DevSecOps31% don’t track application dependencies and 38% only track direct dependenciesJanuary 28, 2020
DevSecOps48% see security a major constraint on the ability to deliver software quicklyJanuary 28, 2020
Open Source SecurityUnderstanding filesystem takeover vulnerabilities in npm JavaScript package managerJanuary 7, 2020
Open Source SecurityIntegrating actionable security in your CI/CD workflow and build systems with Snyk testsDecember 13, 2019
Application Security2019 side-by-side comparison of Angular and React security vulnerabilitiesOctober 30, 2019
Open Source SecurityA Snyk peek into Node.js and npm’s state of open source security report 2019October 9, 2019
Vulnerability InsightsWhy npm lockfiles can be a security blindspot for injecting malicious modulesSeptember 24, 2019
Vulnerability InsightsSequelize ORM npm library found vulnerable to SQL Injection attacksSeptember 11, 2019
Vulnerability InsightsConcerns of supply-chain attacks amplify as remote code execution was found in Ruby gem strong_passwordJuly 7, 2019
Vulnerability InsightsSnyk research team discovers severe prototype pollution security vulnerabilities affecting all versions of lodashJuly 5, 2019