Learn

Learn about software supply chain security and Endor Labs.

Featured resources

A virus-like npm malware attack has spread to 180+ packages so far, including CrowdStrike and Tinycolor.
Blog

npm Malware Outbreak: Tinycolor and CrowdStrike Packages Compromised

Sep 16, 2025
AI Security Code Review: A Multi-Agent Approach for Detecting Security Design Flaws at Scale
Ebook/Report

AI Security Code Review: A Multi-Agent Approach for Detecting Security Design Flaws at Scale

Apr 23, 2025
Introducing the Endor Labs MCP Server: fix-first security for the vibe coding era
Blog

Introducing the Endor Labs MCP Server: fix-first security for the vibe coding era

Apr 23, 2025
Introducing AI Security Code Review
Blog

Introducing AI Security Code Review

Apr 23, 2025
Topic
Medium
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Security
News
Open Source
A virus-like npm malware attack has spread to 180+ packages so far, including CrowdStrike and Tinycolor.
Blog

npm Malware Outbreak: Tinycolor and CrowdStrike Packages Compromised

Sep 16, 2025
AI/ML
News
Endor Labs Drives 225% Revenue Growth, Pioneers the Future of Secure SDLC
Blog

Endor Labs Drives 225% Revenue Growth, Pioneers the Future of Secure SDLC

Sep 16, 2025
Security
Open Source
Major Supply Chain Attack Compromises Popular npm Packages Including chalk and debug
Blog

Major Supply Chain Attack Compromises Popular npm Packages Including chalk and debug

Sep 8, 2025
Security
Blog

Nx build platform compromised by supply chain attack – How attackers collude with AI code assistants

Aug 27, 2025
No items found.
How We Cracked SCA for C/C++ Codebases
Blog

How We Cracked SCA for C/C++ Codebases

Aug 21, 2025
CI/CD
Open Source
Security
When CodeRabbit became PwnedRabbit: A cautionary tale for every GitHub App vendor (and their customers)
Blog

When CodeRabbit became PwnedRabbit: A cautionary tale for every GitHub App vendor (and their customers)

Aug 20, 2025
AI/ML
Open Source
Security
Shadow AI in Your Codebase: A Hidden Supply Chain Risk
Blog

Shadow AI in Your Codebase: A Hidden Supply Chain Risk

Aug 20, 2025
Customer Stories
SCA
Tech
Five9 Transforms Software Supply Chain Security with Endor Labs
Customer Story

Five9 Transforms Software Supply Chain Security with Endor Labs

Aug 20, 2025
SCA
Customer Stories
Under the Hood: How I Vet Early-Stage Startups for Critical Security Programs
Blog

Under the Hood: How I Vet Early-Stage Startups for Critical Security Programs

Aug 20, 2025
No items found.
Detect End-of-Life (EOL) Software in Containers with Endor Labs
Blog

Detect End-of-Life (EOL) Software in Containers with Endor Labs

Aug 13, 2025
AI/ML
First Party Code
Security
The Most Common Security Vulnerabilities in AI-Generated Code
Blog

The Most Common Security Vulnerabilities in AI-Generated Code

Aug 12, 2025
AI/ML
First Party Code
Security
The Last Mile of AI Productivity Is Code Review
Blog

The Last Mile of AI Productivity Is Code Review

Aug 11, 2025
AI/ML
First Party Code
Security
How to Detect LLM Prompt Injection Risks
Blog

How to Detect LLM Prompt Injection Risks

Aug 6, 2025
AI/ML
Open Source
Security
Why Your AI Code Assistant Might Be Shipping CVEs
Blog

Why Your AI Code Assistant Might Be Shipping CVEs

Aug 5, 2025
AI/ML
Security
First Party Code
Anti-Pattern Avoidance: A Simple Prompt Pattern for Safer AI-Generated Code
Blog

Anti-Pattern Avoidance: A Simple Prompt Pattern for Safer AI-Generated Code

Aug 5, 2025
AI/ML
News
First Party Code
Endor Labs now integrates with GitHub Copilot in VS Code
Blog

Endor Labs now integrates with GitHub Copilot in VS Code

Jul 31, 2025
AI/ML
First Party Code
Security
Securing AI Coding Assistants: A Total Cost Analysis
Blog

Securing AI Coding Assistants: A Total Cost Analysis

Jul 30, 2025
News
Endor Labs Now Available on Google Cloud Marketplace
Blog

Endor Labs Now Available on Google Cloud Marketplace

Jul 29, 2025
First Party Code
Security
Blog

How to Detect Infrastructure as Code (IaC) Misconfigurations with AI Security Code Review

Jul 28, 2025
AI/ML
News
First Party Code
Endor Labs now integrates with Cursor AI Code Editor
Blog

Endor Labs now integrates with Cursor AI Code Editor

Jul 24, 2025
AI/ML
First Party Code
Developer Productivity
Security
Secure-Insecure Diff: A Smarter Way to Prompt for Safer Code
Blog

Secure-Insecure Diff: A Smarter Way to Prompt for Safer Code

Jul 22, 2025
no-results
Sorry, no results matching your search.

Want to stay in the loop?

Sign up for our newsletter.