"This technique enables hackers to silently compromise AI-generated code by injecting hidden malicious instructions into seemingly innocent config files used by Cursor and Copilot" 😟hubs.la/Q03cZTDF0
🎉 Welcome to the OpenSSF family, Minder!
📣 @StackLokHQ is contributing Minder to OpenSSF as a sandbox project! Minder streamlines #OSSSecurity, auto-remediates issues, and flags key risks for devs & security teams.
🔍 Learn more about Minder: openssf.org/guest-blog/2024/…
“90% of the code that's being delivered into a production environment is written by random people on the internet. And those random people are increasingly using generative AI models”—@cmcluck, on Stacklok donating its Minder #security supply chain platform to @openssf#ATO2024
Now available in #Minder: Profile Selectors give you the flexibility to customize how & when policies are applied to your projects. Easily customize how Minder profiles are applied to your projects, and apply the right rules to the right resources.
stacklok.com/blog/flexible-p…
📣TODAY! Join @puerco at #SOSSCommunity Day Europe as he dives into how to build a trusted end-to-end VEX stream, from code to scanner diving deep into a VEX document and explores other highlights of the OpenVEX ecosystem.
Thu. Sep 19 at 10:40am CEST
sched.co/1gb7z