Guides
Protect AI models, data, and systems
Test for behavioral risks in conversational AI
Mitigating risks and future trends
AppSec types, tools, and best practices
Automating dependency updates
Manage open source code
Keep source code safe
Improve transparency, security, and compliance
Pre-production scanning and runtime protection
Secure containerized applications
Quick Guide to the OWASP OSS Risk Top 10
Learn about the top 10 risks of open source software, beyond just CVEs. From known vulnerabilities to unapproved changes.
What Makes Containers Vulnerable?
Learn about the vulnerabilities that containers bring to your applications and how to address them to keep attackers at bay.
Learning From History: AI Gender Bias
Learn about AI gender bias in large language models, how historical data impacts AI, & implications for women in health & car safety fields.
Mend.io Launches Mend Container
Mend.io launches Mend Container to address security in cloud-native development, offering reachability analysis and secrets detection.
Breaking: What is Going on with the NVD? Does it Affect Me?
Learn about the current issues with the National Vulnerability Database, how it affects vulnerability reporting, and how Mend SCA can help.
What is the difference between an SCA scan and a container scan?
Learn about the difference between SCA scans and container scans, why scanning containers for vulnerabilities is important.
How is a Container Scan Done?
Learn the importance of scanning container images for vulnerabilities to keep your containerized environments safe.
CVSS 4.0 is Here: How to Make the Most of It
Learn about the latest version of CVSS 4.0. Understand the new metrics and how to use them in your org's vulnerability remediation strategy.
Mend’s Handy Guide to Using EPSS Scores
Discover Mend's Handy Guide to Using EPSS Scores. Learn how EPSS can predict exploits and prioritize vulnerability remediation effectively.
Building a Security Culture Starts with Building Relationships
Learn how building relationships between security and development teams can improve application security. Find key tactics for security.
What Developers Need to Succeed for Effective Application Security
Discover what developers need to succeed for application security. Learn about shifting left, automation, training, collaboration, and more.
Why The US Government Continues to Push for Software Supply Chain Security
Discover why the US government is prioritizing software supply chain security. Learn about CISA's goals and objectives at the SOSS Summit.
Why Dependency Management Reduces Your Enterprise’s Technical Debt
Learn how dependency management can reduce technical debt in your enterprise. Find out how outdated dependencies can lead to security risks.
Adversaries Are Using Automation. Software Vendors Must Catch Up
Discover the importance of automation in cybersecurity and how software vendors can stay ahead of adversaries.
What Is SBOM Software and Why It Matters
Learn how to effectively communicate the value of your company with Software Bill of Materials (SBOMs).
Software Supply Chain Security: The Basics and Four Critical Best Practices
Learn about software supply chain security basics and best practices to prevent attacks.
Join our subscriber list to get the latest news and updates
Thanks for signing up!