teiss.co.uk
Resources curated from this publisher and indexed across appsec.fyi topic pages. Last item added: 2026-08-05.
| Date Added | Resource | Excerpt |
|---|---|---|
| 2026-08-05 2026 | The next step in software supply chain securitySupply Chain | Library for managing Software Bills of Materials (SBOMs), crucial for understanding application dependencies amidst supply chain attacks and regulatory pressures like the EU's Cyber Resilience Act. This resource highlights the importance of integrating SBOMs with security processes for rapid identification of vulnerabilities, such as Log4Shell, and ensuring data accuracy and accessibility for effective threat response. |
| 2026-07-10 2026 | Securing supply chains from network-based threatsSupply Chain | Library for securing supply chains from network-based threats, focusing on visibility, control, and resilience. It details proactive vendor assessment, continuous monitoring, behavior-based endpoint protection, and managed hosting with robust access controls. Specific measures include regular audits of third-party partners against standards like ISO and GDPR, adopting least-privilege access, network segmentation, intrusion detection systems, and mandatory multi-factor authentication. The library also emphasizes the importance of enterprise-grade email security with behavioral detection, DNS filtering, web protection, and modern endpoint solutions leveraging machine learning and analytics for zero-day exploit detection. Continuous security awareness training is highlighted as crucial for strengthening the human element. |
| 2026-07-07 2026 | Software transparency becomes cyber-security prioritySupply Chain | Survey of software supply chain security trends, highlighting the accelerated adoption of Software Bills of Materials (SBOMs) driven by upcoming EU Cyber Resilience Act (CRA) regulations. This shift moves beyond traditional vulnerability management to prioritize full transparency of software components, including open-source libraries and third-party dependencies, to better identify risks and respond to emerging threats before the CRA's December 2027 effective date. |
| 2026-05-28 2026 | Multiple German hospitals impacted in billing provider data breachSupply Chain | Breach detailing how hackers compromised Unimed, a German medical billing provider, impacting multiple university hospitals and leading to the theft of vast amounts of patient data, including billing disputes and personal information, affecting thousands of individuals across cities like Freiburg and Cologne. |
| 2026-05-07 2026 | Disc Soft confirms DAEMON Tools Lite supply chain attack exposed thousands of systems worldwideSupply Chain | Disc Soft has confirmed a supply chain attack targeting DAEMON Tools Lite, a popular disk imaging software. This attack, which exploited a vulnerability in the software's update mechanism, exposed thousands of systems globally. Attackers were able to distribute malware disguised as legitimate software updates. The exact number of affected users and the potential for further exploitation remain under investigation. No bug bounty payout amount was mentioned. |