Mend.io Blog

You can’t rely on open source for security — not even when ai is involved

You can’t rely on open source for security — not even when AI is involved

LATEST
Learn more

Filter & Search

You can’t rely on open source for security — not even when ai is involved - blog cover open source security with ai

You can’t rely on open source for security — not even when AI is involved

Learn how to manage OSS risk and build remediation that actually lands.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - blog cover ai security maturity checklist

Introducing Mend.io’s AI Security Maturity Survey + Compliance Checklist available today

A new tool to help security teams quantify AI risk and prepare for 2026 regulations.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - llm red teaming blog image

LLM Red Teaming: Threats, Testing Process & Best Practices

A practical guide to LLM red teaming.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - automated red teaming

Automated Red Teaming: Capabilities, Pros/Cons, and Latest Trends

Learn how automated red teaming simulates cyberattacks at scale.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - announcement post azi cohen

Mend Leadership Update: Building on Our Momentum for the Next Phase of Growth

An update on Mend.io's leadership as we enter the next phase of growth.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - servicenow blog featured image

Why AppSec and Network Risk Management Must Be Unified in the Modern Enterprise

See how Mend.io’s ServiceNow integration unifies application, network, and operational risk.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - blog post npm fake font packages

NPM User Flooding Registry with Fake Font Packages

Analysis of an npm account flooding the registry with malformed font packages.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - blog critical cve 2025 55182

From Zero to RCE: How a Single HTTP Request Compromises React and Next.js Applications

Discover a critical security flaw that enables remote code execution in React Server Components.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - mend wiz integration graphic

Mend.io + Wiz: A New Code-to-Cloud Integration for Accurate, Context-Driven Risk Prioritization

See how Mend.io and Wiz deliver true code-to-cloud visibility.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - blog cover top 7 ast providers post 1

Best Application Security Testing Providers: Top 7 in 2025

Discover how AST providers help teams find and fix vulnerabilities.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - blog zero day shai hulud v2

Shai-Hulud: The Second Coming

See how the latest Shai-Hulud attack works.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - best sast tools top 10 solutions in 2025

Best SAST tools: Top 10 solutions in 2025

Explore the top 10 SAST tools of 2025.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - blog banner risk reduction dashboard 2

AppSec metrics fail, Mend.io’s Risk Reduction Dashboard fixes it

See how Mend.io's Risk Reduction Dashboard works.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - red teaming blog post v3

Why AI Red Teaming is different from traditional security

Explore how AI red teaming redefines security.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - renovate npm post 1

Building a more secure npm ecosystem with Mend Renovate

See how Mend Renovate is strengthening npm ecosystem security.

Read More Read More
You can’t rely on open source for security — not even when ai is involved - best application security testing providers

Best Application Security Testing Services to Know

Discover the best Application Security Testing (AST) services in 2025.

Read More Read More

Subscribe to our Blog

Never miss a post. Opt-out at any time.

Thank you

You’re all set to receive our latest posts.

AI Security & Compliance Assessment

Map your maturity against the global standards. Receive a personalized readiness report in under 5 minutes.