Screenshot of a software application showing the Inventory section. It lists package names, scores, vulnerabilities, impact factors, and related images. The interface is clean with a gradient background transitioning from blue to pink and orange.

Upwind’s SBOM Explorer – Your Weapon for the Next 0-day Attack

Denise Ashur November 28, 2023

Upwind’s SBOM Explorer – Your Weapon for the Next 0-day Attack

We are excited to announce a new feature – Upwind’s Packages Tab.

You can now view all of the packages in your environment and their dependencies in Upwind’s Packages Tab. This serves as an SBOM explorer, as it includes all packages (with or without vulnerabilities). With this capability, you can now search for all packages, including searching by framework, package manager, most used package and how many resources use each package.

This feature can be your key weapon for the next zero-day attack, allowing you to quickly identify package use within your environment and all package dependencies. 

Use the Packages Tab to understand your resource usage and gain deeper insights into your running packages within seconds, streamlining your posture management and giving you contextualized insights into how your resources are being used at runtime.

Contents

Further Reading

AI LABS

Building the Future: Introducing the Upwind AI Security Lab

I have always been fascinated by what comes next. Growing up, I watched technology reinvent itself again and again, from early gaming and the dot-com era to SaaS, cloud, and modern software development. I remember wondering when I would get the chance to help build what came next. At the time, I was mostly watching…
5 Back to School Security Predictions: The Attacker Class Average Just Moved
5 Back to School Security Predictions: The Attacker Class Average Just Moved

5 Back to School Security Predictions: The Attacker Class Average Just Moved

Back to school season is here, which makes this a good moment to look at what changed in the threat landscape over the summer. AI-assisted attackers haven't climbed toward the top of the field so much as filled in the middle of it and the middle is the population almost no security program was designed…
org chart - dark mode

The Org Chart is The Wrong Security Boundary

The department model of dividing companies into groups earned its place. Finance gets the finance applications, engineering gets the repositories, HR gets the HRIS, and the boundaries hold because software was bought per function and used per function. Identity and access management platforms, such as Active Directory and Okta, were built around exactly that. Groups…
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Threat RSS
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Main RSS