Hallucinated Packages, Malicious AI Models, and Insecure AI-Generated Code

Worried about attackers using AI models to write malicious code? Here are three other ways AI model use can lead to attacks.

Quick Guide to Popular AI Licenses

Not all “open” AI licenses are truly open source. Learn more about the most popular licenses on Hugging Face.

NVD Update: Help Has Arrived

There’s hope yet for the world’s most beleaguered vulnerability database.

Responsible AI Licenses (RAIL): Here’s What You Need to Know

Learn about this family of licenses that seek to limit harmful use of AI models.

NVD Update: More Problems, More Letters, Some Questions Answered

We’re not saying the NVD is dead but it’s not looking good.

Mend.Io And Sysdig Launch Joint Solution For Container Security

Mend.io and Sysdig Launch Joint Solution for Container Security

Learn how the Mend.io and Sysdig integration boosts container security by combining runtime insights and vulnerability prioritization.

How Do I Protect My AI Model?

How Do I Protect My AI Model?

Learn essential strategies to secure your AI models from theft, denial of service, and other threats, covering copyright issues, risk management, and secure storage practices

Quick Guide To The OWASP OSS Risk Top 10

Quick Guide to the OWASP OSS Risk Top 10

Learn about the top 10 risks of open source software, beyond just CVEs. From known vulnerabilities to unapproved changes.

What Makes Containers Vulnerable?

What Makes Containers Vulnerable?

Learn about the vulnerabilities that containers bring to your applications and how to address them to keep attackers at bay.

NVD Backlog Triggers Cybersec Leader's Public Response

NVD’s Backlog Triggers Public Response from Cybersec Leaders

The National Vulnerability Database’s backlog triggers a public response from cybersecurity leaders. Concerns raised, open letter to Congress

OWASP Top 10 For LLM Applications

OWASP Top 10 for LLM Applications: A Quick Guide

Discover the OWASP Top 10 for LLM Applications in this comprehensive guide. Learn about vulnerabilities, & prevention techniques.

What You Need To Know About Hugging Face

What You Need to Know About Hugging Face

Stay informed about the risks and challenges of AI models with Hugging Face. Learn how to identify and secure AI-generated code.

CVE-2024-3094: Critical Backdoor Found In XZ Utils

Critical Backdoor Found in XZ Utils (CVE-2024-3094) Enables SSH Compromise 1

Discover how CVE-2024-3094 affects XZ Utils and enables SSH compromise. Get insights on detection, mitigation, and system security.

Learning From History: AI Gender Bias

Learning From History: AI Gender Bias

Learn about AI gender bias in large language models, how historical data impacts AI, & implications for women in health & car safety fields.

Container Security: Creating an Effective Security Program with Reachability Analysis

Learn how to create an effective container security program with reachability analysis to protect your applications from vulnerabilities.

Mend.Io Launches Mend Container

Mend.io Launches Mend Container

Mend.io launches Mend Container to address security in cloud-native development, offering reachability analysis and secrets detection.