Implement secure logging — never log credentials, tokens, or PII. Sanitize before writing to logs and restrict log access #CyberSecurityMonth #LoggingSecurity #DevSecOps


Your container images shouldn't be the weakest link. Join us Oct 14 for the first session in our 7-part Docker Hardened Images webinar series → docker.com/events/trust-a… Secure builds from the start. #Docker #SupplyChainSecurity #DevSecOps


Progress @chef User Meetup ’25 Bengaluru Engage, learn and grow! Learn the latest DevSecOps trends and automation strategies for stronger, more resilient security operations. November 7 Register Now: prgress.co/3W130Pb #ProgressChef #ChefMeetup #DevSecOps #Automation


2+ BILLION downloads compromised ⤵️⚠️ Hackers compromised 18 npm packages with malware to steal crypto. Even trusted dependencies can betray you. 🔗 Read the full breakdown: techrepublic.com/article/news-m… #CyberSecurity #npm #DevSecOps

TechRepublic's tweet image. 2+ BILLION downloads compromised ⤵️⚠️

Hackers compromised 18 npm packages with malware to steal crypto. Even trusted dependencies can betray you.

🔗 Read the full breakdown: techrepublic.com/article/news-m…
  
#CyberSecurity #npm #DevSecOps

📈 @Infoblox achieved 75% reduction in vulnerability detection time with @anchore Enterprise! Read the full case study to learn how: anchore.com/blog/infoblox-… #ContainerSecurity #VulnerabilityManagement #DevSecOps

anchore's tweet image. 📈 @Infoblox achieved 75% reduction in vulnerability detection time with @anchore Enterprise! Read the full case study to learn how: anchore.com/blog/infoblox-… #ContainerSecurity #VulnerabilityManagement #DevSecOps

The best #DevOps, #DevSecOps, and #MLOps minds are coming together at #swampUP Europe 🎉 Hear from JFrog’s Developer Advocate, Yonatan Arbel, on how we’re curating the sessions that make this event a can’t-miss experience. 👉 Register now to be part of it:…


That’s a wrap on #DevOps Summit Singapore! What an incredible day connecting with ForefrontTechLeadersCommunity, exchanging ideas, and showcasing how #AIdriven #DevSecOps is shaping the future of #software delivery. A special highlight was the session by Yashaswi Mudumbai, Sr.…

jfrog's tweet image. That’s a wrap on #DevOps Summit Singapore!

What an incredible day connecting with ForefrontTechLeadersCommunity, exchanging ideas, and showcasing how #AIdriven #DevSecOps is shaping the future of #software delivery.

A special highlight was the session by Yashaswi Mudumbai, Sr.…
jfrog's tweet image. That’s a wrap on #DevOps Summit Singapore!

What an incredible day connecting with ForefrontTechLeadersCommunity, exchanging ideas, and showcasing how #AIdriven #DevSecOps is shaping the future of #software delivery.

A special highlight was the session by Yashaswi Mudumbai, Sr.…
jfrog's tweet image. That’s a wrap on #DevOps Summit Singapore!

What an incredible day connecting with ForefrontTechLeadersCommunity, exchanging ideas, and showcasing how #AIdriven #DevSecOps is shaping the future of #software delivery.

A special highlight was the session by Yashaswi Mudumbai, Sr.…

🆕 From awareness to hands-on: a new way to train developers. Hands-on labs help teams prevent vulnerabilities, meet compliance, and ship secure software fast. ➡️ See why tools aren’t enough — get the playbook → sans.org/u/1D0P #DevSecOps


AI use is no longer a future consideration—it is a present imperative. It’s time for #DevSecOps teams to act decisively in harnessing AI’s power while mitigating its risks. Read the blog to see insights from Black Duck’s latest report. 🔗 bit.ly/3VWb9EC

BlackDuck_SW's tweet image. AI use is no longer a future consideration—it is a present imperative. 

It’s time for #DevSecOps teams to act decisively in harnessing AI’s power while mitigating its risks. Read the blog to see insights from Black Duck’s latest report. 🔗 bit.ly/3VWb9EC

From visibility to compliance, securing the software supply chain is more critical than ever. At SwampUP 2025, @jfrog's Yossi Shaul explains how connected release processes and AI protection strengthen enterprise security. ▶️ Full interview: techstrong.tv/videos/jfrog-s… #DevSecOps


With Styra’s OPA founders departing, the future of Policy as Code is uncertain. Mondoo’s Dominik Richter explains how OPA’s complexity, debugging issues, and uncertain future create challenges for enterprises relying on it for IaC security. ▶️techstrong.tv/videos/intervi… #DevSecOps


Get ready for the next evolution of #DevSecOps. At #swampUP 2025, we're unveiling a deeply integrated JFrog and GitHub experience that unifies best-of-breed code and binary security. From the first line of code to runtime, this partnership delivers unified security, AI…

jfrog's tweet image. Get ready for the next evolution of #DevSecOps. At #swampUP 2025, we're unveiling a deeply integrated JFrog and GitHub experience that unifies best-of-breed code and binary security. 

From the first line of code to runtime, this partnership delivers unified security, AI…

Not all wars use weapons. Some use misinformation. That's why cybersecurity matters. ⚔️🕵️ #DevSecOps #buildinpublic #100DaysOfCode


Developer training that fits, not fights, the workflow. 🧩 SANS launches Developer Security Training — hands-on labs to reduce risk, meet compliance, and build secure code fast. 🔗 Full press release → sans.org/u/1D4d #DevSecOps #SecureSoftware

SANSInstitute's tweet image. Developer training that fits, not fights, the workflow. 🧩

SANS launches Developer Security Training — hands-on labs to reduce risk, meet compliance, and build secure code fast.

🔗 Full press release → sans.org/u/1D4d

#DevSecOps #SecureSoftware

How can teams move faster without sacrificing security? In this interview, Hariharan Ragothaman introduces the 'Unified Deployment Pipeline', designed with governance, logging, and SBOMs to provide complete visibility and control. Watch: techstrong.tv/videos/jfrog-s… #DevSecOps


🚨 175 malicious npm packages. 26K downloads. One massive blind spot. ☣️ Compromised JavaScript packages are stealing files & planting backdoors. 💡 Quttera’s heuristic engine finds hidden malware before it hits production. #WebSecurity #NPM #DevSecOps #Quttera

MNovofastovsky's tweet image. 🚨 175 malicious npm packages. 26K downloads. One massive blind spot.

☣️ Compromised JavaScript packages are stealing files & planting backdoors.

💡 Quttera’s heuristic engine finds hidden malware before it hits production.

#WebSecurity #NPM #DevSecOps #Quttera

Implement secure logging — never log credentials, tokens, or PII. Sanitize before writing to logs and restrict log access #CyberSecurityMonth #LoggingSecurity #DevSecOps


I don’t fear robots taking jobs. I fear recruiters asking for 10 years of experience in tech made last year. #DevSecOps #buildinpublic #100DaysOfCode


Your container images shouldn't be the weakest link. Join us Oct 14 for the first session in our 7-part Docker Hardened Images webinar series → docker.com/events/trust-a… Secure builds from the start. #Docker #SupplyChainSecurity #DevSecOps


📈 @Infoblox achieved 75% reduction in vulnerability detection time with @anchore Enterprise! Read the full case study to learn how: anchore.com/blog/infoblox-… #ContainerSecurity #VulnerabilityManagement #DevSecOps

anchore's tweet image. 📈 @Infoblox achieved 75% reduction in vulnerability detection time with @anchore Enterprise! Read the full case study to learn how: anchore.com/blog/infoblox-… #ContainerSecurity #VulnerabilityManagement #DevSecOps

Security bugs don’t wait—so why should your fixes? Embed security tests through every stage of your DevOps pipeline to catch vulnerabilities early, reduce risk, and save time & money. #DevSecOps #SecurityTesting #Bugasura Read the blog: buff.ly/Ij9mYkQ

bugasura's tweet image. Security bugs don’t wait—so why should your fixes?
Embed security tests through every stage of your DevOps pipeline to catch vulnerabilities early, reduce risk, and save time & money.
#DevSecOps #SecurityTesting #Bugasura 
Read the blog: buff.ly/Ij9mYkQ

Yesterday was all about learning and empowering teams! Our workshop at @opstree focused on embedding security into the entire development lifecycle. Honored to share this journey with the team from @DP_World. Thank you for making it a success! ​#DevSecOps #ShiftLeft #CloudNative

Abhinav180305's tweet image. Yesterday was all about learning and empowering teams! Our workshop at @opstree focused on embedding security into the entire development lifecycle. Honored to share this journey with the team from @DP_World. Thank you for making it a success!
​#DevSecOps #ShiftLeft #CloudNative
Abhinav180305's tweet image. Yesterday was all about learning and empowering teams! Our workshop at @opstree focused on embedding security into the entire development lifecycle. Honored to share this journey with the team from @DP_World. Thank you for making it a success!
​#DevSecOps #ShiftLeft #CloudNative
Abhinav180305's tweet image. Yesterday was all about learning and empowering teams! Our workshop at @opstree focused on embedding security into the entire development lifecycle. Honored to share this journey with the team from @DP_World. Thank you for making it a success!
​#DevSecOps #ShiftLeft #CloudNative
Abhinav180305's tweet image. Yesterday was all about learning and empowering teams! Our workshop at @opstree focused on embedding security into the entire development lifecycle. Honored to share this journey with the team from @DP_World. Thank you for making it a success!
​#DevSecOps #ShiftLeft #CloudNative

Scanning npm deps shouldn’t need a security team. Paste your package.json, get a risk report in seconds, fix before npm i. Seatbelt for JS. #npm #DevSecOps

block_hacks's tweet image. Scanning npm deps shouldn’t need a security team. Paste your package.json, get a risk report in seconds, fix before npm i. Seatbelt for JS. 
#npm #DevSecOps

If you’re looking for ways to reduce the risk from compromised #NPM packages, here’s a solid post from Hacker News. I contains a few practical steps to harden your setup: - Use pnpm. It’s faster, takes less space, and blocks post-install scripts by default. Most of them are…

cyb3rops's tweet image. If you’re looking for ways to reduce the risk from compromised #NPM packages, here’s a solid post from Hacker News. I contains a few practical steps to harden your setup:

- Use pnpm. It’s faster, takes less space, and blocks post-install scripts by default. Most of them are…
cyb3rops's tweet image. If you’re looking for ways to reduce the risk from compromised #NPM packages, here’s a solid post from Hacker News. I contains a few practical steps to harden your setup:

- Use pnpm. It’s faster, takes less space, and blocks post-install scripts by default. Most of them are…
cyb3rops's tweet image. If you’re looking for ways to reduce the risk from compromised #NPM packages, here’s a solid post from Hacker News. I contains a few practical steps to harden your setup:

- Use pnpm. It’s faster, takes less space, and blocks post-install scripts by default. Most of them are…


🔒 SECURITY EVOLUTION: Zero-trust is standard now. 78% of apps face security challenges, so we're implementing hardware-backed encryption, AI threat detection, and DevSecOps integration. "Never trust, always verify" is the new motto. #CyberSecurity #DevSecOps


Organizations can measure and improve software delivery performance with AI-enabled #DevSecOps platforms, leading to faster time-to-market and better business outcomes. -- Ashley Kramer, CMSO @GitLab cxotalk.com/episode/what-i… #CXOTalk #AI #SoftwareDevelopment #Productivity

cxotalk's tweet image. Organizations can measure and improve software delivery performance with AI-enabled #DevSecOps platforms, leading to faster time-to-market and better business outcomes.
-- Ashley Kramer, CMSO @GitLab
cxotalk.com/episode/what-i…

#CXOTalk
#AI #SoftwareDevelopment #Productivity

Not all wars use weapons. Some use misinformation. That's why cybersecurity matters. ⚔️🕵️ #DevSecOps #buildinpublic #100DaysOfCode


Como está sua luta para padronizar a segurança em Containers e Kubernetes? #DevOps #DevSecOps #Cloud #meme

GetupCloud's tweet image. Como está sua luta para padronizar a segurança em Containers e Kubernetes? 

#DevOps #DevSecOps #Cloud #meme
GetupCloud's tweet image. Como está sua luta para padronizar a segurança em Containers e Kubernetes? 

#DevOps #DevSecOps #Cloud #meme
GetupCloud's tweet image. Como está sua luta para padronizar a segurança em Containers e Kubernetes? 

#DevOps #DevSecOps #Cloud #meme
GetupCloud's tweet image. Como está sua luta para padronizar a segurança em Containers e Kubernetes? 

#DevOps #DevSecOps #Cloud #meme

Don't let ISO 27001 compliance slow you down. 🚀 The JFrog Platform helps you build security management into your workflow, making it easier to meet global #InfoSec standards. Get the guide in our latest blog: jfrog.co/3Vo2MB9 #ISO27001 #DevSecOps #Compliance

jfrog's tweet image. Don't let ISO 27001 compliance slow you down. 🚀

The JFrog Platform helps you build security management into your workflow, making it easier to meet global #InfoSec standards.

Get the guide in our latest blog: jfrog.co/3Vo2MB9

#ISO27001 #DevSecOps #Compliance

2+ BILLION downloads compromised ⤵️⚠️ Hackers compromised 18 npm packages with malware to steal crypto. Even trusted dependencies can betray you. 🔗 Read the full breakdown: techrepublic.com/article/news-m… #CyberSecurity #npm #DevSecOps

TechRepublic's tweet image. 2+ BILLION downloads compromised ⤵️⚠️

Hackers compromised 18 npm packages with malware to steal crypto. Even trusted dependencies can betray you.

🔗 Read the full breakdown: techrepublic.com/article/news-m…
  
#CyberSecurity #npm #DevSecOps

Cloud & containers = speed. But speed expands the attack surface. How do you design for both speed + security without breaking one for the other? #CyberSecurity #CloudSecurity #DevSecOps #CyberAwarenessMonth

IkhaliaBootcamp's tweet image. Cloud & containers = speed.
But speed expands the attack surface.

How do you design for both speed + security without breaking one for the other?

#CyberSecurity #CloudSecurity #DevSecOps #CyberAwarenessMonth

𝗦𝗲𝗰𝘂𝗿𝗲 𝗯𝘆 𝗗𝗲𝘀𝗶𝗴𝗻 - 𝗘𝘅𝗲𝗰𝘂𝘁𝗶𝗼𝗻 𝗮𝗻𝗱 𝗙𝗶𝗹𝗲 𝗠𝗮𝗻𝗮𝗴𝗲𝗺𝗲𝗻𝘁 open.substack.com/pub/devsecopsg… Syd, a senior Spring developer, trusted her file upload service with basic extension validation. "Only .pdf and .jpg files allowed," she thought. #appsec #devsecops

Hadess_security's tweet image. 𝗦𝗲𝗰𝘂𝗿𝗲 𝗯𝘆 𝗗𝗲𝘀𝗶𝗴𝗻 - 𝗘𝘅𝗲𝗰𝘂𝘁𝗶𝗼𝗻 𝗮𝗻𝗱 𝗙𝗶𝗹𝗲 𝗠𝗮𝗻𝗮𝗴𝗲𝗺𝗲𝗻𝘁
open.substack.com/pub/devsecopsg…

Syd, a senior Spring developer, trusted her file upload service with basic extension validation. "Only .pdf and .jpg files allowed," she thought. 

#appsec #devsecops

The External Secrets Operator needs long-term maintainers! 🚩 A key Kubernetes security tool is pausing releases until the community steps up. If you code in Golang, consider contributing. More here 🔗 msbiro.net/posts/external… #Kubernetes #DevSecOps #OpenSource

IamMatteoBisi's tweet image. The External Secrets Operator needs long-term maintainers! 🚩 A key Kubernetes security tool is pausing releases until the community steps up. If you code in Golang, consider contributing. More here 🔗 msbiro.net/posts/external… #Kubernetes #DevSecOps #OpenSource

Dive into secure code auditing at #c0c0n2025! Join this exclusive hands-on workshop to tackle real-world vulnerabilities & secure coding flaws. •Oct 7–9 | Kochi •Early Bird till June 30 •c0c0n.org #infosec #devsecops #securecode #CyberSecurity #appsec #audit

_c0c0n_'s tweet image. Dive into secure code auditing at #c0c0n2025!
Join this exclusive hands-on workshop to tackle real-world vulnerabilities & secure coding flaws.

•Oct 7–9 | Kochi
•Early Bird till June 30
•c0c0n.org

#infosec #devsecops #securecode #CyberSecurity #appsec #audit

The future of #DevSecOps is here, and it’s agentic. We’re thrilled to introduce Agentic Software Supply Chain Security to help organizations reduce risk, cut costs, and accelerate delivery. By combining JFrog’s trusted platform with AI-driven automation, teams can make the…

jfrog's tweet image. The future of #DevSecOps is here, and it’s agentic. We’re thrilled to introduce Agentic Software Supply Chain Security to help organizations reduce risk, cut costs, and accelerate delivery. 

By combining JFrog’s trusted platform with AI-driven automation, teams can make the…

More tools ≠ more security. Security tool sprawl is the new breach vector. Platform engineering can fix it: consolidate, shift-left, and make security invisible but reliable. My latest Op-Ed + infographic 👇 platformengineering.com/features/secur… #PlatformEngineering #DevSecOps #Cybersecurity

ashimmy's tweet image. More tools ≠ more security.
Security tool sprawl is the new breach vector.
Platform engineering can fix it: consolidate, shift-left, and make security invisible but reliable.
My latest Op-Ed + infographic 👇
platformengineering.com/features/secur…

#PlatformEngineering #DevSecOps #Cybersecurity

Attacking CI/CD Environments: Build to Break – Hands-on Training at #c0c0n2025 Master the art of exploiting & securing CI/CD pipelines in this hands-on session for security engineers. •Oct 7–9, Kochi •c0c0n.org #DevSecOps #AppSec #CyberSec #c0c0n2025 #Kochi

_c0c0n_'s tweet image. Attacking CI/CD Environments: Build to Break – Hands-on Training at #c0c0n2025

Master the art of exploiting & securing CI/CD pipelines in this hands-on session for security engineers.

•Oct 7–9, Kochi
•c0c0n.org

#DevSecOps #AppSec #CyberSec #c0c0n2025 #Kochi

Tired of security being a bottleneck? 🤔 Sonar helps developers deliver secure code from the start. Find and fix vulnerabilities in your code, dependencies, and IaC with our developer-friendly security solution: bit.ly/4n17AbT #CodeQuality #CodeSecurity #DevSecOps

SonarSource's tweet image. Tired of security being a bottleneck? 🤔 Sonar helps developers deliver secure code from the start.

Find and fix vulnerabilities in your code, dependencies, and IaC with our developer-friendly security solution: bit.ly/4n17AbT

#CodeQuality #CodeSecurity #DevSecOps

GitHub Advanced Security for #AzureDevOps now checks if exposed secrets are still valid 🔐 ✅ Enable secret scanning ✅ Detect secrets ✅ Validate them ✅ Act fast Step-by-step protection for your pipelines. #DevSecOps 🔗 msft.it/6019sp8AF

AzureDevOps's tweet image. GitHub Advanced Security for #AzureDevOps now checks if exposed secrets are still valid 🔐
✅ Enable secret scanning
✅ Detect secrets
✅ Validate them
✅ Act fast
Step-by-step protection for your pipelines.
#DevSecOps
🔗 msft.it/6019sp8AF

Introducing JFrog AppTrust. Security, governance, and visibility in every release. Trusted applications start here → bit.ly/42Qqb2e #SoftwareSecurity #DevSecOps

jfrog's tweet image. Introducing JFrog AppTrust. Security, governance, and visibility in every release.

Trusted applications start here → bit.ly/42Qqb2e

#SoftwareSecurity #DevSecOps

Get ready for the next evolution of #DevSecOps. At #swampUP 2025, we're unveiling a deeply integrated JFrog and GitHub experience that unifies best-of-breed code and binary security. From the first line of code to runtime, this partnership delivers unified security, AI…

jfrog's tweet image. Get ready for the next evolution of #DevSecOps. At #swampUP 2025, we're unveiling a deeply integrated JFrog and GitHub experience that unifies best-of-breed code and binary security. 

From the first line of code to runtime, this partnership delivers unified security, AI…

Loading...

Something went wrong.


Something went wrong.


United States Trends