What is SAST?SAST stands for Static Application Security Testing — automated tools that read through source code to detect security flaws before software is run. Think of it as a spellchecker for...
Read More
Reflections on Open Source Security and Supply Chain ProtectionThe recent npm package-related supply chain security incidents have understandably generated significant concern across our development ...
Read More
Why This Attack Matters August 2025 marked one of the most consequential supply chain compromises in recent memory. Attackers managed to weaponize Nx, a popular monorepo build system, turning a tru...
Read More
🔐 AI may be changing how we build software, but it doesn’t change what secure development requires.Artificial Intelligence is reshaping our software ecosystems — enabling faster development,...
Read More
“If we don’t understand how something can break, we’ll never build it securely.”— AppSec maxim, more relevant than ever in the era of AIAs we explored in our previous post, the foundations...
Read MoreWe use cookies to improve user experience. Choose what cookie categories you allow us to use. You can read more about our Cookie Policy by clicking on Cookie Policy below.
These cookies enable strictly necessary cookies for security, language support and verification of identity. These cookies can’t be disabled.
These cookies collect data to remember choices users make to improve and give a better user experience. Disabling can cause some parts of the site to not work properly.
These cookies help us to understand how visitors interact with our website, help us measure and analyze traffic to improve our service.
These cookies help us to better deliver marketing content and customized ads.