Open Source SecurityBuilding a secure CI/CD pipeline with GitHub Actions for your Java ApplicationJune 27, 2022
Open Source SecurityAnnouncing the 2022 State of Open Source Security report from Snyk and the Linux FoundationJune 21, 2022
Vulnerability InsightsSnyk finds 200+ malicious npm packages, including Cobalt Strike dependency confusion attacksMay 24, 2022
Vulnerability InsightsAn unintimidating introduction to the dark arts of C/C++ vulnerabilitiesApril 15, 2022
Open Source SecuritySpring4Shell extends to Glassfish and Payara: same vulnerability, new exploitApril 8, 2022
Vulnerability InsightsAlert: LaughTilYouCry ransomware sabotages npm package (with puns)April 1, 2022
Open Source SecurityUsing the Snyk Vulnerability Database to find projects for The Big FixMarch 30, 2022
Vulnerability InsightsProtestware is trending in open source: 4 different types and their impactMarch 22, 2022
Vulnerability Insightsdompdf security alert: RCE vulnerability found in popular PHP PDF libraryMarch 18, 2022
Open Source SecurityBuild a software bill of materials (SBOM) for open source supply chain securityMarch 14, 2022
Open Source SecurityVisibly invisible malicious Node.js packages: When configuration niche meets invisible charactersFebruary 28, 2022
Vulnerability InsightsJoin The Big Fix: a 24-hour livestream dedicated to fixing security vulnerabilities in your projectsFebruary 21, 2022