Joined March 2023
1 Photos and videos
Have you heard of "cloaking"? Advertisers peddling malicious or adult content use cloaking technology to run ads without getting banned by Google, Facebook, TikTok, etc. Bad guys are now using it to deliver dynamic payloads in malicious NPM packages! getsafety.com/blog-posts/npm…
108
The Safety research team has identified a new NPM based malware we are calling "Integrator-Filescrypt". This campaign uses a unique "cloaking" technique to hide from researchers and cloud providers. It's sneaky, & effective. Read more on our blog: getsafety.com/blog-posts/npm…
59
CVSS Severity is no longer an effective way to prioritize and triage your vulnerabilities! Learn how Safety's multi-dimensional approach to software vulnerability assessment reduces vulnerability noise by up to 90%. 🔍📊🛡️ safetycli.com/research/beyon…
1
1
280
In part 2 of our series on CVSS and the future of vulnerability assessment, read how Safety combines Severity with Exploitability, Reachability, and Project Context to allow developers to focus on the findings that matter. #devops #devsecops #CVSS #Python
154
4/ 🌍 Beyond Python: Safety DB is expanding to Javascript, Java, and .NET! #BeyondPython #Python #javascript
55
3/ 💡 Our Core Tenets Cut Vulnerability Noise by 90% 🛡️ Proactive, End-to-End Security 🌐 Developer-First Approach 👩‍💻 #Python #DeveloperFirst
39
2/ 🎯 Why the Change? It's not just a name. We're launching TWO game-changing products and a whole new approach to software security. Stay tuned for details! #softwaresupplychain
36
Learn about the role of CVSS in software supply chain vulnerabilities in our latest blog post, and why severity isn't enough when prioritizing and triaging your vulnerabilities. 🔒🛡️🔎 safetycli.com/research/vulne… #Python #CVSS #Cybersecurity #softwaresupplychain #devsecops #DevOps
1
1
70
ReDoS Vulnerabilities: Beyond Python (Part 3) Read about our Cybersecurity Intelligence Team's discovery of new ReDoS vulnerabilities in Git-url-parse, Semgrep and OSSGadget in our latest research post pyup.io/posts/beyond-python-… #Cybersecurity #SoftwareSupplyChain #Python #DevSecOps
57