Mend.io Blog

Poisoned axios: npm account takeover, 50 million downloads, and a rat that vanishes after install

Poisoned Axios: npm Account Takeover, 50 Million Downloads, and a RAT That Vanishes After Install

LATEST
Learn more

Filter & Search

Cvss 4. 0 is here: how to make the most of it - cvss4 is here how to make the most of it

CVSS 4.0 is Here: How to Make the Most of It

Learn about the latest version of CVSS 4.0. Understand the new metrics and how to use them in your org's vulnerability remediation strategy.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - how to get the most out of sast blog post

Quality vs. Quantity: How to Get the Most Out of SAST

Learn how to make the most out of Static Application Security Testing (SAST) without overwhelming developers.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - 8 ina

Idempotency: The Microservices Architect’s Shield Against Chaos

Discover the power of idempotency in microservices architecture. Learn how to maintain data consistency and predictability.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - what existing security threats do ai and llms amplify post

What Existing Security Threats Do AI and LLMs Amplify? What Can We Do About Them?

Learn about the existing security threats that AI and LLMs amplify and how to protect against them.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - kubernetes in

How to Manage Secrets in Kubernetes

Learn how to manage secrets in Kubernetes with best practices & tools. Secure your apps & data with Kubernetes Secrets & External Secrets.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - guide to using epss scores

Mend’s Handy Guide to Using EPSS Scores

Discover Mend's Handy Guide to Using EPSS Scores. Learn how EPSS can predict exploits and prioritize vulnerability remediation effectively.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - challenges for license compliance and copyright with ai

The Challenges for License Compliance and Copyright with AI

Discover the challenges of license compliance and copyright with AI-generated code in software development. Learn about legal risks.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - 6 more top tips for holistic appsec and software supply chain security

Six More Top Tips For Holistic AppSec and Software Supply Chain Security

Learn how to strengthen your security posture with holistic approaches to application security and software supply chain security.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - 6 top tips for holistic appsec and software supply chain security

Six Top Tips For Holistic AppSec and Software Supply Chain Security

Discover six top tips for holistic application security and software supply chain security for long-term success.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - turnover relationships and tools in cybersecurity

Turnover, Relationships, and Tools in Cybersecurity

Discover effective strategies for handling security team turnover, maintaining tool efficiency, and fostering strong developer relationships.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - closing the loop on python circular import issue

Closing the Loop on Python Circular Import Issue

Learn how to address and prevent Python circular import issues to write cleaner and more maintainable code. Strategies, examples, and more.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - building security culture starts with building relationships

Building a Security Culture Starts with Building Relationships

Learn how building relationships between security and development teams can improve application security. Find key tactics for security.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - npm in

Getting Started with npm Basics: Mastering Node Package Manager Commands

Learn the basics of npm with this comprehensive guide. From installation to package management, and mastering Node Package Manager commands.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - what new security threats arise from the boom in ai and llms

What New Security Threats Arise from The Boom in AI and LLMs?

Explore the security threats arising from the boom in AI and LLMs, including data privacy, misinformation, and resource exhaustion.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - python import mastering the advanced features

Python Import: Mastering the Advanced Features

Explore advanced Python import features to enhance your code organization and efficiency. Learn about dynamic imports, resource management.

Read More Read More
Cvss 4. 0 is here: how to make the most of it - what developers need do to implement effective appsec and dependency management

What Developers Need to Succeed for Effective Application Security

Discover what developers need to succeed for application security. Learn about shifting left, automation, training, collaboration, and more.

Read More Read More

Subscribe to our Blog

Never miss a post. Opt-out at any time.

Thank you

You’re all set to receive our latest posts.

AI Security & Compliance Assessment

Map your maturity against the global standards. Receive a personalized readiness report in under 5 minutes.