Guides
Protect AI models, data, and systems
Test for behavioral risks in conversational AI
Mitigating risks and future trends
AppSec types, tools, and best practices
Automating dependency updates
Manage open source code
Keep source code safe
Improve transparency, security, and compliance
Pre-production scanning and runtime protection
Secure containerized applications
Black Duck SCA: Pros/Cons, Architecture, and Quick Tutorial
A detailed review of Black Duck SCA plus a Mend SCA alternative.
Automated Red Teaming: Capabilities, Pros/Cons, and Latest Trends
Learn how automated red teaming simulates cyberattacks at scale.
Best practices for dealing with Log4j in 2026
Log4j best practices for 2026: sanitize input, scan dependencies, stay patched.
Understanding Veracode SAST: Pros/Cons, Architecture, and Pricing
A detailed review of Veracode SAST plus a Mend SAST alternative.
Veracode SCA Solution Overview: Features, Limitations, and Tutorial
A detailed review of Veracode SCA plus a Mend SCA alternative.
Mend.io Leadership Update: Building on Our Momentum for the Next Phase of Growth
An update on Mend.io's leadership as we enter the next phase of growth.
Why AppSec and Network Risk Management Must Be Unified in the Modern Enterprise
See how Mend.io’s ServiceNow integration unifies application, network, and operational risk.
NPM User Flooding Registry with Fake Font Packages
Analysis of an npm account flooding the registry with malformed font packages.
MCP Security: 10 Key Elements to Secure and Critical Best Practices
Learn what MCP security is, key risks like prompt injection, and best practices.
From Zero to RCE: How a Single HTTP Request Compromises React and Next.js Applications
Discover a critical security flaw that enables remote code execution in React Server Components.
Mend.io + Wiz: A New Code-to-Cloud Integration for Accurate, Context-Driven Risk Prioritization
See how Mend.io and Wiz deliver true code-to-cloud visibility.
Shai-Hulud: The Second Coming
See how the latest Shai-Hulud attack works.
AppSec metrics fail, Mend.io’s Risk Reduction Dashboard fixes it
See how Mend.io's Risk Reduction Dashboard works.
Why AI Red Teaming is different from traditional security
Explore how AI red teaming redefines security.
Building a more secure npm ecosystem with Mend Renovate
See how Mend Renovate is strengthening npm ecosystem security.
Ultimate Guide to Open Source Security: Risks, Attacks & Defenses
Explore top risks and proven open source security strategies.
Never miss a post. Opt-out at any time.
You’re all set to receive our latest posts.