Blogs

Securing GitHub Actions with Trivy and Cosign

Aquasec

One of the advantages of automated CI/CD pipelines is that they’re a great place to implement regular security controls and checks.

Visit Site

Blogs Aquasec

BlogsTrivy: The Universal Scanner to Secure Your Cloud MigrationAquasec BlogsKubernetes Benchmark Scans with Trivy: CIS and NSA ReportsAquasec BlogsCloud Workload Security: Aqua Shines in GigaOm's Radar ReportAquasec BlogsDeceptive Deprecation: The Truth About npm Deprecated PackagesAquasec BlogsAqua and HashiCorp Enable Cloud Native Security, Zero-Trust ApproachesAquasec BlogsSink or Swim: Tackling 2024's Record-Breaking Vulnerability WaveAquasec BlogsLooping by Zapier: Repeat actions for itemsZapier NewsIntegrate Jupyter Notebooks with GitHubThenewstack BlogsPulumi Neo Now Supports AGENTS.mdPulumi BlogsIaC Best Practices: Implementing RBAC and SecurityPulumi BlogsHow AI Assistants Can Decode GitHub Repos for UI WritersDocker LearnBuild Your Own PluginVercel ResourcesGitHub - MintlifyMintlify BlogsIntroducing Dependency Divergence GitHub ActionSocket BlogsWebinar Recap: Webinar Recap: Securing the Software Supply Chain with Docker BusinessDocker BlogsLarge-Scale GitHub Actions Abuse Powers a Distributed cPanel and WHM Exploitation CampaignSocket BlogsPolinRider Spreads Through Compromised GitHub Accounts and PackagistSocket BlogsSecuring the Financial Frontier: How Capital One Uses Socket for Open Source SecuritySocket BlogsRe-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-HuludSocket BlogsSupply Chain Attack on Axios Pulls Malicious Dependency from npmSocket