Learn

Learn about software supply chain security and Endor Labs.

Featured resources

Classic Vulnerabilities Meet AI Infrastructure: Why MCP Needs AppSec
Blog

Classic Vulnerabilities Meet AI Infrastructure: Why MCP Needs AppSec

Jan 23, 2026
How Fake Font Packages Abused npm as a CDN
Blog

How Fake Font Packages Abused npm as a CDN

Jan 23, 2026
Understanding NPM Worms and the Shai-Hulud Attack
Blog

Understanding NPM Worms and the Shai-Hulud Attack

Nov 25, 2025
StackHawk + Endor Labs: Correlating SAST and DAST Alerts
Blog

StackHawk + Endor Labs: Correlating SAST and DAST Alerts

Nov 20, 2025
Topic
Medium
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
SCA
Open Source
Developer Productivity
CI/CD
Compliance & SBOM
Secure Everything Your Code Depends On | Endor Labs
Solution Brief

Secure Everything Your Code Depends On With Endor Labs

Jul 16, 2024
News
Blog

Endor Labs Receives Strategic Investment from Citi Ventures

Jul 15, 2024
News
We made the Inc. Best Workplaces List for 2024!
Blog

We made the Inc. Best Workplaces List for 2024!

Jul 8, 2024
Security
Open Source
Blog

New CocoaPods CVEs: Swift and Objective-C Supply Chains Are Fragile

Jul 3, 2024
SCA
Security
Questions to Ask Your Software Composition Analysis Vendor
Blog

Questions to Ask Your Software Composition Analysis Vendor

Jun 27, 2024
Security
Developer Productivity
SCA
Backstage and Endor Labs: AppSec in a Dev’s Dream Workspace
Blog

Backstage and Endor Labs: AppSec in a Dev’s Dream Workspace

Jun 18, 2024
Compliance & SBOM
SCA
Managing Open Source Vulnerabilities for PCI DSS Compliance- On-Demand Webinar
Video

Managing Open Source Vulnerabilities for PCI DSS Compliance - On-Demand Webinar

Jun 18, 2024
SCA
Open Source
Security
Compliance & SBOM
Container Scanning + SCA = Better Together
Blog

Container Scanning + SCA = Better Together

Jun 11, 2024
News
Blog

Endor Labs Named to Rising in Cyber by CISOs and Venture Capital Investors

Jun 4, 2024
SCA
Open Source
Security
Blog

Evaluating and Scoring OSS Packages

Jun 4, 2024
SCA
Compliance & SBOM
Open Source
Security
Demystifying Transitive Dependency Vulnerabilities
Blog

Demystifying Transitive Dependency Vulnerabilities

May 31, 2024
CI/CD
Security
Open Source
Surprise! Your GitHub Actions Are Dependencies Too
Blog

Surprise! Your GitHub Actions Are Dependencies, Too

May 28, 2024
Compliance & SBOM
SCA
Security
OSS Vulnerabilities and the Digital Operational Resilience Act (DORA)
Blog

OSS Vulnerabilities and the Digital Operational Resilience Act (DORA)

May 21, 2024
SCA
Security
Protect Mobile Apps with Kotlin and Swift SCA
Blog

Protect Mobile Apps with Kotlin and Swift SCA

May 21, 2024
News
Blog

Endor Labs Partners with GuidePoint Security to Secure The Software Supply Chain

May 21, 2024
CI/CD
Compliance & SBOM
SCA
Intro to Endor Labs- On-Demand Webinar
Video

Intro to Endor Labs - On-Demand Webinar

May 15, 2024
SCA
Open Source
Security
 OWASP OSS Risk 1: Known Vulnerabilities, by Camila Odlund and Jenn Gile
Blog

OWASP OSS Risk 1: Known Vulnerabilities

May 14, 2024
CI/CD
Security
Low-Code/No Code Artifact Signing by Diamantis Kourkouzelis
Blog

Low-Code/No Code Artifact Signing

May 7, 2024
Compliance & SBOM
Open Source
SCA
An Auditor’s Perspective on Addressing OSS Vulnerabilities for PCI DSS v4 by Jenn Gile
Blog

An Auditor’s Perspective on Addressing OSS Vulnerabilities for PCI DSS v4

May 2, 2024
CI/CD
Compliance & SBOM
Security
Your Git Repo is a Supply Chain Risk by Darren Meyer
Blog

Your Git Repo is a Supply Chain Risk

Apr 30, 2024
Security
SCA
CI/CD
Compliance & SBOM
Open Source
Guide to Implementing Software Supply Chain Security, What to Consider When Designing a Program
Ebook/Report

Guide to Implementing Software Supply Chain Security

Apr 30, 2024

Want to stay in the loop?

Sign up for our newsletter.