sherridavidoff and @MDurrin break down what’s changing and why it matters for your organization.
We'll share:
▪ Which cybersecurity rules were rolled back (and which ones remain)
▪ What the removal of secure software attestations means for vendors
▪ Why post-quantum encryption and the FTC Cyber Trust Mark still matter
▪ How this moment echoes past compliance gaps like PCI
▪ What security leaders should prioritize right now▶ Watch the video: https://youtu.be/GIWBHKwydMA
🎧 Listen to the podcast: https://www.chatcyberside.com/e/executive-order-shockwave-the-future-of-cybersecurity-unveiled/#FederalCybersecurity #CyberExecutiveOrder #CybersecurityPolicy #ExecutiveOrder #CISOs #CyberCompliance #SupplyChainSecurity #ZeroTrust #PostQuantum #LMGSecurity #Cybersecurity #CyberRisk #SecureSoftware #CybersideChats #RiskManagement
-
Federal Cybersecurity Rollbacks: What Got Cut—And What Still Stands
In June 2025, a quiet executive order from the White House eliminated several key cybersecurity requirements for federal systems. In this episode of Cyberside Chats, @sherridavidoff and @MDurrin break down what’s changing and why it matters for your organization.
We'll share:
▪ Which cybersecurity rules were rolled back (and which ones remain)
▪ What the removal of secure software attestations means for vendors
▪ Why post-quantum encryption and the FTC Cyber Trust Mark still matter
▪ How this moment echoes past compliance gaps like PCI
▪ What security leaders should prioritize right now▶ Watch the video: https://youtu.be/GIWBHKwydMA
🎧 Listen to the podcast: https://www.chatcyberside.com/e/executive-order-shockwave-the-future-of-cybersecurity-unveiled/#FederalCybersecurity #CyberExecutiveOrder #CybersecurityPolicy #ExecutiveOrder #CISOs #CyberCompliance #SupplyChainSecurity #ZeroTrust #PostQuantum #LMGSecurity #Cybersecurity #CyberRisk #SecureSoftware #CybersideChats #RiskManagement
-
Ensure your product's quality with our comprehensive software testing services—manual 📝, automated 🤖, and more.
From unit 🔍 to security 🔒 and Google Webmaster 🌐 testing, we make sure your program is bug-free, secure, and ready for smooth operations.
Trust Neuronus for reliable, top-notch testing solutions.
Contact us to be part of our creative journey!👉https://v2.neuronus.net/contact/
#SoftwareTesting #AutomatedTesting #TopNotchTesting #SecureSoftware #TestingServices #Neuronus
-
Ensure your product's quality with our comprehensive software testing services—manual 📝, automated 🤖, and more.
From unit 🔍 to security 🔒 and Google Webmaster 🌐 testing, we make sure your program is bug-free, secure, and ready for smooth operations.
Trust Neuronus for reliable, top-notch testing solutions.
Contact us to be part of our creative journey!👉https://v2.neuronus.net/contact/
#SoftwareTesting #AutomatedTesting #TopNotchTesting #SecureSoftware #TestingServices #Neuronus
-
Want to level up your security game in 2025? 🔐
We’ve curated the Top 5 DevSecOps Events you can’t miss this year! These events are perfect for developers, security pros, and DevOps teams looking to stay ahead of open source security trends and strengthen their software supply chains.
Discover where to learn, connect, and innovate: https://www.activestate.com/blog/level-up-your-security-game-top-5-devsecops-events-to-attend-in-2025/
-
Want to level up your security game in 2025? 🔐
We’ve curated the Top 5 DevSecOps Events you can’t miss this year! These events are perfect for developers, security pros, and DevOps teams looking to stay ahead of open source security trends and strengthen their software supply chains.
Discover where to learn, connect, and innovate: https://www.activestate.com/blog/level-up-your-security-game-top-5-devsecops-events-to-attend-in-2025/
-
Broken access control is a critical vulnerability enterprises can’t afford to ignore. 🚨
In our latest blog, we dive into:
🔐 Real-world examples of broken access control
🛡️ The risks it poses to your organization
🔒 Best practices to mitigate vulnerabilitiesSecure your software supply chain and protect your business. Read the blog today: https://www.activestate.com/blog/the-risks-of-broken-access-control-explained-vulnerabilities-examples-best-practices/
-
Broken access control is a critical vulnerability enterprises can’t afford to ignore. 🚨
In our latest blog, we dive into:
🔐 Real-world examples of broken access control
🛡️ The risks it poses to your organization
🔒 Best practices to mitigate vulnerabilitiesSecure your software supply chain and protect your business. Read the blog today: https://www.activestate.com/blog/the-risks-of-broken-access-control-explained-vulnerabilities-examples-best-practices/
-
The Importance of Data Security in Business Software
Data security is crucial in our increasingly digital environment. Leading companies implement strong security measures in their software to safeguard sensitive information and build trust. How does your company approach data security? -
To avoid the next CrowdStrike fiasco, CISA recommends embracing safe deployment practices earlier in the SDLC. #CISA #SecureSoftware #SecureDeployment #SupplyChainSecurity
https://jpmellojr.blogspot.com/2024/11/cisas-secure-software-deployment-push.html -
💻 Empower your software development with OpenSSF's free "Developing Secure Software" and check out the newly added labs for practice countering attacks! 💻
🎥 Watch the demo: https://youtu.be/lGC2H6LYLXY?feature=shared
📚 Enroll here: https://hubs.la/Q02N_RB80
-
💻 Empower your software development with OpenSSF's free "Developing Secure Software" and check out the newly added labs for practice countering attacks! 💻
🎥 Watch the demo: https://youtu.be/lGC2H6LYLXY?feature=shared
📚 Enroll here: https://hubs.la/Q02N_RB80
-
💻 Empower your software development with OpenSSF's free "Developing Secure Software" and check out the newly added labs for practice countering attacks! 💻
🎥 Watch the demo: https://youtu.be/lGC2H6LYLXY?feature=shared
📚 Enroll here: https://hubs.la/Q02N_RB80
-
💻 Empower your software development with OpenSSF's free "Developing Secure Software" and check out the newly added labs for practice countering attacks! 💻
🎥 Watch the demo: https://youtu.be/lGC2H6LYLXY?feature=shared
📚 Enroll here: https://hubs.la/Q02N_RB80
-
💻 Empower your software development with OpenSSF's free "Developing Secure Software" and check out the newly added labs for practice countering attacks! 💻
🎥 Watch the demo: https://youtu.be/lGC2H6LYLXY?feature=shared
📚 Enroll here: https://hubs.la/Q02N_RB80
-
Cisco discloses a 10.0 CVSS rating vulnerability in SSM On-Prem
https://stackdiary.com/cisco-discloses-cve-2024-20419-for-ssm-on-prem/
#Cisco #Security #Vulnerability #Cybersecurity #CVSS #Hackers #Exploitation #ITsecurity #DataBreach #Software #TechNews #SecurityFlaw #NetworkSecurity #CriticalUpdate #Admins #DataProtection #PatchNow #Infosec #CyberThreats #SecureNetworks #TechUpdate #DigitalSafety #SoftwareBug #CyberDefense #CriticalVulnerability #ITupdate #SystemAdmin #SecureSoftware #NetworkAdmin #CyberAlert #CVE
-
Cisco discloses a 10.0 CVSS rating vulnerability in SSM On-Prem
https://stackdiary.com/cisco-discloses-cve-2024-20419-for-ssm-on-prem/
#Cisco #Security #Vulnerability #Cybersecurity #CVSS #Hackers #Exploitation #ITsecurity #DataBreach #Software #TechNews #SecurityFlaw #NetworkSecurity #CriticalUpdate #Admins #DataProtection #PatchNow #Infosec #CyberThreats #SecureNetworks #TechUpdate #DigitalSafety #SoftwareBug #CyberDefense #CriticalVulnerability #ITupdate #SystemAdmin #SecureSoftware #NetworkAdmin #CyberAlert #CVE
-
Cisco discloses a 10.0 CVSS rating vulnerability in SSM On-Prem
https://stackdiary.com/cisco-discloses-cve-2024-20419-for-ssm-on-prem/
#Cisco #Security #Vulnerability #Cybersecurity #CVSS #Hackers #Exploitation #ITsecurity #DataBreach #Software #TechNews #SecurityFlaw #NetworkSecurity #CriticalUpdate #Admins #DataProtection #PatchNow #Infosec #CyberThreats #SecureNetworks #TechUpdate #DigitalSafety #SoftwareBug #CyberDefense #CriticalVulnerability #ITupdate #SystemAdmin #SecureSoftware #NetworkAdmin #CyberAlert #CVE
-
Cisco discloses a 10.0 CVSS rating vulnerability in SSM On-Prem
https://stackdiary.com/cisco-discloses-cve-2024-20419-for-ssm-on-prem/
#Cisco #Security #Vulnerability #Cybersecurity #CVSS #Hackers #Exploitation #ITsecurity #DataBreach #Software #TechNews #SecurityFlaw #NetworkSecurity #CriticalUpdate #Admins #DataProtection #PatchNow #Infosec #CyberThreats #SecureNetworks #TechUpdate #DigitalSafety #SoftwareBug #CyberDefense #CriticalVulnerability #ITupdate #SystemAdmin #SecureSoftware #NetworkAdmin #CyberAlert #CVE
-
Cisco discloses a 10.0 CVSS rating vulnerability in SSM On-Prem
https://stackdiary.com/cisco-discloses-cve-2024-20419-for-ssm-on-prem/
#Cisco #Security #Vulnerability #Cybersecurity #CVSS #Hackers #Exploitation #ITsecurity #DataBreach #Software #TechNews #SecurityFlaw #NetworkSecurity #CriticalUpdate #Admins #DataProtection #PatchNow #Infosec #CyberThreats #SecureNetworks #TechUpdate #DigitalSafety #SoftwareBug #CyberDefense #CriticalVulnerability #ITupdate #SystemAdmin #SecureSoftware #NetworkAdmin #CyberAlert #CVE
-
7-Zip quietly fixes a buffer overflow vulnerability
https://stackdiary.com/7-zip-quietly-fixes-a-buffer-overflow-vulnerability/
#CyberSecurity #InfoSec #DataBreach #Vulnerability #SoftwareUpdate #7Zip #TechNews #SecurityPatch #BufferOverflow #DataProtection #SecurityAlert #HackerNews #Malware #SecureSoftware #Privacy #CyberAttack #TechAlert #BugFix #SecurityBreach #DataSecurity #CyberSafety #InfosecNews #TechUpdates #SecurityFirst #Exploit #SecureTech #OnlineSecurity #SecureUpdate #SecurityMatters #TechSafety
-
7-Zip quietly fixes a buffer overflow vulnerability
https://stackdiary.com/7-zip-quietly-fixes-a-buffer-overflow-vulnerability/
#CyberSecurity #InfoSec #DataBreach #Vulnerability #SoftwareUpdate #7Zip #TechNews #SecurityPatch #BufferOverflow #DataProtection #SecurityAlert #HackerNews #Malware #SecureSoftware #Privacy #CyberAttack #TechAlert #BugFix #SecurityBreach #DataSecurity #CyberSafety #InfosecNews #TechUpdates #SecurityFirst #Exploit #SecureTech #OnlineSecurity #SecureUpdate #SecurityMatters #TechSafety
-
7-Zip quietly fixes a buffer overflow vulnerability
https://stackdiary.com/7-zip-quietly-fixes-a-buffer-overflow-vulnerability/
#CyberSecurity #InfoSec #DataBreach #Vulnerability #SoftwareUpdate #7Zip #TechNews #SecurityPatch #BufferOverflow #DataProtection #SecurityAlert #HackerNews #Malware #SecureSoftware #Privacy #CyberAttack #TechAlert #BugFix #SecurityBreach #DataSecurity #CyberSafety #InfosecNews #TechUpdates #SecurityFirst #Exploit #SecureTech #OnlineSecurity #SecureUpdate #SecurityMatters #TechSafety
-
7-Zip quietly fixes a buffer overflow vulnerability
https://stackdiary.com/7-zip-quietly-fixes-a-buffer-overflow-vulnerability/
#CyberSecurity #InfoSec #DataBreach #Vulnerability #SoftwareUpdate #7Zip #TechNews #SecurityPatch #BufferOverflow #DataProtection #SecurityAlert #HackerNews #Malware #SecureSoftware #Privacy #CyberAttack #TechAlert #BugFix #SecurityBreach #DataSecurity #CyberSafety #InfosecNews #TechUpdates #SecurityFirst #Exploit #SecureTech #OnlineSecurity #SecureUpdate #SecurityMatters #TechSafety
-
7-Zip quietly fixes a buffer overflow vulnerability
https://stackdiary.com/7-zip-quietly-fixes-a-buffer-overflow-vulnerability/
#CyberSecurity #InfoSec #DataBreach #Vulnerability #SoftwareUpdate #7Zip #TechNews #SecurityPatch #BufferOverflow #DataProtection #SecurityAlert #HackerNews #Malware #SecureSoftware #Privacy #CyberAttack #TechAlert #BugFix #SecurityBreach #DataSecurity #CyberSafety #InfosecNews #TechUpdates #SecurityFirst #Exploit #SecureTech #OnlineSecurity #SecureUpdate #SecurityMatters #TechSafety
-
Learn the core concepts and best practices of DevSecOps with the latest book, "Concepts and Practices of DevSecOps" authored by our CEO Mr. Ashwini Rath. Dive into the world of cutting-edge technology. Grab your copy now!
#NewBookRelease #DevSecOps #SecureCoding #ContinuousIntegration #ContinuousDelivery #SoftwareDevelopment #CyberSecurity #InfoSec #DevOps #NewRelease #BookLaunch #TechBooks #LearnTech #SecureSoftware -
Learn the core concepts and best practices of DevSecOps with the latest book, "Concepts and Practices of DevSecOps" authored by our CEO Mr. Ashwini Rath. Dive into the world of cutting-edge technology. Grab your copy now!
#NewBookRelease #DevSecOps #SecureCoding #ContinuousIntegration #ContinuousDelivery #SoftwareDevelopment #CyberSecurity #InfoSec #DevOps #NewRelease #BookLaunch #TechBooks #LearnTech #SecureSoftware -
Learn the core concepts and best practices of DevSecOps with my latest book, "Concepts and Practices of DevSecOps"
Dive into the world of cutting-edge technology. Grab your copy now!
#NewBookRelease #DevSecOps #SecureCoding #ContinuousIntegration #ContinuousDelivery #SoftwareDevelopment #CyberSecurity #InfoSec #DevOps #NewRelease #BookLaunch #TechBooks #LearnTech #SecureSoftware
-
Learn the core concepts and best practices of DevSecOps with my latest book, "Concepts and Practices of DevSecOps"
Dive into the world of cutting-edge technology. Grab your copy now!
#NewBookRelease #DevSecOps #SecureCoding #ContinuousIntegration #ContinuousDelivery #SoftwareDevelopment #CyberSecurity #InfoSec #DevOps #NewRelease #BookLaunch #TechBooks #LearnTech #SecureSoftware
-
#OpenSource Software Security Handbook – Best Practices for Securing Your Projects 👇💡👌
https://www.freecodecamp.org/news/oss-security-best-practices/amp/#the-iceberg-analogy
-
#OpenSource Software Security Handbook – Best Practices for Securing Your Projects 👇💡👌
https://www.freecodecamp.org/news/oss-security-best-practices/amp/#the-iceberg-analogy
-
#OpenSource Software Security Handbook – Best Practices for Securing Your Projects 👇💡👌
https://www.freecodecamp.org/news/oss-security-best-practices/amp/#the-iceberg-analogy