Joined 5/1/2012, 1:13:27 PM has 264 karma
Dabbling into open source software supply chain security
github.com/safedep/vet
The PostgreSQL Locking Trap That Killed Our Production API (and How We Fixed It)
Show HN: Xbom – Generate AI and SaaS-Aware SBOMs from Code Using Static Analysis
Vet MCP: Software Composition Analysis for AI Code Editors
Catching the Silent Threat: How Dynamic Analysis Revealed an NPM Attack Chain
Kubernetes Limits Links to Third Party Projects
Sneaky Malware Hidden in Transitive Dependency of ESLint-config-Airbnb-compat
PMG: Wraps Package Managers to Prevent Installation of Malicious OSS Packages
Why Build Software Frameworks