Nexus Repository
CVE-2022-31289: Neither Bug nor Vulnerability
On June 11, a cyber security analyst published a blog post alleging that he had discovered a vulnerability in Nexus Repository OSS 3.37.3-02 ...
New Developer Tools for Open Source Dependency Management
Sonatype's focus on developers brings more insights into software dependencies, clearer policy exceptions, and support for PHP users. This Nexus platform update will help developers more easily remediate vulnerable open source usage ...
DevOps Made of Steel
Brett Lesczynski, Ryan Hejnosz and Adam Arihart, security analysts and administrators from U.S. Steel Corporation, spoke at the Elevate 2021 conference about how they upgraded their security practices at one of the largest ...
Update to CVE-2019-7238 in Nexus Repository Manager 3
Today, an article was brought to our attention that suggests a new attack tactic was targeting an old vulnerability in Nexus Repository Manager 3 (NXRM) - CVE-2019-7238. ...
New in Nexus Repository 3.30: Microsoft Azure Blob Storage Support for Expanded Cloud Platform Deployments
We are excited to announce Azure Blob Storage support with Nexus Repository Pro available in 3.30 release! Nexus Repository Pro users can now manage and deploy their critical infrastructure on Microsoft’s Azure Cloud ...
Sonatype Releases New Nexus Firewall Policy to Secure Software Supply Chains from “Dependency Confusion” Attacks
As news continues to cascade on a recent dependency hijacking software supply chain attack, detection of dependency confusion, a.k.a. namespace confusion, copycat packages are on the rise. These counterfeit packages, presenting the ...
Namespace Confusion: Minimizing Risk with Nexus Repository
In case you’re here and you’re not sure why you should care about namespaces and routing rules, I highly recommend you start here. ...
Nexus Repository & Microsoft NuGet Gallery: OData Changes for NuGet V2
Microsoft has officially announced changes to the NuGet Gallery. The NuGet V2 protocol makes use of a query mechanism called OData. Microsoft is planning to deprecate certain OData queries, which began with ...
Nexus Repository Helps Developers Overcome New Docker Hub Rate Limits
Development teams building applications use Nexus Repository (Nexus) to store and manage all of their components, build artifacts, and containers. It provides an efficient way to locally cache myriad types of software ...