Mend.io Blog

Next-Gen Vulnerability Assessment: AWS Bedrock Claude in CVE Data Classification

Next-Gen Vulnerability Assessment: AWS Bedrock Claude in CVE Data Classification

LATEST
Learn more
Filter & Search

Creating Your Open Source Policy Template: 3 Points You Don’t Want to Overlook

Learn how to create an effective open source policy template with 3 key points to ensure compliance and enforcement.

Read More

Top Open Source Projects To Use For Junior Developers

Discover the top open source projects for junior developers to hone their coding skills. From Apache Commons to Google Guava, & more.

Read More

Equifax Breach Year in Review: Vulnerabilities in Apache Struts Still Going Strong

Equifax breach review reveals vulnerabilities in Apache Struts are still unpatched by many companies. Learn why remediation is crucial.

Read More
bitbucket

Automated Dependency Updates For Bitbucket Cloud

Learn how to use Renovate to keep your repositories up-to-date. Self-hosting instructions provided. Beta support available.

Read More
itemeditorimage 5b7538bb4eb42

Zombies: Top 5 Open Source Vulnerabilities That Refuse To Die

Discover the top 5 open source vulnerabilities that still haunt developers. Learn how to protect your applications from security threats.

Read More
itemeditorimage 5b72dd5a76231

The Next Generation of DevOps Adds Security into the Blend

DevOps and DevSecOps are a generation apart from each other, representing a natural evolution to the integration of automated security into the DevOps movement.

Read More
aHViPTcyNTE0JmNtZD1pdGVtZWRpdG9yaW1hZ2UmZmlsZW5hbWU9aXRlbWVkaXRvcmltYWdlXzViNjk3N2RkNTFlOTQuanBnJnZlcnNpb249MDAwMCZzaWc9ZmQ4Y2JiZTNlN2FhNDczYjczYTcyN2E5NzA2OWI0YTk

Dual Licensing for Open Source Components: Yeah or Meh?

Explore the pros & cons of dual licensing for open source components. Learn how it works, its benefits, challenges, & compliance requirements.

Read More
kubernetes inA

Automated Dependency Updates For KUBERNETES Manifests

Learn how to configure file matching with Renovate to keep Docker dependencies up-to-date in manifests.

Read More

8 Startup Due Diligence Questions You want to Be Asking

Discover the top 8 due diligence questions to prepare your startup for investment. From technology roadmaps to scalability.

Read More
Github

GITHUB Vulnerability Alerts

Renovate supports raising Pull Requests immediately for any JavaScript or Python package identified as having a vulnerable version by GitHub’s Vulnerability Alerts.

Read More
aHViPTcyNTE0JmNtZD1pdGVtZWRpdG9yaW1hZ2UmZmlsZW5hbWU9aXRlbWVkaXRvcmltYWdlXzViNDM1YjNmYmJmNjAuanBnJnZlcnNpb249MDAwMCZzaWc9ZGYwMmZmYjZhNDg2YzFkNGQ1NmJkNmQ0NTUzMmQzZmI

6 Open Source Software Security Concerns Dispelled

Discover and dispel 6 common concerns around using open source software in applications. Learn how to mitigate risks and harness its power.

Read More
9 inB

Dependency Deprecation Warnings

Renovate allows raising issues to warn a repository if it is using deprecated npm packages. This helps prevent that a dependency you are using may never get updates again.

Read More

CVSS v3 Is Still Missing The Target For Prioritization

Learn about the flaws in the Common Vulnerability Scoring System and how it may impact security professionals.

Read More
Vulnerability Disclosure 1

Vulnerability Disclosure: Find the Bugs in Your Code Before the Hackers Do

Learn about vulnerability disclosure and how to find bugs in your code before hackers do.

Read More
owasp a9 1

You Can’t Ignore Using Components With Known Vulnerabilities

Learn why using components with known vulnerabilities is a major issue in application security and how to address it with OWASP guidelines.

Read More
aHViPTcyNTE0JmNtZD1pdGVtZWRpdG9yaW1hZ2UmZmlsZW5hbWU9aXRlbWVkaXRvcmltYWdlXzViMmI4NjdlOGJmNTkuanBnJnZlcnNpb249MDAwMCZzaWc9ZmI4ZDJjNzc1Y2VkM2I0ODI4YzMyNWZhMjczZjIyZGI3D

7 Chinese Open Source Projects You Should Know About

Explore 7 groundbreaking Chinese open source projects like Vue and Dragonfly.

Read More

Subscribe to our Newsletter

Join our subscriber list to get the latest news and updates

Thanks for signing up!