Security/Network/Database

Security/Network/Database

AI Agent Security Risks and Practical Governance with JFrog AI Catalog

This post organizes the AI agent supply-chain risks that are expanding alongside the spread of MCP servers and Skills, a...
Security/Network/Database

Navigating the CRA (EU Cyber Resilience Act) — Building “Evidence-Backed Releases” into Your Pipeline with the JFrog Platform

Introduction: On December 11, 2027, Products Without a CE Mark Disappear from the EU MarketFor details on any of the mea...
Security/Network/Database

The Severity of React/Next.js Vulnerabilities Revealed by React2Shell – Software Supply Chain Attacks That Can No Longer Be Ignored

Since the latter half of 2025, software supply chain attacks have been surging, with the npm Shai-Hulud incident as a re...
Security/Network/Database

[Warning]The Largest npm Software Supply Chain Attack in History: Shai-Hulud ~ Over 20 Malicious OSS Packages Downloaded 2 Million Times in One Week

Recently, the npm ecosystem faced its third large-scale attack.Following the recent hijacking of the nx package and atta...
DevOps/Agile

JFrog Curation in Practice: Lessons Learned from the npm Software Supply Chain Attack

In a recent blog post titled “The Largest npm Software Supply Chain Attack in History: Shai-Hulud ~ Over 20 Malicious OS...
Copied title and URL