AI Governance in AppSec: The More Things Change, The More They Stay the Same

Learn how AppSec teams can extend existing security and compliance practices seamlessly to AI ... Read More

Introducing Mend AI Premium

Robust AI governance and threat detection with Mend AI Premium ... Read More

Securing AI vs AI Security: What Are We Talking About?

This post breaks down the differences between securing AI, secure AI use, AI for security, and AI safety ... Read More
Fake VS code extension attack chain

Fake VS Code Extension on npm Spreads Multi-Stage Malware

| | malicious packages
Learn about a fake VS-code extension on npm—truffelvscode—typosquatting the popular truffle for VS-code extension ... Read More

OWASP Top 10 for LLM Applications: Risks, Impact, and Mitigation

| | AI Models Risk, AI Security
The OWASP Top 10 for LLM applications, explained risk by risk ... Read More

AI-Powered Remediation: Mend SAST Performs +46% Better Than Competitors

| | Application Security
See how Mend SAST's AI-powered automated remediation eliminates vulnerabilities with speed & accuracy ... Read More

Mend.io and JetBrains Partner to Bring Enhanced Code Security to Developers

| | Application Security
Announcing a partnership between Mend.io and JetBrains for IDE and Qodana ... Read More

Mend Renovate Enterprise Cloud: Dependency Updates at Scale

Announcing the launch of our cloud-based solution for automated dependency updates ... Read More
CVSS 3.1 vs CVSS 4.0: A Look at the Data

CVSS 3.1 vs CVSS 4.0: A Look at the Data

| | Application Security
CVSS base scores are up in the latest version of the scoring system. What does that mean for AppSec practitioners? ... Read More

CVE-2024-50379: A Critical Race Condition in Apache Tomcat

| | malicious packages
An Apache Tomcat web server vulnerability has been published, exposing the platform to remote code execution through a race condition failure ... Read More
Loading...