Log4Shell One Year Later – What Have We Learned?
November 2025
We reflect on the industry changes since the Log4j vulnerability and how supply chain security practices have evolved.
Welcome to our blog – your source for the latest news, technical deep-dives, and tips on software supply chain security, open source management, DevSecOps best practices, and more. Stay informed and stay secure.
November 2025
We reflect on the industry changes since the Log4j vulnerability and how supply chain security practices have evolved.
October 2025
Step-by-step tutorial on integrating SBOM generation into a Jenkins and GitHub Actions pipeline, with sample configs.
September 2025
A sneak peek into our upcoming AI-BOM feature, and how it can help track AI model lineage.
September 2025
Interview with our CTO on cultivating a culture where developers embrace security.
Announcements of new features, improvements, and releases.
How-to articles on using our tools and general security best practices.
Commentary on news like major breaches, new regulations, and emerging trends.
Success stories and interviews with users about implementation and results.
Our blog has a search function so you can easily find if we've written about a topic you care about. If you enjoy our content, consider subscribing to our newsletter. We send a monthly roundup of our top blog posts and other valuable insights straight to your inbox.
Subscribe to Newsletter