Understanding attacker techniques in distroless containers
Explore DEFCON 31 insights on Distroless container security. Delve into RCE vulnerabilities and Chainguard’s robust defense strategies for up-to-date software.

3862 articles
3862 ARTICLES
Explore DEFCON 31 insights on Distroless container security. Delve into RCE vulnerabilities and Chainguard’s robust defense strategies for up-to-date software.


In this pre-announcement of a new High severity curl vulnerability, learn how to gauge the potential impact to your organization and get steps to prepare for the forthcoming patch.

A recent summit meeting convened by the OpenSSF with the White House brought together various US Government departments for a chat about open source security.

The latest Snyk Partner Speak Series video showcases how Snyk and HashiCorp enable development teams to easily build and deploy applications with integrated security at every stage.

Ravi Maira and Randall Degges discussed using AI in AppSec during a LinkedIn live discussion in June 2023. Read on to catch some of the highlights from their talk.

In this post, I’ll share my approach to developing custom automation to aid research into under-appreciated attack classes and (hopefully) push the boundaries of web security. As a worked example, I’l

We’re excited to announce that IaC+ is available in early access via Snyk Preview starting October 3rd, 2023.

Unearth a haunting tale of overlooked threats in scanning. Discover how Chainguard Images counteract gaps, ensuring robust defense against CVEs.

Detect and mitigate CVE-2023-42115, and 5 more vulnerabilities in Exim. Organizations using affected configurations should mitigate and patch the vulnerabilities urgently.

In our first modern VS Code extension development blog post, we covered the basics of VS Code development, including the architecture and the various types you can create. This article will help you apply that knowledge by showing you how to create and code your very own VS Code extension.

Delving into CVE-2023-4863 and CVE-2023-5217 - critical vulnerabilities in libwebp and libvpx exploited in the wild.

CVE-2023-4863 vulnerability identified in the WebP library libwebp extends to more than just browsers - Learn how to find and fix this critical vulnerability with Snyk
Cookies
We use analytics cookies (Google Analytics) to improve this site. Accept to allow them. Privacy Policy