Mend.io Application Security

Modern AppSec Programs Run on Automation - Modern AppSec Programs Run on Automation

Modern AppSec Programs Run on Automation

Learn how modern Application Security Programs leverage automation to combat cyber threats, improve efficiency, and reduce costs.

Read More
Modern AppSec Programs Run on Automation - big blog post

Top Three User Priorities for Software Composition Analysis

Discover the top three user priorities for Software Composition Analysis including application security, DevSecOps, and license compliance.

Read More
Modern AppSec Programs Run on Automation - openssl alert

Advisory: New OpenSSL Critical Security Vulnerability

Learn about the new OpenSSL critical security vulnerabilities CVE-2022-3786 and CVE-2022-3602. Discover their impact, and protect your systems.

Read More
Modern AppSec Programs Run on Automation - blog post

A Rash of Recent CVEs in Go

Discover the recent CVEs affecting Go programming language and their impact on popular applications like Docker and Kubernetes.

Read More
Modern AppSec Programs Run on Automation - The six golden rules for you to follow to improve your software and application security 2

Six Golden Rules for Software and Application Security

Learn the six golden rules for software and application security.. Stay safe during Cybersecurity Awareness Month 2022!

Read More
Modern AppSec Programs Run on Automation - Myths And Facts Of Application Testing With SAST Security Tools Blog Image

Three Big Myths About Application Testing With SAST Tools

Discover the truth about Application Testing with SAST. Learn about common myths, integration, and reducing false positives for security.

Read More
Modern AppSec Programs Run on Automation - A Brief Guide to Cloud Native Applications Technology and Security 1

A Brief Guide to Cloud-Native Applications, Technology, and Security 

A comprehensive guide to cloud-native applications, technology, and security. Learn about containers, microservices, CI/CD, and more.

Read More
Modern AppSec Programs Run on Automation - Six Steps to Achieve Zero Trust in Application Security

Six Steps to Achieve Zero Trust in Application Security

Discover six key steps to achieve zero trust in application security. Learn how to protect your organization from cyberattacks.

Read More
Modern AppSec Programs Run on Automation - npm Massive Dependency Confusion Attack

Single Author Uploaded 168 Packages to npm as Part of a Massive Dependency Confusion Attack

Discover how a single author uploaded 168 malicious npm packages in a dependency confusion attack. Learn how Mend blocked these threats.

Read More
Modern AppSec Programs Run on Automation - cloud architecture security

Cloud Security Architecture: A Practical Guide

Learn about Cloud Security Architecture. Understand the importance, core principles, and threats to secure your cloud environment effectively.

Read More
Modern AppSec Programs Run on Automation - Brand Announce navy 1920 1080 scaled 1

From WhiteSource to Mend—A Rebrand Journey

From WhiteSource to Mend—A Rebrand Journey. Follow our evolution from open source to all code application security.

Read More
Modern AppSec Programs Run on Automation - Brand Announce navy 1920 1080 scaled 1

WhiteSource is Now Mend: You Code, We Cure

Mend, formerly WhiteSource, focuses on automating application security with a remediation-first approach for open source and custom code.

Read More
Modern AppSec Programs Run on Automation - Vulnerability Remediation A Practical Guide

Vulnerability Remediation: A Practical Guide

Practical guide to vulnerability remediation for developers & security teams. Learn how to detect, prioritize, fix, & monitor vulnerabilities.

Read More
Modern AppSec Programs Run on Automation - What is the NIST Supply Chain Risk Management Program

What is the NIST Supply Chain Risk Management Program?

Discover the NIST Supply Chain Risk Management Program.. Learn how to manage cybersecurity risks in digital supply chains effectively.

Read More
Modern AppSec Programs Run on Automation - Blog Why Vulnerability Management Must Go Beyond CVSS to Priority Scoring

Why Vulnerability Management Must Go Beyond CVSS to Priority Scoring

Learn why vulnerability management must go beyond CVSS to priority scoring for better open source security and remediation prioritization.

Read More
Modern AppSec Programs Run on Automation - news AWS target

AWS Targeted by a Package Backfill Attack

Discover how AWS was targeted by a malicious package backfill attack, the methods used by attackers, and how to protect against such attacks.

Read More