Skip to main content

Blog Archive

Showing 1 - 24 of 248 posts

blog feature ai

AI

Show, Don't Tell: What Evo Continuous Offensive Security Found in a Real Enterprise SaaS

August 10, 2026

feature ai ide dark

AI

A First Look at Evo Agentic AppSec: Agentic Remediation and Malicious Code Defense

August 4, 2026

feature insights context

Supply Chain Security

Inside the keyv npm Compromise: preinstall Malware, Trusted Provenance, and IDE Hooks

August 4, 2026

snyk attacker never sleeps

AI

The Attacker Never Sleeps, Neither Can Your Testing

July 30, 2026

AI

Snyk VulnBench JS 1.0: Can LLMs Find the Same Bugs Twice?

June 29, 2026

Vulnerability Insights

NVD in the AI Era: The Case for Multi-Source Vulnerability Intelligence

June 25, 2026

Corona blog feature

Supply Chain Security

When a vendor's breach becomes yours: lessons from the Klue incident

June 23, 2026

blog feature pypi spoof

Open Source Security

The full Snyk AI Security Platform, free for open source maintainers

June 18, 2026

blog feature toolkit

Supply Chain Security

A Forgotten Contributor Account Compromised the Entire Mastra npm Package Scope

June 16, 2026

AI

The Government Just Banned an AI Model. An Engineer's Perspective.

June 15, 2026

feature insights announcement

Supply Chain Security

Node-gyp Supply Chain Compromise: A Self-Propagating npm Worm That Hides in binding.gyp

June 4, 2026

AI

Protestware by open source maintainer to hinder agentic coding: The jqwik 1.10.0 Prompt Injection

June 2, 2026

Supply Chain Security

Miasma supply chain attack: malicious code found in @redhat-cloud-services npm packages

June 1, 2026

Supply Chain Security

Laravel Lang Supply Chain Advisory

May 23, 2026

Supply Chain Security

Malicious node-ipc versions published to npm in suspected maintainer account compromise

May 15, 2026

blog feature security alert purple

Supply Chain Security

TanStack Npm Packages Compromised Inside The Mini Shai Hulud Supply Chain Attack

May 11, 2026

Supply Chain Security

lightning PyPI Compromise: A Bun-Based Credential Stealer in Python

April 30, 2026

Supply Chain Security

"A Mini Shai-Hulud Has Appeared": Bun-Based Stealer Hits SAP @cap-js and mbt npm Packages

April 29, 2026

Application Security

Don't Panic: The Thymeleaf Template Injection That Only Hurts If You Let It (CVE-2026-40478)

April 29, 2026

Application Security

Qinglong task scheduler RCE vulnerabilities exploited in the wild for cryptomining

April 27, 2026

AI

JPMorgan Just Published a Cyber To-Do List and Snyk Covers 8 of the 10 Items. How do you stack up?

April 23, 2026

AI

Governing Security in the Age of Infinite Signal – From Discovery to Control

April 10, 2026

Container intergration feature

AI

Secure What Matters: Scaling Effortless Container Security for the AI Era

April 7, 2026

AI

You Patched LiteLLM, But Do You Know Your AI Blast Radius?

April 2, 2026

Subscribe to our newsletter

Get all latest content from Snyk directly to your mailbox.