Where Do I Sign? Step-by-step Sigstore Adoption
A step-by-step guide to adopting Sigstore for signing code commits, build artifacts, and container images, securing your software supply chain.

4276 articles
4276 ARTICLES
A step-by-step guide to adopting Sigstore for signing code commits, build artifacts, and container images, securing your software supply chain.


In honor of Mental Health Awareness Month, Tim Leroy, Senior Solutions Engineer based in London, shares how he coped with the tragic loss of his father a few months ago. He discusses tools he used to cope, how he balanced his mental health struggles while working full-time, and gives advice to others who may be struggling with a similar loss.

In honor of Asian American and Pacific Islander Heritage Month, we sat down with Sarah Gibb and Dipti Salopek to learn about their cultures and family roots, and how their heritage impacts them on both a professional and personal level.

Managing multiple SBOMs: Strategies for consolidating and utilizing multiple SBOMs to gain a comprehensive view of software components and dependencies.

During SnykWeek Boston, Simon Maple (Field CTO, Snyk) led a panel discussion about developer adoption of application security. Read on to dive deeper into these illuminating insights around organizing security teams, setting security goals, empowering developers, improving compliance, and much more.

Prisma’s support for CockroachDB is now in production ready! Read this article to learn about the features and benefits of Prisma with CockroachDb.

Snyk recently discovered overt 200 malicious packages in the npm registry. While we acknowledge that vulnerability fatigue is an issue for developers, this article is not about the typical case of typosquatting or random malicious package. This article shares the findings of targeted attacks aimed at businesses and corporations that Snyk was able to detect and share the insights.

We can’t wait to see many of you at RSA Conference 2022 in San Francisco, June 6-9. Check out a demo at our booth, attend a Wiz speaking session, or unwind at our SFMOMA party!

SnykWeek was a success! We came, we secured, and we crowned a Best Hacker in Boston! We also talked about developer security, and heard success stories from Boston-based customers Datto, Kyruus, and Manulife.

When Log4Shell hit in mid-December 2021, LiveRamp had just completed its POC (proof of concept) trial with Snyk. While LiveRamp’s main motivation for deploying Snyk was to secure its CI/CD pipeline, Snyk was able to discover and remediate this major zero-day exploit.


Cybersecurity standards’ dirty secret: overemphasis on individual company security, neglecting collaborative efforts and open-source software integrity.
Cookies
We use analytics cookies (Google Analytics) to improve this site. Accept to allow them. Privacy Policy