6 steps for scaling risk-based AppSec programs
Scaling a risk-based AppSec program involves adapting your security practices to accommodate the growth and evolving needs of your business, while effectively managing and mitigating security risks.

4276 articles
4276 ARTICLES
Scaling a risk-based AppSec program involves adapting your security practices to accommodate the growth and evolving needs of your business, while effectively managing and mitigating security risks.


This article reviews how to install and manage different versions of Java on your macOS system to help you simplify this process.

Learn how to find and fix the HTTP/2 rapid reset vulnerability (CVE-2023-44487) that has been designated a High severity vulnerability with a CVSS score of 7.5 (out of 10).

Detect and mitigate CVE-2023-38545, a high severity buffer overflow vulnerability in cURL. Organizations should upgrade to the patched version.

In this article, we’ll provide remediation strategies for the recent curl zero-day vuln.

Learn about Chainguard’s proactive measures against CVE-2023-38545 and CVE-2023-38546 in curl for enhanced security.

Get the latest versions for Java 21 (OpenJDK and JRE), Python 3.12, and Node.js 20 complete with minimal CVEs, SBOMs, signatures, and hardened architecture.

Get the tl;dr on Wiz’s methodology for cloud vulnerability triage in our new report, “The good, the bad, and the vulnerable.”

Cybersecurity Ventures predicts the global cost of software supply chain attacks will reach nearly $138 billion by 2031. Learn more by reading the 2023 Software Supply Chain Attack Report.

“Build Horizon” is a practice that imposes a maximum age on build artifacts. Learn more about how it works and see an example in action!

Explore the risks of scanner false negatives, the pitfalls of missing the Bazel package, and how Chainguard Images ensure accurate vulnerability detection.

Open source vulnerability scanner Grype has added support for OpenVEX, making software supply chain security easier. Learn how to implement it today.
Cookies
We use analytics cookies (Google Analytics) to improve this site. Accept to allow them. Privacy Policy