Skip to main content

Blog Archive

Showing 1 - 24 of 80 posts

feature insights context

Supply Chain Security

Inside the keyv npm Compromise: preinstall Malware, Trusted Provenance, and IDE Hooks

August 4, 2026

feature ai ide dark

AI

A First Look at Evo Agentic AppSec: Agentic Remediation and Malicious Code Defense

August 4, 2026

snyk attacker never sleeps

AI

The Attacker Never Sleeps, Neither Can Your Testing

July 30, 2026

feature customer snowflake

AI

Secure at Inception: Announcing the Snyk Studio Integration for Snowflake Cortex Code

July 30, 2026

Vulnerability Insights

NVD in the AI Era: The Case for Multi-Source Vulnerability Intelligence

June 25, 2026

AI

Announcing Agentic Development Security (ADS)

June 23, 2026

AI

What nearly 10,000 developer environments reveal about agentic development risk

June 23, 2026

Corona blog feature

Supply Chain Security

When a vendor's breach becomes yours: lessons from the Klue incident

June 23, 2026

blog feature pypi spoof

Open Source Security

The full Snyk AI Security Platform, free for open source maintainers

June 18, 2026

blog feature toolkit

Supply Chain Security

A Forgotten Contributor Account Compromised the Entire Mastra npm Package Scope

June 16, 2026

AI

The Government Just Banned an AI Model. An Engineer's Perspective.

June 15, 2026

feature insights announcement

Supply Chain Security

Node-gyp Supply Chain Compromise: A Self-Propagating npm Worm That Hides in binding.gyp

June 4, 2026

blog feature pypi spoof

AI

So You Have an AI Security Budget. Now what?

June 4, 2026

AI

Protestware by open source maintainer to hinder agentic coding: The jqwik 1.10.0 Prompt Injection

June 2, 2026

Supply Chain Security

Miasma supply chain attack: malicious code found in @redhat-cloud-services npm packages

June 1, 2026

Supply Chain Security

Laravel Lang Supply Chain Advisory

May 23, 2026

blog feature supply chain sbom

Supply Chain Security

Mini Shai-Hulud Hits AntV: 300+ Malicious npm Packages Published via Compromised Maintainer Account

May 18, 2026

Supply Chain Security

Malicious node-ipc versions published to npm in suspected maintainer account compromise

May 15, 2026

blog feature security alert purple

Supply Chain Security

TanStack Npm Packages Compromised Inside The Mini Shai Hulud Supply Chain Attack

May 11, 2026

Supply Chain Security

lightning PyPI Compromise: A Bun-Based Credential Stealer in Python

April 30, 2026

Supply Chain Security

"A Mini Shai-Hulud Has Appeared": Bun-Based Stealer Hits SAP @cap-js and mbt npm Packages

April 29, 2026

blog feature toolkit

Supply Chain Security

Malicious Release of elementary-data PyPI Package Steals Cloud Credentials from Data Engineers

April 27, 2026

AI

JPMorgan Just Published a Cyber To-Do List and Snyk Covers 8 of the 10 Items. How do you stack up?

April 23, 2026

AI

Governing Security in the Age of Infinite Signal – From Discovery to Control

April 10, 2026

Subscribe to our newsletter

Get all latest content from Snyk directly to your mailbox.