How to prevent users from registering applications in Microsoft Entra
Learn how to prevent users from registering applications in Microsoft Entra to mitigate security risks.
Learn how to prevent users from registering applications in Microsoft Entra to mitigate security risks.
Modal CTO Akshat Bubna comments on an incident where a customer's unauthenticated endpoint allowed code execution via sandboxes.
Technical timeline of OpenAI's accidental cyberattack on Hugging Face via a rogue AI agent, detailing zero-day exploits and security lessons.
Guide on securely integrating coding agents into CI/CD pipelines with sandboxing, read-only access, and human approval stages.
PyPI now rejects uploads to releases older than 14 days to prevent supply-chain attacks, as explained by Seth Larson.
This article details the Safe Codebase Audit Pipeline (SCAP), a security system for analyzing JAR bytecode in distributed Java systems to prevent supply chain attacks.
Explains what passkeys are, how they use asymmetric cryptography, and why they are more secure than passwords.
Microsoft announces retirement of SMS and voice authentication by 2027, pushing passkeys as the default MFA method.
Guide on sandboxing coding agents by using a separate user account to improve security and prevent damage from rogue AI.
Explores how AI and supply-chain governance are challenging the 'don't reinvent the wheel' mantra in software development, making custom code potentially safer and cheaper.
An open source maintainer argues vulnerability reports are no longer special due to LLMs making security insight widely accessible.
Guide to Azure machine identities, managed identities, and workload identity federation for secure, secretless architectures.
Guide to evaluating and securing Apple Intelligence features using Swift Testing and the Evaluations framework before shipping.
Guide to restricting guest invitation permissions in Microsoft Entra ID for better security and zero trust compliance.
A speaker shares their experience at Cloud Native Rejekts Europe 2026, discussing community-driven tech talks on Kubernetes incident investigation and automation.
Analysis of SQL Server security issues, vulnerability disclosure challenges, and Microsoft's documentation gaps.
Guide to securing device registration in Microsoft Entra and Intune with MFA and restrictions.
Overview of new Azure hybrid management and security features, including Azure Arc hotpatching for Windows Server 2025 and Ansible modules.
Learn how to automate security operations by combining Renovate with AI to triage dependency update PRs and detect breaking changes.
Interview with the new Ecosystem AI Security Engineer for PHP, discussing security improvements and community involvement.