home.social

#snyk — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #snyk, aggregated by home.social.

  1. is #js the next #java applets, some may remember, there were so many viruses and hacks has been happening with #applets around 2000s at the end they drop the applets totally.

    Now having #dependabot or #snyk is like just bringing a new security hole strangely opposite the intention.

    Probably better to not upgrade if all versions are secure and stay there forever 😃

    youtube.com/watch?v=o7NYXvYohYk

  2. is the next applets, some may remember, there were so many viruses and hacks has been happening with around 2000s at the end they drop the applets totally.

    Now having or is like just bringing a new security hole strangely opposite the intention.

    Probably better to not upgrade if all versions are secure and stay there forever 😃

    youtube.com/watch?v=o7NYXvYohYk

  3. FYI: AppSec Tool: Speed, Accuracy, and False Positives! #shorts: What makes a good dev-centric AppSec tool? Speed is critical; aim for under 5 minutes. False positives erode trust, while false negatives are a problem too. Runtime security tools can offer rapid feedback. #AppSec #security #OWASP #Snyk #ContrastAssess youtube.com/shorts/oEIM1ckVpzE

  4. FYI: AppSec Tool: Speed, Accuracy, and False Positives! #shorts: What makes a good dev-centric AppSec tool? Speed is critical; aim for under 5 minutes. False positives erode trust, while false negatives are a problem too. Runtime security tools can offer rapid feedback. #AppSec #security #OWASP #Snyk #ContrastAssess youtube.com/shorts/oEIM1ckVpzE

  5. ICYMI: AppSec Tool: Speed, Accuracy, and False Positives! #shorts: What makes a good dev-centric AppSec tool? Speed is critical; aim for under 5 minutes. False positives erode trust, while false negatives are a problem too. Runtime security tools can offer rapid feedback. #AppSec #security #OWASP #Snyk #ContrastAssess youtube.com/shorts/oEIM1ckVpzE

  6. ICYMI: AppSec Tool: Speed, Accuracy, and False Positives! #shorts: What makes a good dev-centric AppSec tool? Speed is critical; aim for under 5 minutes. False positives erode trust, while false negatives are a problem too. Runtime security tools can offer rapid feedback. #AppSec #security #OWASP #Snyk #ContrastAssess youtube.com/shorts/oEIM1ckVpzE

  7. AppSec Tool: Speed, Accuracy, and False Positives! #shorts: What makes a good dev-centric AppSec tool? Speed is critical; aim for under 5 minutes. False positives erode trust, while false negatives are a problem too. Runtime security tools can offer rapid feedback. #AppSec #security #OWASP #Snyk #ContrastAssess youtube.com/shorts/oEIM1ckVpzE

  8. AppSec Tool: Speed, Accuracy, and False Positives! #shorts: What makes a good dev-centric AppSec tool? Speed is critical; aim for under 5 minutes. False positives erode trust, while false negatives are a problem too. Runtime security tools can offer rapid feedback. #AppSec #security #OWASP #Snyk #ContrastAssess youtube.com/shorts/oEIM1ckVpzE

  9. [アップデート] SnykでCLIのスキャン結果をWeb UIにアップロードできるようになりました #snyk
    dev.classmethod.jp/articles/sn

    #dev_classmethod

  10. Don't let cyberthreats disrupt your business - be reactive. Be secure. 🔒

    Prioritize security as a core part of your business strategy. Learn how with the ebook we prepared with Snyk and Niebezpiecznik.

    Download it here: softwaremill.com/ebooks/develo

    #cybersecurity #snyk #niebezpiecznik #ebook

  11. Don't let cyberthreats disrupt your business - be reactive. Be secure. 🔒

    Prioritize security as a core part of your business strategy. Learn how with the ebook we prepared with Snyk and Niebezpiecznik.

    Download it here: softwaremill.com/ebooks/develo

    #cybersecurity #snyk #niebezpiecznik #ebook

  12. #boycottJfrog they support what Israel is doing in #Gaza. They support #genocide. Here are the alternatives to their products

    - #sonatype nexus
    - #snyk
    - azure, gcp, aws container registries

    In all cases, the other solutions are cheaper. Don’t use #jfrog products

  13. #boycottJfrog they support what Israel is doing in #Gaza. They support #genocide. Here are the alternatives to their products

    - #sonatype nexus
    - #snyk
    - azure, gcp, aws container registries

    In all cases, the other solutions are cheaper. Don’t use #jfrog products

  14. I really like the concept of “speed back” high bandwidth full team peer feedback retro sesssions.

    Particularly for how it normalizes giving feedback to each other and makes it an expected part of the process.

    #snyk #distributed #tuple overcast.fm/+ABM8Qiyi6Ag

  15. I really like the concept of “speed back” high bandwidth full team peer feedback retro sesssions.

    Particularly for how it normalizes giving feedback to each other and makes it an expected part of the process.

    #snyk #distributed #tuple overcast.fm/+ABM8Qiyi6Ag

  16. Лучшие нейросети для написания кода и программирования

    На заре вычислительных устройств программисты писали код самостоятельно — полностью с нуля и в одиночку. Режим хардкор! Единственное, что могло облегчить их труд, — бумажные справочники, описывающие синтаксические особенности отдельного языка. Сегодня всё иначе. Помимо многочисленных электронных документаций, гайдов, статей, видео и форумов существуют нейросети — похоже, одна из самых прорывных технологий начала 21 века. Обученные на больших объемах данных, теперь они — основные поставщики справочного материала. Преимущества очевидны. AI для кодинга ускоряют процесс программирования, «взваливая» на свои плечи объемный пласт рутинной работы по написанию кода. Они позволяют разработчикам сосредоточиться на архитектуре и логике, а не синтаксических ошибках и неоптимальных конструкциях. Часть из них генерирует код с нуля, часть — анализирует и дополняет уже написанный. Вот только в последние годы появилось настолько много проектов с искусственным интеллектом, что неподготовленному человеку довольно сложно разобраться, какая нейросеть лучше всех программирует. Ведь есть как специальные, так и общие нейросети. Одни генерируют данные только определенного типа (код, например), другие — данные любых типов (и текст, и код, и изображения). А еще есть платные и бесплатные. Чтобы ответить точно, какая нейросеть лучше для программирования (и почему), сперва необходимо составить список топ ИИ для программирования, после чего разобрать достоинства и недостатки каждого из них.

    habr.com/ru/companies/timeweb/

    #timeweb_статьи #нейросети #github_copilot #tabnine #chatgpt #claude #snyk #mintlify #codeium #gemini

  17. 🚀 Container Security in 2025: 7 Must-Know Best Practices!

    🐳 As a #Docker Captain, I break down supply chain attacks, misconfigurations & more—with live demos of Docker Scout & Snyk!

    youtu.be/EoeoCTZAGuU?si=TUalNc

    #DevSecOps #ContainerSecurity #Kubernetes #CloudSec #Snyk

  18. "Cloud has made infrastructure a part of the application" and in doing so transforms security into #appsec

    Love this blog post from #snyk

    snyk.io/blog/cloud-transforms-

  19. Generating SBOMs with the Snyk CLI is easier than you think. If you’re looking for a way to improve security, transparency, and compliance, this guide breaks it down step by step. Check it out: buff.ly/494sOyT
    #SBOM #DevSecOps #Snyk

  20. Six years ago, I joined a small but ambitious team of fewer than 100 people called Snyk. Today, I’m grateful for the growth, challenges, and amazing people along the way.

    #Snyk #6Years #WorkAnniversary #Grateful

  21. hey folks, jump into our wild and crazy DevSecOps stream! 📹

    Hit us up with a comment if my background setup catches your eye 😁

    youtube.com/live/H1btNrpI-mM

    #devops #devsecops #security #cybersecurity #snyk

  22. 🚩Overwhelmed by #CVE reports? You're not alone! In my #Snyk post, I share how to:

    🔓 Evaluate #CVE impact
    🔓 Mitigate #vulnerabilities (even write your own patches!)
    🔓 Prioritize fixes by #severity
    Thanks @lirantal @GeraldCrescione & @snyk 🙌

    snyk.io/articles/decoding-cves

  23. #ruby #rexml has had 11 security patches since May. Four in August alone. Getting dinged by #snyk to upgrade dependencies is death by 1000 mosquito bites. We don't use it directly. It's an indirect dependency. *grumbleface*

    I saw that #rubocop has removed rexml as a dependency as of 1.66.0.

    github.com/rubocop/rubocop/pul