3 Million Downloads – What a milestone!
KICS is a free, #opensource solution for static code analysis of IaC developed by Checkmarx and the open source community. Download now: https://t.co/8a57SVf5uC
#CheckmarxSecurity#IAC#ApplicationSecurity#DevSecOps
The OpenSSF Package Analysis team just dropped a game-changer in the fight against cyber threats by introducing the Malicious Packages repository.
https://t.co/5nzLu2aQtC
#openssf#opensource#maliciouspackages#supplychainsecurity
Have you checked out Checkmarx c{api}tal – our built-to-be-vulnerable #API app based on the @OWASP top 10 API vulnerabilities?
Use it to learn, train & exploit #APISecurity vulnerabilities within your own API Security CTF: https://t.co/o2WmxZY6MA
#CheckmarxSecurity
Our 4th kics community meeting is just around the corner!
September 22nd at 15h00 UTC+0
Where: https://t.co/5SdhZIGBSU
In this session we will
- Discuss about our preparation for HacktoberFest
- Discuss about Github Action migration to 1.6
- Hear your feedback on version 1.6.0
The third KICS #OpenSource community meeting is today, at 2:30PM UTC. Don’t miss: https://t.co/Iacp6FuFsd
Agenda:
✔️Initial plans for KICS 1.6.1
✔️Preparation for HacktoberFest
✔️Issues we're currently working on
✔️Hear your feedback
#CheckmarxSecurity#AppSec#DevSecOps#IaC
@matthieurobin@MicheeLengronne Calico isn't supported (yet). We'll be happy if you open a bug / feature request about it.
https://t.co/HhaRrscSpJ
We have a discussios thread about requests for upcoming version 1.6.
@Cloud_Breach Happy to see you're using kics, we'd appreciate a GitHub star after you learned about IaC misconfigurations.
Notice we just released 1.5.8 last week, which has many more checks comparing to 1.4.x versions (along some new features).
KICS is simple to install, run, and integrate into your CI, and it’s free. Maybe that’s why it crossed 600k downloads and reached 1000 @github stars, and is still growing.
Find out more about it: https://t.co/wFUPxSktmV
#CheckmarxSecurity#opensource#appsec@CheckmarxOSS
Just because a code package is "popular," that doesn't mean it's credible.
Learn about #StarJacking in this @CRN article and #CheckmarxSecurity: https://t.co/vxfjWJ7XrG
KICS allows you to set API security standards for your organization and enforce them through IaC scanning, without slowing down your software delivery pipeline.
Learn more about this free download: https://t.co/EKQ4V7tXox
#CheckmarxSecurity#opensource#appsec@CheckmarxOSS
Checkmarx is closely monitoring #Spring4Shell and all other Spring vulnerabilities (CVE-2022-22963, CVE-2022-22950). Checkmarx SCA customers can scan their code for those vulnerabilities and get the latest remediation solutions. #springshell https://t.co/q8lIlziA7U
Introducing ChainAlert, to continuously monitor new open source activities and help minimize the damages from future attacks by closing the gap between takeover – to detection and mitigation.
Read more in our blog post here: https://t.co/rygqhAVhAu
#opensource#npm