Skip to main content
Liran Tal

Liran Tal

Director of Developer Relations, Snyk

Liran is a software developer, security researcher and open source campion in the JavaScript and Node.js community. He's an internationally recognized GitHub Star, acknowledged for his open source advocacy, and has received the OpenJS Foundation's Pathfinder for Security for his work on Node.js security.

Showing 133 - 144 of 156 records

Blog

10 Serverless security best practices

May 31, 2019

wordpress-sync/Priority-blog-wide-1
Blog

Scoring security vulnerabilities 101: Introducing CVSS for CVEs

May 16, 2019

wordpress-sync/Twitter-header
Blog

A Denial of Service vulnerability discovered in the Axios JavaScript package - affecting all versions of the popular HTTP client

May 6, 2019

wordpress-sync/Security-in-The-Container-Registry-small
Blog

190,000 users affected by Docker Hub’s security breach. Now what?

April 29, 2019

wordpress-sync/Malicious-code-found-in-npm-package-event-stream-downloaded-8-million-times-in-the-past-2.5-months-
Blog

How much do we really know about how packages behave on the npm registry?

April 22, 2019

wordpress-sync/jQuery-Blog-2
Blog

After three years of silence, a new jQuery prototype pollution vulnerability emerges once again

April 15, 2019

wordpress-sync/backdoor-discovered-in-Gem-Header-2
Blog

Malicious remote code execution backdoor discovered in the popular bootstrap-sass Ruby gem

April 4, 2019

wordpress-sync/Node.js-wide
Blog

Introducing experimental integrity policies to Node.js

March 21, 2019

wordpress-sync/Package-Lock-Files-blog-01
Blog

What is package lock json and how a lockfile works for yarn and npm packages?

March 14, 2019

wordpress-sync/Docker-image-security-best-practices-blog-small
Blog

10 Docker Security Best Practices

March 6, 2019

wordpress-sync/the-state-of-open-source-small
Blog

78% of vulnerabilities are found in indirect dependencies, making remediation complex

February 26, 2019

wordpress-sync/the-state-op-open-source-2-small
Blog

ReDoS vulnerabilities in npm spikes by 143% and XSS continues to grow

February 26, 2019