Guides
Protect AI models, data, and systems
Test for behavioral risks in conversational AI
Mitigating risks and future trends
AppSec types, tools, and best practices
Automating dependency updates
Manage open source code
Keep source code safe
Improve transparency, security, and compliance
Pre-production scanning and runtime protection
Secure containerized applications
Serverless Security Explained
Learn about serverless security in the cloud ecosystem, including best practices like staying up to date, least privilege, and more.
Top 3 Open Source Risks and How to Beat Them
Discover the top 3 open source risks: security vulnerabilities, licensing compliance, and quality issues. Learn how to mitigate these risks.
Gray Box Testing Guide
Discover the comprehensive guide to gray box testing, a blend of black and white box methods, to enhance your application's security.
Microservices Architecture: Security Strategies and Best Practices
Learn about microservices architecture and the security strategies and best practices needed to protect your organization's systems.
API Security in a Digitally Transformed World
Learn about API security. Understand the importance of securing APIs and the best practices to protect your organization.
White Hat Hacking – Not What You Expect
Discover the world of white hat hacking and the importance of ethical hackers in open source projects.
CVE (Common Vulnerabilities and Exposures) — What is it and how to understand it
What are CVEs and how are they published? What kind of information do CVEs offer about security vulnerabilities in publicly released software?
The 10 Best Security Conferences to Attend in 2021
Discover the top 10 security conferences to attend in 2021, whether in-person or virtually.
Top 10 Open Source Vulnerabilities In 2020
Discover the top 10 open source vulnerabilities in 2020, including Lodash, Jackson-databind, HtmlUnit, and more.
What You Need To Know About Application Security Testing Orchestration
Discover the importance of Appsec Testing Orchestration in the evolving security threat landscape. Learn how to manage tools effectively.
Apache Struts Vulnerabilities Pose ‘Stay or Go’ Question
Stay informed about the latest Apache Struts vulnerabilities and the ongoing debate of whether to continue using the framework or migrate off it.
What Is CVSS v3.1? Understanding The New CVSS
Learn about the Common Vulnerability Scoring System (CVSS) v3.1 & how it measures severity, not risk, in assessing security vulnerabilities.
White Box Testing Guide
Learn about White Box Testing in software development with this comprehensive guide. Understand the types, techniques, tools, advantages.
SCA vs SBOM: Getting Started With Software Composition Analysis
Top tips for starting with a software composition analysis solution. Build a team, set goals beyond scanning, understand the data model, make policies work, start small.
Be Wise — Prioritize: Software Security Vulnerability Prioritization
Learn how to prioritize software security vulnerabilities effectively to ensure your team is addressing the most urgent threats first.
Black Box Testing: What You Need to Know
Learn all about black box testing in application security & quality assurance. Discover techniques, & tools and more.