Software Security

  • Slopsquatting

    Slopsquatting is when a dependency is set up in anticipation that an AI system may hallucinate what it expects to exist. This can lead to serious security issues, and is already being exploited in the wild.

    read more

  • Protection from Software Supply Chain Attacks

    Protection from Software Supply Chain Attacks

    Considering how lockfiles may be useful for detecting compromised dependencies in your software supply chain.

    read more