Categories

Subscribe to Feed

Latest Posts

Showing 0 Items

Introducing Apps & PATs: Centralized Visibility for GitHub Apps and Personal Access Tokens

Get visibility into GitHub Apps, fine-grained PATs, and classic PATs across all your organizations in one dashboard

CVE-2026-22709: Critical Sandbox Escape Vulnerability in vm2

Security researchers have uncovered a critical sandbox escape vulnerability in vm2, a popular JavaScript sandbox library used to execute untrusted code securely. The vulnerability, tracked as CVE-2026-22709, allows attackers to bypass sandbox protections and execute arbitrary code on the host system. Organizations using vm2 should upgrade to the patched version immediately.

StepSecurity Now Supports Dark Mode

StepSecurity now supports dark mode for a more comfortable security investigation experience. Reduce eye strain and stay focused during long CI/CD analysis sessions

Introducing StepSecurity Developer MDM: Protecting Developer Machines from Supply Chain Attacks

Modern supply chain attacks target developer machines and AI coding agents. Learn how StepSecurity Developer MDM stops credential theft early

10,000 Open-Source Projects Now Secured by Harden-Runner Community-Tier: A Milestone Three Years in the Making

From 5,000 to 10,000 in just one year: How Harden-Runner doubled its reach and became the standard for CI/CD runtime security

2025 in Review: The Evolution of Supply Chain Security & What's Next

How StepSecurity achieved 5X ARR growth for the second year in a row while securing over 10,000 open-source repositories in 2025

Bake Harden-Runner Into GitHub's Custom Runner Images for Organization-Wide CI/CD Security

GitHub's new custom runner images let you embed Harden-Runner directly into your infrastructure, providing automatic runtime protection across all workflows without modifying a single workflow file

StepSecurity Is Now Available on Azure Marketplace

The StepSecurity App is now available on Azure Marketplace—simplifying procurement, deployment, and CI/CD security in one place.

There are no blog posts matching your criteria at this time.

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.