Skip to main content

Resources

Featured
Report

2024 State of Open Source Security Report

Read now

Reading list

Buyers guide

Future-proof your development: The SAST/SCA buyer’s guide for the AI era

White paper

DevSecOps is Dead…or is it?

White paper

Discover the path to trusted software

Narrow Your Search

Type
Topic

Showing 133 - 144 of 262 resources

wordpress-sync/Blog-iac-header
Article

Infrastructure as Code in a DevSecOps World

Learn more about infrastructure as code (IaC), what it is exactly, and the security implications of using IaC in the real world.

wordpress-sync/Container-scanning-1-3
Article

SAST vs. DAST: what is the difference and how to combine the two?

Dynamic security testing (DAST) uses the opposite approach of SAST. Whereas SAST tools rely on white-box testing, DAST uses a black-box approach.

wordpress-sync/Node-How-even-quick-async-functions-can-block-the-Event-Loop-starve
Article

Node.js licensing and security considerations

With the Node.js runtime environment becoming more popular, it's important to know about Node.js licensing and security risks for your web applications.

wordpress-sync/Snyk-Funding-1
Article

Copyleft: The rise of open-source software licensing

Learn more about most popular copyleft licenses, terms, conditions, difference of copyleft vs copyright. Find out what’s best for your team.

wordpress-sync/Blog-iac-header
Article

Is an AGPL License the Right Choice for Your Open Source Projects?

Learn more about AGPL license: advantages, terms and conditions, commercial use, and more. Determine whether the AGPL 3, LGPL 3, or standard GPL 3 will suit your project.

wordpress-sync/Compliance
Article

GNU General Public License: GPLv3 explained

Learn everything you need to know about GPL License: new clauses, the difference between GPLv2 and GPLv3, terms and conditions and more.

wordpress-sync/Kubernetes-Blog
Article

Kubernetes Security: Common Issues and Best Practices

Is Kubernetes secure? Learn more about Kubernetes security issues in a cloud native security context with tips to secure your K8 deployments.

wordpress-sync/Compliance
Article

Open Source Licenses: Types and Comparison

Learn more about different types of open source licenses and how they all seek to protect both the authors and users of the software.

wordpress-sync/sequelize-attack
Article

Malicious Code Explained

What is malicious code? Learn more about malicious code and how it impacts application users and developers.

wordpress-sync/prioritize-vulns-header-2
Article

JavaScript security

Learn more about JavaScript Security. Find out what is the best defense against common JavaScript security vulnerabilities.

API Security Testing: How to test your API security
Article

API Security Testing: How to test your API security

In this article, we’ll walk through the fundamentals of API security and explore some of the best ways to ensure effective API security testing.

How to Detect and Prevent Configuration Drift
Article

How to Detect and Prevent Configuration Drift

Learn about methods of detection and prevention that are effective in managing configuration drift.