Vulnerability InsightsMalicious remote code execution backdoor discovered in the popular bootstrap-sass Ruby gemApril 4, 2019
Open Source Security81% believe developers should own security, but they aren’t well-equippedFebruary 26, 2019
Open Source Security88% increase in application library vulnerabilities over two yearsFebruary 26, 2019
Open Source SecurityReDoS vulnerabilities in npm spikes by 143% and XSS continues to growFebruary 26, 2019
Open Source Security78% of vulnerabilities are found in indirect dependencies, making remediation complexFebruary 26, 2019
Vulnerability InsightsSevere security vulnerability in Bower’s zip archive extractionJanuary 31, 2019
Open Source SecurityFinding open source vulnerabilities within the Bitbucket workflowJanuary 22, 2019
Open Source SecurityOver 10% of Python packages on PyPI are distributed without a licenseSeptember 18, 2018
CustomerDigitalOcean: Fixing a critical Ruby Gem vulnerability within a day of disclosureMarch 28, 2018