Skip to main content
Headshot of Liran Tal

Liran Tal

Director of Developer Relations, Snyk

Award-winning software developer, security researcher, and open source champion in the JavaScript community. His contributions to developer security education include leading OWASP projects, building supply chain security tools, participation in CNCF and OpenSSF initiatives, and authoring books such as O'Reilly's Serverless Security.

Showing 13 - 24 of 332 records

Blog

How a Malicious Google Skill on ClawHub Tricks Users Into Installing Malware

February 10, 2026

Blog

280+ Leaky Skills: How OpenClaw & ClawHub Are Exposing API Keys and PII

February 5, 2026

Blog

Snyk Finds Prompt Injection in 36%, 1467 Malicious Payloads in a ToxicSkills Study of Agent Skills Supply Chain Compromise

February 5, 2026

malware code repository
Article

Inside the 'clawdhub' Malicious Campaign: AI Agent Skills Drop Reverse Shells on OpenClaw Marketplace

February 4, 2026

Article

From SKILL.md to Shell Access in Three Lines of Markdown: Threat Modeling Agent Skills

February 3, 2026

feature ai ide dark
Article

Your Clawdbot (OpenClaw) AI Assistant Has Shell Access and One Prompt Injection Away from Disaster

January 27, 2026

Article

DAST vs RASP: Understanding the Differences in Application Security

January 26, 2026

blog feature fast sast
Article

5 Benefits of Using SAST and DAST Together

January 20, 2026

feature insights context
Article

Building Secure MCP Servers: A Developer's Guide to Avoiding Critical Vulnerabilities

January 14, 2026

Article

Cloud Network Security: Best Practices & Essential Strategies for Protecting Modern Cloud Infrastructure

January 14, 2026

feature snyk cloud security blue
Article

CSPM vs SSPM: Understanding the Differences and When You Need Both

January 13, 2026

feature api
Article

Debunking the Top 5 Myths About DAST

January 12, 2026