Skip to main content

Articles

Stay informed on security insights and best practices from Snyk’s leading experts.

表示中 201 - 220 / 354 記事

Java Security Explained

Learn about the basics of cybersecurity in the Java Security ecosystem, including cryptography, application authentication, and more.

Threat Intelligence Lifecycle | Phases & Best Practices Explained

Learn about the different phases of the threat intelligence lifecycle, as well as best practices for each phase.

What is technical due diligence (TDD)?

Technical due diligence is an in-depth analysis of the state of a company from a technical perspective, including its products, infrastructure, and more.

Everything You Need to Know to Get Started With Container Security

2023 年のコンテナセキュリティガイド。エコシステムにおけるコンテナセキュリティ、ベストプラクティスのヒント、ビルドからランタイムまでコンテナのセキュリティを確保する方法について学べます。

Three Steps to Container Image Security

Follow our practical guide to container security, developed in partnership with Docker. 3 Essential steps to run your containers securely.

Web Application Security Explained: Risks & Nine Best Practices

It’s vital for Developers to have knowledge of web application security so they can secure web apps as they’re developed, reducing the burden on security teams.

What is container orchestration?

Orchestration refers to automating container deployment, operations, and lifecycle management. This approach automates how we provision, deploy, scale, monitor, replace, and manage storage for our running containers.

Kubernetes Monitoring Guide

Learn everything you need to know about Kubernetes monitoring: tools, best practices, critical metrics you should track, and more.

Everything you need to know about Container Runtime Security

In this article you will find everything you need to know about container runtime security, including how to keep your container images secure.

Black box testing basics

Black box testing is a software testing method that does not require knowledge about how an application is built, in order to simulate an attacker.

Code security auditing 101

A code security audit is a process of analyzing source code with the goal of finding security vulnerabilities, licensing, and other programming issues. §

Mobile application security explained

As the use of mobile apps continues to grow, so does the need for secure mobile application development. Read on for top risks, tools, and tips for mobile app security.

The Importance of Policy as Code in Your Compliance Strategy 

Learn why compliance as code should become a key part of your overall security strategy, enabling security at scale based on automated Policy as Code rules.

Understanding gray box testing techniques

Learn about what gray box testing is, how to perform gray box testing, the benefits of gray box testing as well as its drawbacks.

White box testing basics: Identifying security risks early in the SDLC

This article will help you to understand what white box testing is, the pros and cons, and techniques for white box testing.

Application Security Controls Explained

In the security hierarchy, application security controls lie below standards and policies. Policies set the boundaries expected for application security and protection, while standards create rules for enforcing those boundaries.

Container registry security: security concerns for using a container registry

Learn about container registry security, and the factors you should consider during setup and usage for public and private container registries.

ソフトウェア部品表 (SBOM) について: SBOM がサイバーセキュリティに不可欠な理由

ここでは、サイバーセキュリティの専門家がサプライチェーンの安全を確保し、コンプライアンスを維持する上で、ソフトウェア部品表 (SBOM) の重要性が高まっている理由について説明します。

Blue-green deployment strategy explained

Learn how Blue Green Deployment strategies can be built into the IAC stages of your CI/CD Pipelines for seamless deployments with no downtime.

Continuous security within DevSecOps

Find out how implementing continuous security processes can benefit your DevSecOps culture and processes to help you secure your code at every phase of the SDLC