On August 26–27, 2025 (UTC), eight malicious Nx and Nx Powerpack releases were pushed to npm across two version lines and were live for ~5 hours 20 minutes before removal.
Gaurav Saxena, a Director of Engineering at an automotive company, talks through how internal developer platforms are an important part of resiliency by design.
Discover Snyk’s new default view, grouping vulnerabilities by library and fix versions to help you prioritize and remediate open source vulnerabilities more efficiently.
Chainguard uses compiler flags to be proactive in the security of our products. See how our compiler flag usage helped us catch a complex bug in glibc.
See what Chainguard was up to at Black Hat USA 2025, from a garden-themed booth to several engaging activations with organizations like Vanta and Orca Security.
We are witnessing a shift from reactive to proactive application security, with AI agents operating in autonomy. What are the benefits, risks & best practices of AI agents implementation in AppSec?
Kernel-Independent FIPS is now available across the full catalog of Chainguard FIPS images for Java, simplifying and accelerating compliance for FedRAMP ATO.
Learn how Snyk’s MCP server brings agentic security to container workflows. Automate vulnerability scanning and base image recommendations directly within your AI-powered IDE.
The Chainguard Partner Program is a global initiative to empower our channel partners to deliver trusted open source software to customers around the world.
Google announced that its protected KVM (pKVM), the hypervisor for the Android Virtualization Framework, has achieved SESIP Level 5 certification, the first of its kind for consumer electronics. This milestone enhances the security of mobile technology, enabling the support of high-criticality workloads like on-device AI while ensuring privacy and integrity. Certified by Dekra, pKVM addresses vulnerabilities with high resistance to sophisticated attackers. It will form a foundation for a standardized, secure environment for Android device manufacturers, reflecting a collaborative effort from various engineering teams.
Chainguard and GitLab recently recorded a webinar discussing challenges organizations face in building a secure software supply chain. Get the key takeaways.