-
August 8, 2024
Unveiling AI-Driven Material Code Change Alerting
-
August 1, 2024
Securing Artifacts: Keyless Signing with Sigstore and CI/MON
Artifact integrity is crucial in maintaining software security and trustworthiness. High-profile breaches like SolarWinds, CodeCov, 3CX, and JumpCloud have shown...
-
May 7, 2024
Cimon Delivers Continuous Assurance and Automatic SLSA Compliance
Cycode revolutionizes CI/CD security and pipeline integrity with its newest version of Cimon, which is part of the Cygives initiative...
-
December 18, 2023
Three Lessons from the Ledger Connect Kit Supply Chain Attack
On December 14, 2023, the crypto community held its breath as news of a critical compromise involving the Ledger Connect...
-
August 1, 2023
How to Achieve SLSA Compliance in Azure Pipelines
We are excited to announce the release of a powerful tool designed to help companies achieve SLSA (Supply Chain Levels...
-
June 12, 2023
Introducing Cimon: Your Superhero for CI/CD Pipeline Security
We are excited to announce the release of Cimon, a revolutionary tool designed to secure your CI/CD pipelines through a...
-
March 14, 2023
From Default to Secure: Analyzing the Vulnerability that Could Have Compromised Microsoft 365 Users
As part of our ongoing research in the open-source ecosystem, Cycode Labs has found and disclosed a novel attack...
-
February 13, 2023
Cycode and AWS Collaborate on a 3-Part Series of Videos: Navigating the Complexities of Securing CI/CD Pipelines
In the fast-paced world of software development...
-
January 30, 2023
Cycode Discovers a Vulnerability in GitHub API Authorization – CVE-2022-46258
Cycode Labs discovered a vulnerability in Github’s API in which GitHub Actions workflows ...
-
December 12, 2022
Cycode Collaborates with CodeSee to Secure the Pipelines of Thousands of Open-Source Projects
Securing open-source projects is hard. Securing CI workflows...