appsec.fyi · Sources

teiss.co.uk

5 curated AppSec resources from teiss.co.uk across 1 topics on appsec.fyi.

teiss.co.uk

Resources curated from this publisher and indexed across appsec.fyi topic pages. Last item added: 2026-08-05.

Date Added Resource Excerpt
2026-08-05 2026The next step in software supply chain securitySupply ChainLibrary for managing Software Bills of Materials (SBOMs), crucial for understanding application dependencies amidst supply chain attacks and regulatory pressures like the EU's Cyber Resilience Act. This resource highlights the importance of integrating SBOMs with security processes for rapid identification of vulnerabilities, such as Log4Shell, and ensuring data accuracy and accessibility for effective threat response.
2026-07-10 2026Securing supply chains from network-based threatsSupply ChainLibrary for securing supply chains from network-based threats, focusing on visibility, control, and resilience. It details proactive vendor assessment, continuous monitoring, behavior-based endpoint protection, and managed hosting with robust access controls. Specific measures include regular audits of third-party partners against standards like ISO and GDPR, adopting least-privilege access, network segmentation, intrusion detection systems, and mandatory multi-factor authentication. The library also emphasizes the importance of enterprise-grade email security with behavioral detection, DNS filtering, web protection, and modern endpoint solutions leveraging machine learning and analytics for zero-day exploit detection. Continuous security awareness training is highlighted as crucial for strengthening the human element.
2026-07-07 2026Software transparency becomes cyber-security prioritySupply ChainSurvey of software supply chain security trends, highlighting the accelerated adoption of Software Bills of Materials (SBOMs) driven by upcoming EU Cyber Resilience Act (CRA) regulations. This shift moves beyond traditional vulnerability management to prioritize full transparency of software components, including open-source libraries and third-party dependencies, to better identify risks and respond to emerging threats before the CRA's December 2027 effective date.
2026-05-28 2026Multiple German hospitals impacted in billing provider data breachSupply ChainBreach detailing how hackers compromised Unimed, a German medical billing provider, impacting multiple university hospitals and leading to the theft of vast amounts of patient data, including billing disputes and personal information, affecting thousands of individuals across cities like Freiburg and Cologne.
2026-05-07 2026Disc Soft confirms DAEMON Tools Lite supply chain attack exposed thousands of systems worldwideSupply ChainDisc Soft has confirmed a supply chain attack targeting DAEMON Tools Lite, a popular disk imaging software. This attack, which exploited a vulnerability in the software's update mechanism, exposed thousands of systems globally. Attackers were able to distribute malware disguised as legitimate software updates. The exact number of affected users and the potential for further exploitation remain under investigation. No bug bounty payout amount was mentioned.