Syndicated Blog

GitGuardian Blog – Code Security for the DevOps generation
A blog for developers, security engineers, and other cybersecurity professionals to learn about secrets and code security, DevSecOps, Infra-as-Code and much more.
DevOpsDays Birmingham AL 2024: Guardrails, Immutable Infrastructures, and Community

DevOpsDays Birmingham AL 2024: Guardrails, Immutable Infrastructures, and Community

| | Conferences
Explore highlights from DevOpsDays Birmingham 2024, featuring workshops, sessions, and community-driven discussions on empowering teams and doing it securely ...
AI Package Hallucination: Spreading Malicious Packages Using Generative AI - Bar Lanyado

GitHub Copilot Security and Privacy Concerns: Understanding the Risks and Best Practices

| | Best Practices
Worried about GitHub Copilot’s security and privacy concerns? Learn about potential risks and best practices to protect yourself and your organization while leveraging AI ...
How to Handle Secrets in Helm

How to Handle Secrets in Helm

Learn step-by-step techniques and best practices to handle secrets in Helm charts safely and effectively. Level up your Helm deployments today! ...
GitGuardian's FP Remover Dramatically Reduces False Positive In Scans

Elevating your secrets security hygiene: H1 roundup of our product innovations

| | Product News
Discover how GitGuardian's latest product innovations enhance your secrets security, streamline remediation, and improve incident management for better protection of your software supply chain ...
Drupal GovCon 2024: Securing The Government's Open-Source Web Applications

Drupal GovCon 2024: Securing The Government’s Open-Source Web Applications

| | Conferences
Read our key takeaways from Drupal GovCon 2024, where Drupal experts explored secure open-source solutions for U.S. government websites and collaborative tools ...
The Story of Crush: The Microservice That Navigated the Cloud Native O... Mattias Gees & Tom Meadows

Getting Started With SPIFFE For Multi-Cloud Secure Workload Authentication

| | DevSecOps, Tutorials
SPIFFE stands for Secure Production Identity Framework for Everyone, and aims to replace single-factor access credentials with a highly scalable identity solution. This blog post provides some practical applications of SPIFFE in ...
DEF CON 32: What We Learned About Secrets Security at AppSec Village

DEF CON 32: What We Learned About Secrets Security at AppSec Village

| | Conferences
At DEF CON 32's AppSec Village, we explored secrets security challenges, answered common questions, and shared how to detect and handle hidden credentials effectively ...
From False Positives to Potential Breaches: The Risks of Prematurely Closing Incidents

From False Positives to Potential Breaches: The Risks of Prematurely Closing Incidents

| | Best Practices
Ignoring low-risk secrets in GitGuardian? This could be a costly mistake. Learn how to avoid the hidden dangers of prematurely closing incidents ...
Dependency Confusion Vulnerability Exposure Protections In GitGuardian SCA

Dependency Confusion Attacks and Prevention: Register Your Private Package Names

| | supply chain security
Dependency confusion attacks exploit gaps in your software supply chain. Dive into modern dependency management and learn how to defend your systems with best practices ...
Hot Takes and Cool Strategies: BSides Las Vegas 2024

Hot Takes and Cool Strategies: BSides Las Vegas 2024

| | Conferences
Experience the heat of innovation at BSides Las Vegas 2024, where cybersecurity experts tackle AI security, passwordless solutions, and zero-downtime credential rotation ...

Application Security Check Up