Mend.io Blog

Miasma: red hat cloud services npm packages hit by a mini shai-hulud-style campaign

Miasma: Red Hat Cloud Services npm Packages Hit by a Mini Shai-Hulud-Style Campaign

LATEST
Learn more

Filter & Search

Shining a light on shadow ai: what it is and how to find it - blog shining a light on shadow ai

Shining a Light on Shadow AI: What It Is and How to Find It

Find out more about shadow AI and the risks of leaving it uncovered.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - blackhat 2024 blog

Black Hat 2024: AI, AI, and Everything Else

Chris Lindsey shares his takeaways from another exciting Black Hat conference

Read More Read More
Shining a light on shadow ai: what it is and how to find it - wheres my documentation blog

Dude, Where’s My Documentation?

When the zero day hits the fan, can you find the information you need?

Read More Read More
Shining a light on shadow ai: what it is and how to find it - ai and aws blog 1

Next-Gen Vulnerability Assessment: AWS Bedrock Claude in CVE Data Classification

Explore LLMs in cybersecurity research: analyzing vulnerability data, sifting through CVE information, and enhancing digital safety.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - a guide to open source software

A Guide to Open Source Software

Explore how to use open source software to innovate while minimizing risk.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - big data sea

Bigger Data, Bigger Problems: Three Major Challenges in Big Data Security

Discover the challenges of big data security: data sources, infrastructure, and technology issues, and how to keep your big data secure.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - dependency management protecting your code

Dependency Management: Protecting Your Code

Learn how to protect your application’s code with dependency management.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - polyfill supply chain attack post

More than 100K sites impacted by Polyfill supply chain attack

The new Chinese owner tampers with the code of cdn.polyfill.io to inject malware targeting mobile devices.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - dependency management vs dependency updates whats the difference

Dependency Management vs Dependency Updates: What’s the Difference?

Keeping dependencies up to date is a big part of dependency management, but it's not everything. Learn more about the differences between the two.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - blog ai and malicious packages

Hallucinated Packages, Malicious AI Models, and Insecure AI-Generated Code

Worried about attackers using AI models to write malicious code? Here are three other ways AI model use can lead to attacks.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - large devsecops demands cultural change blog

In Modern AppSec, DevSecOps Demands Cultural Change

Learn about the cultural change needed for DevSecOps in modern AppSec. Discover how collaboration and innovation can improve security.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - quick guide to popular ai licenses

Quick Guide to Popular AI Licenses

Not all "open" AI licenses are truly open source. Learn more about the most popular licenses on Hugging Face.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - broken nvd 1

NVD Update: Help Has Arrived

There's hope yet for the world's most beleaguered vulnerability database.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - threat hunting report img

Threat Hunting 101: Five Common Threats to Look For

Learn more about supply chain threats and where to find them.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - guide to the rail family of ai licenses

Responsible AI Licenses (RAIL): Here’s What You Need to Know

Learn about this family of licenses that seek to limit harmful use of AI models.

Read More Read More
Shining a light on shadow ai: what it is and how to find it - broken nvd 1

NVD Update: More Problems, More Letters, Some Questions Answered

We're not saying the NVD is dead but it's not looking good.

Read More Read More

Subscribe to our Blog

Never miss a post. Opt-out at any time.

Thank you

You’re all set to receive our latest posts.