
Modern software is assembled as much as it is written. Developers routinely pull libraries, frameworks and packages created outside their companies. That model makes software faster to build, but it also gives attackers a direct route into trusted development workflows. London-based Ossprey has raised $2.65 million in oversubscribed pre-seed funding to identify malicious open-source packages […]