Tag
#OSV
3 stories taggedOSV.

Vulnerabilities
Homebrew 7.0.0 ships a vulnerability scanner and locks down its sandbox
The macOS package manager now checks installed software against a public flaw database and blocks default access to your home folder.
4 min read

Threat Intelligence
GlassWorm Is Down. The Repository Problem Isn't.
CrowdStrike, Google, and Shadowserver severed four C2 channels simultaneously. Meanwhile, 157 OSV false positives quietly eroded trust in the tools defenders depend on.
3 min read

Vulnerabilities
Your CI Pipeline Is Already Too Late — CVE Lite CLI Disagrees With Your Entire Workflow
An OWASP-backed JavaScript dependency scanner built by Sonu Kapoor wants to catch vulnerable packages the moment a developer types the install command, not when the build breaks at 2 a.m.
3 min read