Vulnerability InsightsUnderstanding DNS attacks: Identifying and patching vulnerabilitiesOctober 26, 2022
Vulnerability InsightsReviewing CVE-2022-42889: The arbitrary code execution vulnerability in Apache Commons TextOctober 18, 2022
Vulnerability InsightsCommand injection vulnerability in Snyk CLI released prior to September 1, 2022 (older than v1.996.0)October 3, 2022
Vulnerability InsightsRediscovering argument injection when using VCS tools — git and mercurialAugust 23, 2022
Vulnerability InsightsRuby gem installations can expose you to lockfile injection attacksAugust 17, 2022
Vulnerability InsightsExploring CVE-2022-33980: the Apache Commons configuration RCE vulnerabilityJuly 8, 2022
Vulnerability InsightsSnyk finds 200+ malicious npm packages, including Cobalt Strike dependency confusion attacksMay 24, 2022
Vulnerability InsightsAn unintimidating introduction to the dark arts of C/C++ vulnerabilitiesApril 15, 2022
Vulnerability InsightsAlert: LaughTilYouCry ransomware sabotages npm package (with puns)April 1, 2022
Vulnerability InsightsProtestware is trending in open source: 4 different types and their impactMarch 22, 2022
Vulnerability Insightsdompdf security alert: RCE vulnerability found in popular PHP PDF libraryMarch 18, 2022