
It’s time to rethink golden images. Chainguard can help.
Chainguard helps teams build developer-centric golden image programs with zero-CVE, purpose-built containers—balancing speed, security, and standardization.
3712 articles

Chainguard helps teams build developer-centric golden image programs with zero-CVE, purpose-built containers—balancing speed, security, and standardization.

Inaugural partner program reflects commitment to building an open, unified future for security.

In a recent analysis, Android’s security strategy leveraging memory-safe programming with Rust shows significant improvements. Memory safety vulnerabilities have dropped below 20% of total vulnerabilities for the first time, thanks to Rust’s implementation, which offers a massive reduction in vulnerability density—over 1000 times fewer compared to C and C++. Rust not only enhances security but also accelerates patching and reduces code review times. The Android development team is expanding Rust’s use across various components, focusing on its integration with firmware, first-party applications, and the Linux kernel. Despite a recent near-miss with a memory safety vulnerability in Rust, the overall data underscores Rust’s efficacy in improving software development performance while maintaining stringent security measures.

In November 2025, a large-scale surge of package publications on the NPM registry with similar structures and naming patterns was discovered. Understand the details of the incident.

Chainguard SVP of Engineering Dustin Kirkland discusses why Chainguard builds every package, library, and image directly from source and why the approach works.

Streamline Security Backlogs by Grouping Vulnerabilities, Secrets, and Data Findings into Posture Issues

Organizations achieve 288% ROI with the Snyk AI Trust Platform, according to a new Forrester TEI study. Improve developer productivity, enhance security, and consolidate AppSec tools with Snyk.

We’ve improved the Chainguard Images Directory with Helm charts for faster deployments, an ROI calculator, and more refreshed data to improve your experience.

HTTP Anomaly Rank If you’ve ever used Burp Intruder or Turbo Intruder, you’ll be familiar with the ritual of manually digging through thousands of responses by repeatedly sorting the table via length,

Explore how Snyk’s Evo Threat Modeling Agent automates and contextualizes security for AI-native applications, addressing prompt injection, data exfiltration, data poisoning, and agentic vulnerabilities.

Meet the Blue Agent: AI-powered threat triage built on the Wiz platform. Investigate every threat with speed and transparency

How secure are top private AI companies? Find out from our scans and disclosures.