#jfrog — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #jfrog, aggregated by home.social.
-
🚨 Ah yes, the perilous saga of imaginary #SQLite #vulnerabilities - where #JFrog #Security bravely fights against the fearsome specter of non-existent code. 🙄 #NVD and #CISA, always on the pulse of non-issues, declared a crisis, but JFrog heroically deduced the obvious: the boogeyman doesn’t exist. 👏
https://research.jfrog.com/post/sqlite-critical-cves-or-llm-slops/ #Cybersecurity #Humor #HackerNews #ngated -
🚨 Ah yes, the perilous saga of imaginary #SQLite #vulnerabilities - where #JFrog #Security bravely fights against the fearsome specter of non-existent code. 🙄 #NVD and #CISA, always on the pulse of non-issues, declared a crisis, but JFrog heroically deduced the obvious: the boogeyman doesn’t exist. 👏
https://research.jfrog.com/post/sqlite-critical-cves-or-llm-slops/ #Cybersecurity #Humor #HackerNews #ngated -
OpenAI Models Exploit JFrog Zero-Days to Breach Hugging Face
OpenAI's models uncovered critical zero-day vulnerabilities in JFrog's self-hosted Artifactory installations, potentially granting hackers unrestricted internet access - but thanks to JFrog's swift response, fixes were rapidly developed and deployed to protect customers. The vulnerabilities, now patched, were responsibly disclosed by OpenAI…
#ZeroDay #Jfrog #Openai #Artifactory #VulnerabilityDisclosure
-
Стало известно, как ИИ‑агент OpenAI сбежал и взломал Hugging Face. Дыра нашлась в софте JFrog
В истории о том, как две модели OpenAI “сбежали” во время тестирования и взломали Hugging Face, появилась новая важная деталь. До недавнего времени было незвестно, как именно модели смогли выбраться. OpenAI говорила обтекаемо — про zero‑day в некоем стороннем ПО, которое проксировало пакетные репозитории, — но вендора не называла. 27 июля дыра обрела имя: в блоге компания JFrog призналась, что уязвимости нашлись в ее собственном продукте — Artifactory.
-
Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)
https://jfrog.com/blog/jfrog-and-openai-collaboration-on-zero-day-security-findings/
Comments: https://news.ycombinator.com/item?id=49082550
#HackerNews #FastRemediation #TrustModel #ZeroDaySecurity #JFrog #OpenAI
-
Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)
https://jfrog.com/blog/jfrog-and-openai-collaboration-on-zero-day-security-findings/
Comments: https://news.ycombinator.com/item?id=49082550
#HackerNews #FastRemediation #TrustModel #ZeroDaySecurity #JFrog #OpenAI
-
RE: https://mastodon.ie/@JSAMcFarlane/116737353743234242
This hit me again so I filed an issue fully expecting the Conan team to reject it. Fair play, they changed their CLI within half a day!❤️ #simplicity #jfrog #software
-
RE: https://mastodon.ie/@JSAMcFarlane/116737353743234242
This hit me again so I filed an issue fully expecting the Conan team to reject it. Fair play, they changed their CLI within half a day!❤️ #simplicity #jfrog #software
-
#NanoClaw and #JFrog have partnered to launch a #security integration that protects NanoClaw autonomous #agents from malicious #codeinjection. The integration hardwires NanoClaw agents to JFrog’s vetted software registries, ensuring they only download safe dependencies. This addresses the growing risk of autonomous agents installing packages without human oversight, often falling victim to software supply chain attacks. https://venturebeat.com/security/nanoclaw-and-jfrog-launch-immune-system-to-block-ai-agents-from-downloading-malicious-code?AIagents.at #AIagent #AI #ML #NLP #LLM #GenAI
-
#NanoClaw and #JFrog have partnered to launch a #security integration that protects NanoClaw autonomous #agents from malicious #codeinjection. The integration hardwires NanoClaw agents to JFrog’s vetted software registries, ensuring they only download safe dependencies. This addresses the growing risk of autonomous agents installing packages without human oversight, often falling victim to software supply chain attacks. https://venturebeat.com/security/nanoclaw-and-jfrog-launch-immune-system-to-block-ai-agents-from-downloading-malicious-code?AIagents.at #AIagent #AI #ML #NLP #LLM #GenAI
-
JFrog (IL0011684181) sorgt mit Insider-Verkäufen und einer Kursbewertung, die viele Trader als überhöht empfinden, für Diskussionen.
• Hohe Bewertung wirft Fragen zur Unternehmensentwicklung auf
• Insider-Verkäufe oft als Warnsignal interpretiert
• Tech-Sektor bleibt volatile Lage -
🔥 TRENDING
📢 JFrog (FROG) Is Up 14.4% After Strong Q1 Cloud Demand And Raised 2026 Revenue Outlook - Sahm
-
🔥 TRENDING
📢 JFrog (FROG) Is Up 14.4% After Strong Q1 Cloud Demand And Raised 2026 Revenue Outlook - Sahm
-
Just found #JFrog's SKILL repository https://docs.jfrog.com/artifactory/docs/skills-repositories which feels like the slightly heavy handed enterprise approach. lets see if there is something a sightly more lightweight.
-
Just found #JFrog's SKILL repository https://docs.jfrog.com/artifactory/docs/skills-repositories which feels like the slightly heavy handed enterprise approach. lets see if there is something a sightly more lightweight.
-
To my #jfrog bubble: Given #artifactory with a remote (cached) repository. I can see the contents of the remote repo using curl commands, even using jf rt curl commands. But if I try to jf rt search for something, it doesn't return results. For jf rt dl you have to set JFROG_CLI_TRANSITIVE_DOWNLOAD=true. Is there something similar for jf rt search? Or do I have to code up a recursive curl based search?
-
To my #jfrog bubble: Given #artifactory with a remote (cached) repository. I can see the contents of the remote repo using curl commands, even using jf rt curl commands. But if I try to jf rt search for something, it doesn't return results. For jf rt dl you have to set JFROG_CLI_TRANSITIVE_DOWNLOAD=true. Is there something similar for jf rt search? Or do I have to code up a recursive curl based search?
-
https://winbuzzer.com/2026/03/21/ghostclaw-npm-fake-steals-macos-developer-credentials-xcxwbn/
GhostClaw Fake OpenClaw Installer Steals macOS Dev Credentials
#AI #Ghostclaw #OpenClaw #JFrog #npm #Cybersecurity #Malware #macOS #GitHub #Cybercrime #Hackers #Cyberattacks #DataTheft
-
https://winbuzzer.com/2026/03/21/ghostclaw-npm-fake-steals-macos-developer-credentials-xcxwbn/
GhostClaw Fake OpenClaw Installer Steals macOS Dev Credentials
#AI #Ghostclaw #OpenClaw #JFrog #npm #Cybersecurity #Malware #macOS #GitHub #Cybercrime #Hackers #Cyberattacks #DataTheft
-
One last story for the week/month: Harness makes its #artifactregistry generally available beyond early preview customers, with a security twist that could challenge established players such as #jfrog
https://www.techtarget.com/searchsoftwarequality/news/366639489/Harness-Artifact-Registry-strengthens-supply-chain-governance #devsecops #appdev #softwaresupplychainsecurity
-
One last story for the week/month: Harness makes its #artifactregistry generally available beyond early preview customers, with a security twist that could challenge established players such as #jfrog
https://www.techtarget.com/searchsoftwarequality/news/366639489/Harness-Artifact-Registry-strengthens-supply-chain-governance #devsecops #appdev #softwaresupplychainsecurity
-
https://winbuzzer.com/2026/02/21/anthropic-launches-claude-code-security-desktop-automation-xcxwbn/
Anthropic Debuts Claude Code Security, JFrog Falls 25%
#AI #Anthropic #Claude #ClaudeCode #Cybersecurity #AISecurity #SecurityVulnerabilities #GitHub #CrowdStrike #JFrog #AICoding #AIAgents #AgenticAI
-
https://winbuzzer.com/2026/02/21/anthropic-launches-claude-code-security-desktop-automation-xcxwbn/
Anthropic Debuts Claude Code Security, JFrog Falls 25%
#AI #Anthropic #Claude #ClaudeCode #Cybersecurity #AISecurity #SecurityVulnerabilities #GitHub #CrowdStrike #JFrog #AICoding #AIAgents #AgenticAI
-
🐧🐝 Learn how to set up Coroot in a #kubernetes cluster using JFrog Artifactory as a self-hosted container registry tool: https://docs.coroot.com/guides/jfrog-artifactory/
#JFrog #Coroot #observability #coroot #AI #opensource #FOSS #linux #ebpf #monitoring #sre
-
🐧🐝 Learn how to set up Coroot in a #kubernetes cluster using JFrog Artifactory as a self-hosted container registry tool: https://docs.coroot.com/guides/jfrog-artifactory/
#JFrog #Coroot #observability #coroot #AI #opensource #FOSS #linux #ebpf #monitoring #sre
-
I searched quite a bit this morning, and it turns out there is a far better open-source tool that works as an Artifactory replacement for small projects. It's not in any of the alternatives-to lists. It is known as mkdir.
-
I searched quite a bit this morning, and it turns out there is a far better open-source tool that works as an Artifactory replacement for small projects. It's not in any of the alternatives-to lists. It is known as mkdir.
-
Just stumbled upon the #JFrog AI Catalog "Your centralized hub for all AI models and initiatives, from third-party to internally-developed. It simplifies model discovery and access, provides robust governance, and accelerates the delivery of trusted AI applications."
https://jfrog.com/ai-catalog/ -
Just stumbled upon the #JFrog AI Catalog "Your centralized hub for all AI models and initiatives, from third-party to internally-developed. It simplifies model discovery and access, provides robust governance, and accelerates the delivery of trusted AI applications."
https://jfrog.com/ai-catalog/ -
Stealthy attack serves poisoned web pages only to AI agents https://www.helpnetsecurity.com/2025/09/05/ai-agents-prompt-injection-poisoned-web/ #promptinjection #Don'tmiss #agenticAI #Hotstuff #research #JFrog #News #AI
-
Stealthy attack serves poisoned web pages only to AI agents https://www.helpnetsecurity.com/2025/09/05/ai-agents-prompt-injection-poisoned-web/ #promptinjection #Don'tmiss #agenticAI #Hotstuff #research #JFrog #News #AI
-
8 Malicious NPM Packages Stole Chrome User Data on Windows https://hackread.com/malicious-npm-packages-stole-chrome-user-data-windows/ #Cybersecurity #Typosquatting #CyberAttack #SupplyChain #Security #Malware #Browser #Chrome #JFrog #NPM
-
8 Malicious NPM Packages Stole Chrome User Data on Windows https://hackread.com/malicious-npm-packages-stole-chrome-user-data-windows/ #Cybersecurity #Typosquatting #CyberAttack #SupplyChain #Security #Malware #Browser #Chrome #JFrog #NPM
-
8 Malicious NPM Packages Stole Chrome User Data on Windows – Source:hackread.com https://ciso2ciso.com/8-malicious-npm-packages-stole-chrome-user-data-on-windows-sourcehackread-com/ #1CyberSecurityNewsPost #CyberSecurityNews #cybersecurity #Typosquatting #CyberAttack #SupplyChain #Hackread #security #Browser #malware #chrome #JFrog #NPM
-
8 Malicious NPM Packages Stole Chrome User Data on Windows – Source:hackread.com https://ciso2ciso.com/8-malicious-npm-packages-stole-chrome-user-data-on-windows-sourcehackread-com/ #1CyberSecurityNewsPost #CyberSecurityNews #cybersecurity #Typosquatting #CyberAttack #SupplyChain #Hackread #security #Browser #malware #chrome #JFrog #NPM
-
@mvniekerk at 2025 , they don't know about #artifactory and #jfrog 🤓 even GitHub also head some repository functionality
-
@mvniekerk at 2025 , they don't know about #artifactory and #jfrog 🤓 even GitHub also head some repository functionality
-
Ich möchte jemanden angespitzt in den Boden stampfen.
❯ curl -IL https://repository.example.com/ HTTP/1.1 302 Moved Temporarily Server: nginx/1.24.0 (Ubuntu) Date: Fri, 21 Feb 2025 08:44:06 GMT Content-Type: text/html Content-Length: 154 Location: https://repository.example.com/ui/ Connection: keep-alive HTTP/1.1 502 Bad Gateway
Hingegen:
❯ curl -IL --user-agent "Microsoft Edge" https://repository.example.com/ HTTP/1.1 302 Moved Temporarily Server: nginx/1.24.0 (Ubuntu) Date: Fri, 21 Feb 2025 08:52:12 GMT Content-Type: text/html Content-Length: 154 Location: https://repository.example.com/ui/ Connection: keep-alive HTTP/1.1 200 OK
#Jfrog #Artifactory -
Malicious ML models found on Hugging Face Hub https://www.helpnetsecurity.com/2025/02/10/malicious-ml-models-found-on-hugging-face-hub/ #artificialintelligence #softwaredevelopment #supplychainattacks #machinelearning #ReversingLabs #HuggingFace #Don'tmiss #Hotstuff #JFrog #News
-
Malicious ML models found on Hugging Face Hub https://www.helpnetsecurity.com/2025/02/10/malicious-ml-models-found-on-hugging-face-hub/ #artificialintelligence #softwaredevelopment #supplychainattacks #machinelearning #ReversingLabs #HuggingFace #Don'tmiss #Hotstuff #JFrog #News
-
Huh.. rumor of #jfrog using #databrokers to get more data on people trying out their service and making some aggressive style marketing movements. I didn't send them my number.. why and how are they texting me?
-
Huh.. rumor of #jfrog using #databrokers to get more data on people trying out their service and making some aggressive style marketing movements. I didn't send them my number.. why and how are they texting me?
-
Anyone know someone at #JFrog I could reach out to, concerning their SaaS solution for #Artifactory ?
Ran into issues where it looks like they need to update some of their AWS backend infra configuration to support IPv6 (dualstack) to accept users that are reaching out from IPv6-only environments. Otherwise, packages are unable to be downloaded from their hosted endpoints in those scenarios.
-
Anyone know someone at #JFrog I could reach out to, concerning their SaaS solution for #Artifactory ?
Ran into issues where it looks like they need to update some of their AWS backend infra configuration to support IPv6 (dualstack) to accept users that are reaching out from IPv6-only environments. Otherwise, packages are unable to be downloaded from their hosted endpoints in those scenarios.
-
GitHub has announced a new partnership with JFrog Ltd., bringing advanced security capabilities directly into the GitHub developer workflow. #GitHub http://dlvr.it/TFrvss #GitHub #JFrog #DevSecOps
-
Supply chain attack na Pythona, czyli o krok od kolejnego dużego incydentu
Często słyszy się określenie, że bezpieczeństwo to ciągła „gra w kotka i myszkę” lub wyścig. W rzeczy samej, często badacze muszą ścigać się z przestępcami, aby zapobiec poważnym atakom. Od czasu ataku na SolarWinds, dużą popularność i rozgłos zyskują ataki na łańcuch dostaw. Na łamach sekuraka opisywaliśmy wielokrotnie sytuacje, w...
#WBiegu #Jfrog #Pypi #Python #Supplychain
https://sekurak.pl/supply-chain-attack-na-pythona-czyli-o-krok-od-kolejnego-duzego-incydentu/
-
Supply chain attack na Pythona, czyli o krok od kolejnego dużego incydentu
Często słyszy się określenie, że bezpieczeństwo to ciągła „gra w kotka i myszkę” lub wyścig. W rzeczy samej, często badacze muszą ścigać się z przestępcami, aby zapobiec poważnym atakom. Od czasu ataku na SolarWinds, dużą popularność i rozgłos zyskują ataki na łańcuch dostaw. Na łamach sekuraka opisywaliśmy wielokrotnie sytuacje, w...
#WBiegu #Jfrog #Pypi #Python #Supplychain
https://sekurak.pl/supply-chain-attack-na-pythona-czyli-o-krok-od-kolejnego-duzego-incydentu/
-
JFrog prevents massive Python supply chain attack with timely discovery
https://stackdiary.com/jfrog-prevents-massive-python-supply-chain-attack-with-timely-discovery/
#Python #JFrog #Security #TokenLeak #GitHub #Docker #SupplyChain #CodeSafety #Cybersecurity #DevOps #BinaryAnalysis #PyPI #SoftwareSecurity #TechAlert #DataProtection #CodingMishap #InfoSec #DeveloperTools #CloudSecurity #EthicalHacking #APISecrets #ContainerSecurity #BugBounty #WhiteHat #SecretScanning #PythonDev #IncidentResponse #ThreatPrevention #SecurityResearch #CyberVigilance
-
JFrog prevents massive Python supply chain attack with timely discovery
https://stackdiary.com/jfrog-prevents-massive-python-supply-chain-attack-with-timely-discovery/
#Python #JFrog #Security #TokenLeak #GitHub #Docker #SupplyChain #CodeSafety #Cybersecurity #DevOps #BinaryAnalysis #PyPI #SoftwareSecurity #TechAlert #DataProtection #CodingMishap #InfoSec #DeveloperTools #CloudSecurity #EthicalHacking #APISecrets #ContainerSecurity #BugBounty #WhiteHat #SecretScanning #PythonDev #IncidentResponse #ThreatPrevention #SecurityResearch #CyberVigilance
-
#JFrog / Zero tolerance for the sad horrific truth
Israelis are thin skinned and can’t deal with criticism. Who knew.
Q: You are an Israeli company with branches around the world. Has the war affected you?
Shlomi Ben-Chaim: "On October 11th, one of the employees wrote anti-Israel words on her Instagram. She was fired within two hours. She is suing me. We are a global Israeli company, no one will hide or conceal this, we grew up here. This is the flag on NASDAQ and in Netiv HaAsara. We are present in many countries, in Europe and the USA, in India and China, and it's like providing education at home. Don't be surprised if your employees behave this way if you don't set boundaries for them. JFrog has a very clear set of values written by the employees, not by management, and every employee must respect them. Not comfortable with them? It's a free country, work somewhere else. Anyone who came out against Israeliness in any manifestation was out of the company. This is natural loyalty, I believe this is how they would act in any company in the world."
-
GitHub і JFrog оголосили про інтеграцію: єдиний вхід, спільні панелі та робота з кодом https://itc.ua/ua/tehnologiyi/github-i-jfrog-ogolosyly-pro-integratsiyu-yedynyj-vhid-spilni-paneli-ta-robota-z-kodom/ #Технології #Новини #GitHub #JFrog