Skip to main content
Liran Tal

Liran Tal

Director of Developer Relations, Snyk

Liran is a software developer, security researcher and open source campion in the JavaScript and Node.js community. He's an internationally recognized GitHub Star, acknowledged for his open source advocacy, and has received the OpenJS Foundation's Pathfinder for Security for his work on Node.js security.

表示中 157 - 168 / 176 レコード

wordpress-sync/Malicious-code-found-in-npm-package-event-stream-downloaded-8-million-times-in-the-past-2.5-months-
Blog

How much do we really know about how packages behave on the npm registry?

2019年4月22日

wordpress-sync/jQuery-Blog-2
Blog

After three years of silence, a new jQuery prototype pollution vulnerability emerges once again

2019年4月15日

wordpress-sync/backdoor-discovered-in-Gem-Header-2
Blog

Malicious remote code execution backdoor discovered in the popular bootstrap-sass Ruby gem

2019年4月4日

wordpress-sync/Node.js-wide
Blog

Introducing experimental integrity policies to Node.js

2019年3月21日

wordpress-sync/Package-Lock-Files-blog-01
Blog

What is package lock json and how a lockfile works for yarn and npm packages?

2019年3月14日

wordpress-sync/Docker-image-security-best-practices-blog-small
Blog

Docker のセキュリティに関するベストプラクティス 10 項目

2019年3月6日

wordpress-sync/the-state-of-open-source-small
Blog

78% of vulnerabilities are found in indirect dependencies, making remediation complex

2019年2月26日

wordpress-sync/the-state-op-open-source-2-small
Blog

ReDoS vulnerabilities in npm spikes by 143% and XSS continues to grow

2019年2月26日

wordpress-sync/the-state-op-open-source-5-small
Blog

Open source maintainers want to be secure, but 70% lack skills

2019年2月26日

wordpress-sync/the-state-op-open-source-2-small
Blog

88% increase in application library vulnerabilities over two years

2019年2月26日

wordpress-sync/the-state-op-open-source-5-small
Blog

Top ten most popular docker images each contain at least 30 vulnerabilities

2019年2月26日

wordpress-sync/the-state-op-open-source-6-small
Blog

81% believe developers should own security, but they aren’t well-equipped

2019年2月26日