Sign in

ReversingLabs

@reversinglabs.com
134 followers 85 following 334 posts

ReversingLabs is the trusted name in file and software security. RL - Trust Delivered.

PostsRepliesMedia
ReversingLabs @reversinglabs.com · 25/06/2026
The question is no longer "Is this software secure?" It's "Can this software be trusted?" Trust should be verified, not assumed. Download your copy of the inaugural Gartner® Magic Quadrant™ for Software Supply Chain Security report here: www.reversinglabs.com/2026-gartner...
010
ReversingLabs @reversinglabs.com · 22/04/2026
Attackers hid their changes in files promising to improve extensions #MCP server support, but fetch a malicious payload from an impostor commit on @github.com linked to the #cx-bot-gh public service account. Our threat research team is monitoring the situation. secure.software/vscode/packa...
000
ReversingLabs @reversinglabs.com · 22/04/2026
It looks like #TeamPCP has again compromised #Checkmarx #VSCode extensions and #Docker images. Newly published VSCode extensions checkmarx.cx-dev-assist (1.17.0 & 1.19.0) and checkmarx.ast-results (2.63.0 & 2.66.0) contain malicious code. secure.software/vscode/packa...
Report: threats detected in Checkmarx Developer Assist - image from secure.software.
221
ReversingLabs @reversinglabs.com · 14/04/2026
High-end AppSec isn’t just for the Fortune 500. Spectra Assure Community gives devs, AppSec teams & OSS maintainers pro-grade supply chain security insights — without the cost or complexity. Move beyond blind trust 👉 secure.software/user/signup
000
ReversingLabs @reversinglabs.com · 27/01/2026
📣 RL's 4th annual report on the state of #SoftwareSupplyChainSecurity is now available: bit.ly/3Fq6F3W #AppSec #DevSecOps
120
ReversingLabs @reversinglabs.com · 15/01/2026
🚨New Feature Alert: secure.software now offers free, single click #SBOM delivery in the CycloneDX format. See it in action: app.arcade.software/share/oBBgnr... #Dev #AppSec #DevSecOps
000
ReversingLabs @reversinglabs.com · 14/01/2026
📆 Next Thursday: RL researchers break down real-world campaigns uncovered in the closing months of 2025 across NuGet, PyPI, PowerShell & VS Code: bit.ly/4sCIh3f #SoftwareSupplyChainSecurity #Dev #Cybersecurity
010
ReversingLabs @reversinglabs.com · 08/01/2026
🧵Introducing: 🚨New Feature Alert → a series dedicated to RL product updates! This week, we’re excited to unveil a dedicated #Malware page in the RL-SAFE Report: app.arcade.software/share/H7euVM... #SoftwareSupplyChainSecurity #DevSecOps
000
ReversingLabs @reversinglabs.com · 16/12/2025
📣 RL has won the 2025 Intellyx Digital Innovator Award! We are so appreciative. #Cybersecurity
Promotional image featuring the ReversingLabs logo with text stating 'RL is a winner!' along with an award from Intellyx labeled 'Digital Innovator 2025'.
000
ReversingLabs @reversinglabs.com · 09/12/2025
📆 Happening in 1 week: A live roundup of 2025's #SoftwareSupplyChain breaches. Register: bit.ly/4iLpa2t #DevSecOps #Dev #Cybersecurity
Promotional image for a Spectra Collective event titled "The 2025 Supply Chain Breach Roundup: What This Year's Biggest Incidents Teach Us." Features speakers Andy Lewis and Jasmine Noel. Scheduled for December 16th, 2025 from 11 AM to 12 PM EST. Both speakers are smiling, dressed in professional attire.
010
ReversingLabs @reversinglabs.com · 02/12/2025
As of right now, RL researchers are still analyzing the 2 second stage binaries, but its worth noting that these were flagged on publication as malicious by our predictive ML algorithms.
000
ReversingLabs @reversinglabs.com · 02/12/2025
The decoded "lock" payload extracts 2 executables from the supposed image "banner.png" & sets up a service to execute them using a service & "cmstp.exe."
100
ReversingLabs @reversinglabs.com · 02/12/2025
The file "index.js" was changed to introduce new functionality that decodes "lock" & subsequently executes it.
100
ReversingLabs @reversinglabs.com · 02/12/2025
2 files were introduced: "banner.png" & "lock," while "index.js" was modified.
100
ReversingLabs @reversinglabs.com · 02/12/2025
🎉 ConversingLabs #Podcast has been featured in FeedSpot's list of 10 best #IncidentResponse podcasts! The show features some of the best experts in #cybersecurity. 🎧 Listen wherever you get your podcasts: bit.ly/443uzMd
010
ReversingLabs @reversinglabs.com · 21/11/2025
This time, the malicious C# code downloads an "icon" from a remote server, copies its binary content to newly allocated memory with execute permissions & executes it. This is textbook shellcode injection. The code in the picture has been modified in order to fit the whole logic.
100
ReversingLabs @reversinglabs.com · 21/11/2025
It uses an #npm package "electron-edge-js" to execute inline .NET code. This method has previously been seen & discussed by Check Point, where #malware authors embedded the shellcode inside the CSharp code itself: blog.checkpoint.com/securing-the...
100
ReversingLabs @reversinglabs.com · 18/11/2025
📣 The RL Browser Extension is now available in both the Google Chrome & Microsoft Edge stores. It adds contextual #ThreatIntel to all browser based workflows (EDR, XDR, SIEM, etc): bit.ly/3XyIYvZ #SecOps
000
ReversingLabs @reversinglabs.com · 18/11/2025
📣 ICYMI: Devs can now vet the security of #PowerShell modules for free with secure.software. Try it now & learn more: bit.ly/484lK64
100
ReversingLabs @reversinglabs.com · 05/11/2025
🎙️In the latest episode of ConversingLabs #Podcast, @bugcrowd.com founder @cje.io discusses AI's impact on vulnerability management: bit.ly/43O0vnx
011
ReversingLabs @reversinglabs.com · 30/10/2025
🛡️ Shout out to RL community manager @kadigrigg.bsky.social for taking part in this #cybersecurity panel at the rvatech/ #WomenInTech conference!
020
ReversingLabs @reversinglabs.com · 27/10/2025
📆 This Thursday, dive into the anatomy of real-world software supply chain attacks like Shai-hulud, Qix & the Salesloft/Drift compromise: bit.ly/47r2Wxc #SoftwareSupplyChainSecurity #DevSecOps #AppSec
Promotional image for a ReversingLabs webinar titled 'Anatomy of a Software Supply Chain Attack: Lessons from Real-World Compromises Across the SDLC' featuring speakers Dave Ferguson, Director of Product Management, and Jasmine Noel, Sr. Product Marketing Manager. Scheduled for October 30, 12-1 PM ET.
000
ReversingLabs @reversinglabs.com · 21/10/2025
The #SOC needs multiple vantage points when investigating #malware. Use this link to get all the new updates for RL's #MalwareAnalysis & #ThreatHunting capabilities: bit.ly/4ovf1ID
000
ReversingLabs @reversinglabs.com · 20/10/2025
RL recently introduced significant updates to its #MalwareAnalysis & #ThreatHunting portfolio, adding new AI-driven & Kubernetes-ready capabilities. Join us this Friday to learn more: bit.ly/47pe4ff
ReversingLabs webinar promotional image titled 'Advancing Threat Hunting & Malware Analysis with AI, Kubernetes ICAP, IoC Enrichment & More.' Scheduled for October 24, 12-1 PM. Features an abstract digital background.
000
ReversingLabs @reversinglabs.com · 17/10/2025
This method is then being called from procedures that are responsible for generating wallet keys, essentially exfiltrating the sensitive wallet data to the threat actor.
000
ReversingLabs @reversinglabs.com · 17/10/2025
It contains a malicious method "Shuffle" that sends data to a remote URL, which is encrypted in the code, to avoid detection.
100
ReversingLabs @reversinglabs.com · 17/10/2025
⚠️ RL researchers have discovered a malicious #NuGet package that is impersonating "Netherum," a popular #Ethereum library. It has over 10M downloads, but these are most definitely artificially inflated: secure.software/nuget/packag...
100
ReversingLabs @reversinglabs.com · 02/10/2025
📣 RL is thrilled to be featured in the new #Microsoft Security Store, providing our mutual customers with best-in-class #ThreatIntel for Microsoft Sentinel: t.co/kQiIQzsOCW #ThreatHunting #IncidentResponse
Promotional image featuring the text 'Find RL on the Microsoft Security Store' with the ReversingLabs logo at the top and the Microsoft logo at the bottom, set against a blurred background of a digital workspace.
000
ReversingLabs @reversinglabs.com · 29/09/2025
🎉 Exciting news: RL has won the ISG Information Technology Award! #Cybersecurity #IT #SoftwareSupplyChainSecurity
010
ReversingLabs @reversinglabs.com · 26/09/2025
🎤 ICYMI: RL chief trust officer Saša Zdjelar spoke at the Lineaje #SoftwareSupplyChainSecurity Forum last month. #AppSec #DevSecOps
RL's Saša Zdjelar speaking into a microphone during a panel session at the Lineaje Inc Software Supply Chain Security Forum. There are other participants and bottled water visible on the table.
000
ReversingLabs @reversinglabs.com · 11/09/2025
🎙️ RL software threat researcher Lucija Valentić sat down to discuss her discovery of malicious #npm packages abusing #Ethereum smart contracts: bit.ly/3IeQA2O
000
ReversingLabs @reversinglabs.com · 09/09/2025
🤔 Is it possible to vibe code securely? Experts will uncover the realities of this viral coding method next week: bit.ly/4mZkgQO #VibeCoding #AppSec #DevOps
Promotional image for a Spectra Collective event titled 'The VIBE Is Off: Trend, Meme, Or Red Flag?' featuring host Kadi McKean and guest speakers Bruno Borges, Principal Product Manager at Microsoft, and Dustin Lehr, Co-founder at Kaitlyst. Scheduled for September 16th, 2025, from 11 AM to 12 PM EST.
000
ReversingLabs @reversinglabs.com · 08/09/2025
🗞️ Did you know: RL has a weekly newsletter that delivers key #cybersecurity, #TPRM, #AppSec & #SecOps insights right to your inbox? Subscribe: bit.ly/4gdGg7P
Promotional graphic for ReversingLabs' weekly newsletter, featuring the text 'Weekly Insights for Security Leaders' with futuristic digital graphics.
010
ReversingLabs @reversinglabs.com · 03/09/2025
📣 Big news for the #Federal ecosystem: RL Spectra Assure is now “Awardable” in both the DoD Platform One & CDAO Tradewinds Marketplaces. 👉 bit.ly/4lWwZCm #SoftwareSupplyChainSecurity
Promotional graphic for ReversingLabs Spectra Assure®, featuring a digital illustration of a soldier with cybernetic enhancements next to text announcing its "Awardable" designations earned from the Department of Defense.
000
ReversingLabs @reversinglabs.com · 26/08/2025
⏰ Thursday: RL's @kadigrigg.bsky.social will be speaking to the Belgian Java User Group about #SoftwareSupplyChainSecurity: bit.ly/3UMxcgh #Dev #AppSec
Promotional image for a talk at Belgium JUG titled 'Lessons from the Oregon Trail for the Secure Software Supply Chain.' Features speaker Kadi McKean on the right, and event details on the left, including the date 'Thursday, August 28th at 18:00 CEST.' The ReversingLabs logo is displayed in the top left corner.
000
ReversingLabs @reversinglabs.com · 21/08/2025
🎙️ The latest episode of ConversingLabs #podcast discusses the Spectra Assure Community Badge: A free initiative that certifies trust for #npm, #PyPI, #RubyGems & #NuGet projects. Watch it here: bit.ly/3Jf14j1
000
ReversingLabs @reversinglabs.com · 20/08/2025
🎊 RL is proud to sponsor ‪the @linuxfoundation.org #OpenSourceSummit! Don't miss this talk by RL's @kadigrigg.bsky.social & Charlie Jones on what devs can learn from driving compliance: bit.ly/4oHGkk6 #Dev
Promotional banner for Open Source Summit Europe featuring "Navigating Compliance: What Developers Can Learn From Driving" talk, with speakers Kadi McKean and Charlie Jones from ReversingLabs, scheduled for Tuesday, August 26th at 15:05 CEST. The banner includes images of the speakers and stylized cityscape graphics.
010
ReversingLabs @reversinglabs.com · 08/08/2025
📍Thanks to our amazing team for all of their hard work at #BlackHat this week & thanks to all who have chatted with us! 🤝 #AppSec #DevSecOps #SoftwareSupplyChainSecurity
000
ReversingLabs @reversinglabs.com · 07/08/2025
ICYMI: RL's @paulroberts.bsky.social speaks with @silascutler.bsky.social utler.bsky.social & @gigastacey.bsky.social bsky.social at #BSidesLV about the threats posed to end-of-life #EoL equipment. Watch the full talk here: bit.ly/45EwYhs
001
ReversingLabs @reversinglabs.com · 07/08/2025
🫶 Huge thanks to @shehackspurple.bsky.social for joining us at #BlackHat booth 3261 yesterday! She spoke with attendees about her essential book: Alice & Bob Learn #SecureCoding. Go Tanya 💯
110
ReversingLabs @reversinglabs.com · 06/08/2025
We had to! 😂 Stop by RL #BlackHat booth 3261 this week for a chance to win a #Labubu.
000
ReversingLabs @reversinglabs.com · 29/07/2025
☀️ Start off #HackerSummerCamp right with this @bsideslv.org panel: #EOL Equipment should not mean End of Life (Your Life), ft. @paulroberts.bsky.social, @silascutler.bsky.social & @gigastacey.bsky.social. #BSidesLV
000
ReversingLabs @reversinglabs.com · 24/07/2025
📆 Happening this Friday at BSides Albuquerque: @kadigrigg.bsky.social will be taking the stage for her talk - Trail Blazing: Lessons from the Oregon Trail for a Secure Software Supply Chain. Learn more: bit.ly/410BILC #BSidesABQ #AppSec #OpenSourceSecurity
001
ReversingLabs @reversinglabs.com · 11/07/2025
We found evidence of malicious code inclusion in one of the repositories hosted in #GitHub: t.co/4ujxsbDtlt
010
ReversingLabs @reversinglabs.com · 11/07/2025
Redirect location hosts another downloader instruction, which downloads MSI installer that contains logic for downloading further stages of this malicious campaign.
100
ReversingLabs @reversinglabs.com · 11/07/2025
Exploring the blockchain data for the given contract address reveals the URL redirect hidden in contract data published to blockchain.
100
ReversingLabs @reversinglabs.com · 11/07/2025
⚠️🧵 RL threat researchers detected a malicious #npm package abusing #blockchain for malicious command hosting: secure.software/npm/packages... #Dev #SoftwareSupplyChainSecurity #OpenSource
132
ReversingLabs @reversinglabs.com · 07/07/2025
The malicious package reimplements functionality of the impersonated package, but additionally intercepts calls to BAC Credomatic payment APIs & exfiltrates credit card info to a Telegram bot.
100
ReversingLabs @reversinglabs.com · 06/06/2025
🗞️ Looking to get a weekly dose of news about #SoftwareSupplyChainSecurity? Subscribe to our Chainmail #newsletter here: bit.ly/3HsvEVk #DevSecOps #AppSec #Dev
A screenshot of a LinkedIn post from ReversingLabs that promotes the newest edition of Chainmail, a newsletter about software supply chain security.
010
ReversingLabs @reversinglabs.com · 20/05/2025
The decoded malicious payload exfiltrates basic user data & content of .gitconfig file to a remote server.
100