<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><title>Xmart Blog</title><link>https://www.xmartsolutions.com.br/en/blog</link><description>Technical insights on AppSec, DevSecOps, and software supply chain security for teams turning risk, architecture, and evidence into action.</description><language>en</language><lastBuildDate>Wed, 26 Aug 2026 12:00:00 GMT</lastBuildDate>
    <item><title>When your artifact repository becomes critical infrastructure</title><link>https://www.xmartsolutions.com.br/en/blog/when-an-artifact-repository-becomes-critical-infrastructure</link><guid isPermaLink="true">https://www.xmartsolutions.com.br/en/blog/when-an-artifact-repository-becomes-critical-infrastructure</guid><description>A repository stops being mere storage when it controls the availability, integrity, and promotion of components used by CI/CD.</description><pubDate>Wed, 26 Aug 2026 12:00:00 GMT</pubDate></item>
    <item><title>Cyber Resilience Act: what changes for software companies?</title><link>https://www.xmartsolutions.com.br/en/blog/cyber-resilience-act-what-changes-for-software-companies</link><guid isPermaLink="true">https://www.xmartsolutions.com.br/en/blog/cyber-resilience-act-what-changes-for-software-companies</guid><description>A practical review of the Cyber Resilience Act milestones in 2026 and 2027 and the technical evidence software manufacturers need to organize.</description><pubDate>Wed, 26 Aug 2026 12:00:00 GMT</pubDate></item>
    <item><title>OWASP Top 10 2025: why did Software Supply Chain Failures reach the Top 3?</title><link>https://www.xmartsolutions.com.br/en/blog/owasp-top-10-2025-why-software-supply-chain-failures-reached-top-3</link><guid isPermaLink="true">https://www.xmartsolutions.com.br/en/blog/owasp-top-10-2025-why-software-supply-chain-failures-reached-top-3</guid><description>A03:2025 expanded the focus from vulnerable components to dependencies, builds, repositories, distribution, and software supply chain governance.</description><pubDate>Wed, 26 Aug 2026 12:00:00 GMT</pubDate></item>
    <item><title>SCA finds vulnerabilities. But what about malware?</title><link>https://www.xmartsolutions.com.br/en/blog/sca-finds-vulnerabilities-but-what-about-malware</link><guid isPermaLink="true">https://www.xmartsolutions.com.br/en/blog/sca-finds-vulnerabilities-but-what-about-malware</guid><description>CVEs, vulnerability intelligence, and malicious package detection solve different problems and must operate as complementary controls.</description><pubDate>Wed, 26 Aug 2026 12:00:00 GMT</pubDate></item>
</channel></rss>
