npm + Sigstore: Making Javascript secure by default
npm launches Sigstore beta for end-to-end package signing, improving developer trust and security.

3862 articles
3862 ARTICLES
npm launches Sigstore beta for end-to-end package signing, improving developer trust and security.


Confidently ensure your Kubernetes environments are compliant with CIS Benchmarks for cloud-managed Kubernetes. Quickly generate compliance reports and remediate any issues without hassle.

Wolfi has been accepted into Platform One, U.S. Air Force’s DevSecOps platform. Chainguard Images are now available on Platform One via container repo Iron Bank

To help unlock benefits of the Sigstore policy-controller, Chainguard open sources a policy catalog that can be adopted to improve your supply chain security.

This article demonstrates how to patch deserialization vulnerabilities in Node.js. We’ll create vulnerable code, demonstrate an attack, and then fix the vulnerabilities.

What our “in process” milestone means, and why it’s great news for the public sector.

Learn how you can interact with a database from a SvelteKit application using Prisma.

In this article, we’ll show how developer-centric DAST tools can help organizations improve security testing coverage and build more secure applications.

Check out the new Chainguard Image for Prometheus that is minimal in size and contains fewer CVEs than other alternatives.

Detect and mitigate CVE-2023-28252, EoP vulnerability exploited in the wild, and CVE-2023-21554, a critical RCE vulnerability. Organizations should patch urgently.

Security experts share their insights for securing cloud environments as the pace and scale of threats accelerates.

As we’ve discussed over the past several quarters, we anticipated a tough start to 2023, but we were prepared to accelerate growth in the back half of the year. We now know that the challenging market conditions are likely to persist into early 2024, so we must once again adapt.
Cookies
We use analytics cookies (Google Analytics) to improve this site. Accept to allow them. Privacy Policy