US government software suppliers must attest their solutions are secure

The Office of Management and Budget (OMB) has issued a memo requiring US federal government agencies to use software that has been built according to secure software development practices and whose developers follow practices for software supply chain … Continue reading US government software suppliers must attest their solutions are secure

Automotive Software Safety and Security Still Needs Improvement

A recent blog post, “Automotive software defects”, from Phil Koopman, Carnegie Mellon professor and author of “Better Embedded Software”, talks about increasing number of software defects in automotive software that are significant safety hazards…. Continue reading Automotive Software Safety and Security Still Needs Improvement

Microsoft open-sources tool that enables continuous developer-driven fuzzing

Microsoft has open-sourced OneFuzz, its own internal continuous developer-driven fuzzing platform, allowing developers around the world to receive fuzz testing results directly from their build system. Fuzzing is an automated software testing technique… Continue reading Microsoft open-sources tool that enables continuous developer-driven fuzzing

Another Boeing Software “Glitch”

How I hate the word “glitch,” which is commonly used to describe faulty software in press reports, blogs, and the like. In my opinion, it trivializes serious software errors. So, when the word “glitch” showed up on the front pag… Continue reading Another Boeing Software “Glitch”

How Hybrid Use Benefit Reduces Azure VM Costs

Aidan Finn explains how you can use volume licensing Software Assurance or Cloud Solution Provider subscriptions for Windows Server to reduce the cost of Microsoft Azure virtual machines.

The post How Hybrid Use Benefit Reduces Azure VM Costs appeared first on Petri.

Continue reading How Hybrid Use Benefit Reduces Azure VM Costs

SCADA systems plagued by insecure development and slow patching

“Behind most modern conveniences, there exists a SCADA system somewhere that controls them,” Trend Micro researchers pointed out in a new report that delves in the heart of vulnerabilities affecting SCADA systems’ Human Machine Interfaces (HMIs). Mean time to patch vulnerabilities from the time they were disclosed by year “SCADA systems are at the core of water treatment plants, gas pipelines, electrical power distribution systems, wind farms, expansive communication systems, and even civil defense sirens. … More Continue reading SCADA systems plagued by insecure development and slow patching

Software security assurance: Everybody’s invited

As more and more things in this world of ours run on software, software security assurance – i.e. confidence that software is free from vulnerabilities (either intentional or not) and functions as intended – is becoming more important than ever. The Software Assurance Forum for Excellence in Code (SAFECode) is a non-profit organization that aims to increase that confidence and the trust users have in information and communications technology products and services. SAFECode’s work to … More Continue reading Software security assurance: Everybody’s invited

Windows Server 2016 Launches in September; Free License for VMWare Users Who Migrate

Microsoft wants to see VMWare users switch to Windows Server 2016 for their virtualization workload and they are offering free licenses in return for the migration.

read more Continue reading Windows Server 2016 Launches in September; Free License for VMWare Users Who Migrate