Learn

Learn about software supply chain security and Endor Labs.

Featured resources

Egnyte Accelerates FedRAMP & Protects Engineering Velocity with Endor Labs
Customer Story

Egnyte Accelerates FedRAMP & Protects Engineering Velocity with Endor Labs

Jul 8, 2026
Endor Labs’ AI SAST Finds CVE-2026-55407: Memory-Amplification DoS in buffa
Blog

Endor Labs’ AI SAST Finds Zero Day Memory-Amplification DoS in Anthropic’s buffa library

Jun 30, 2026
Blog

Open source carries the world. Patching it at Mythos-scale can't fall to maintainers alone.

Jun 25, 2026
Claude Fable 5, take two: same model, different harness, and a very different result
Blog

Claude Fable 5, take two: same model, different harness, and a very different result

Jun 17, 2026
Topic
Medium
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
No items found.
Blog

How Unprotected Release Branches Let Attackers Compromise AsyncAPI

Jul 14, 2026
AI/ML
Opinion
Everyone Wins Their Own Benchmark
Blog

Everyone Wins Their Own Benchmark

Jul 14, 2026
AI/ML
Sonnet 5 vs Fable 5: reliable versus security-forward, not better versus worse
Blog

Sonnet 5 vs Fable 5: reliable versus security-forward, not better versus worse

Jul 9, 2026
AI/ML
Claude Sonnet 5 with Cursor: strong reasoning, throttled by the harness
Blog

Claude Sonnet 5 with Cursor: strong reasoning, throttled by the harness

Jul 9, 2026
Customer Stories
SCA
Developer Productivity
Compliance & SBOM
Egnyte Accelerates FedRAMP & Protects Engineering Velocity with Endor Labs
Customer Story

Egnyte Accelerates FedRAMP & Protects Engineering Velocity with Endor Labs

Jul 8, 2026
Opinion
Cyber insurers are pricing based on patching speed
Blog

Cyber insurers are pricing based on patching speed

Jul 7, 2026
News
Endor Labs Named in the 2026 Gartner® Hype Cycle™ for Secure Software Engineering
Blog

Endor Labs Named in the 2026 Gartner® Hype Cycle™ for Secure Software Engineering

Jul 2, 2026
AI/ML
Claude Sonnet 5 with Claude Code: strong on function, average on security, and unusually honest
Blog

Claude Sonnet 5 with Claude Code: strong on function, average on security, and unusually honest

Jul 2, 2026
Open Source
Security
Endor Labs’ AI SAST Finds CVE-2026-55407: Memory-Amplification DoS in buffa
Blog

Endor Labs’ AI SAST Finds Zero Day Memory-Amplification DoS in Anthropic’s buffa library

Jun 30, 2026
News
First Party Code
More true positives without the noise: Benchmarking Endor Labs AI SAST
Blog

Benchmarking Endor Labs AI SAST: 2.6x more real vulnerabilities found than frontier models

Jun 30, 2026
Malware
Blog

Shai-Hulud Strikes Leo Platform npm

Jun 25, 2026
News
Open Source
Blog

Open source carries the world. Patching it at Mythos-scale can't fall to maintainers alone.

Jun 25, 2026
News
Endor Labs is a Visionary in the 2026 Gartner® Magic Quadrant™ for Software Supply Chain Security
Blog

Endor Labs is a Visionary in the 2026 Gartner® Magic Quadrant™ for Software Supply Chain Security

Jun 18, 2026
AI/ML
Claude Fable 5, take two: same model, different harness, and a very different result
Blog

Claude Fable 5, take two: same model, different harness, and a very different result

Jun 17, 2026
AI/ML
Developer Productivity
Open Source
AppSec was built to find problems. The Mythos era demands you fix them, fast.
Blog

AppSec was built to find problems. The Mythos era demands you fix them, fast.

Jun 17, 2026
Malware
Mastra npm Org Compromised: Multiple Packages Trojanized to Drop a Remote Payload via easy-day-js
Blog

Mastra npm Org Compromised: Multiple Packages Trojanized to Drop a Remote Payload via easy-day-js

Jun 16, 2026
AI/ML
The Token Economics of AI AppSec Agents
Ebook/Report

The Token Economics of AI AppSec Agents

Jun 11, 2026
AI/ML
Opinion
The token economics of using AI coding agents for security tasks
Blog

Build vs. Buy Code Security: Same Model, Same Tasks, 12x the Token Bill

Jun 11, 2026
AI/ML
Security
Blog

Claude Fable 5: Mythos-grade hype, record cheating, and a few hall-of-fame entries

Jun 10, 2026
AI/ML
Recall, not reasoning: how AI coding agents cheat security benchmarks
Blog

Recall, not reasoning: how AI coding agents cheat security benchmarks

Jun 10, 2026
News
Endor Labs Named a Representative Vendor in the 2026 Gartner® Innovation Insight for Agentic Application Security Testing
Blog

Endor Labs Named a Representative Vendor in the 2026 Gartner® Innovation Insight for Agentic Application Security Testing

Jun 8, 2026

Want to stay in the loop?

Sign up for our newsletter.