Safeguard
Topic

Security

In-depth guides and analysis on security from the Safeguard engineering team.

521 articles

Security

libwebp Vulnerability: What CVE-2023-4863 Means and How to Fix It

The libwebp vulnerability CVE-2023-4863 was a heap buffer overflow exploited in the wild. Here is what it affected, why it was everywhere, and how to fix it.

Nov 6, 20256 min read
Security

OpenRouter API: Security Considerations When Routing LLM Traffic

The OpenRouter API gives you one endpoint and one key to reach hundreds of LLMs across providers. That convenience concentrates risk in a single credential and a third-party hop worth securing deliberately.

Nov 6, 20255 min read
Security

Buffer Overflow Attack: How It Works and How to Prevent It

A buffer overflow attack overwrites memory past a buffer's bounds to corrupt data or hijack execution. Here's how it works conceptually and the defenses that stop it.

Nov 6, 20256 min read
Security

The ZAP Security Testing Tool: A Practical Guide

How the ZAP security testing tool works as a free DAST scanner: passive and active scanning, the spider and AJAX spider, and how to run it in CI without noise.

Nov 5, 20256 min read
Security

Licence logiciel : le guide securite pour choisir et rester conforme

Une licence logiciel definit ce que vous avez le droit de faire avec un code, et mal la gerer expose autant a un risque juridique qu'a un risque securite.

Nov 5, 20256 min read
Security

CVE-2023-36414: The Azure Identity SDK RCE You Should Patch

CVE-2023-36414 is a remote code execution flaw in the Azure Identity SDK for .NET. Here is how the injection works and which version closes it.

Nov 5, 20255 min read
Security

CVE-2023-44794: The Sa-Token Authentication Bypass Explained

A path-normalization mismatch lets attackers bypass route authentication in Dromara Sa-Token. Here is how CVE-2023-44794 works and how to fix it.

Nov 4, 20255 min read
Security

How to Prevent Buffer Overflow Vulnerabilities

Preventing buffer overflow comes down to bounds-safe code, compiler and OS protections, and testing. Here is how each defense works and where it fits.

Nov 4, 20256 min read
Security

DevOps Velocity Without Sacrificing Security: How Fast Teams Stay Safe

How high-velocity DevOps teams ship daily without trading away security — the automated gates, guardrails, and metrics that let speed and safety coexist.

Nov 3, 20256 min read
Security

How to Measure DevOps Success

Measuring DevOps success means tracking delivery speed, stability, reliability, and security together, so improvement in one area doesn't quietly degrade another. Here is a practical framework.

Oct 27, 20256 min read
Security

Jest Latest Version: Upgrading Safely in 2026

The Jest latest version is 30.x, and keeping current matters less for features than for cutting the pile of transitive dev dependencies older Jest drags in.

Oct 21, 20255 min read
Security

Black Duck Software Explained: SCA, BDSA, and Independence from Synopsys

Black Duck software is one of the oldest names in software composition analysis, now an independent company again after spinning out of Synopsys in 2024. Here is what it does.

Oct 21, 20254 min read

Self-healing security runs on Safeguard.

Your first fix PR is minutes away.

No sales call required, even your agent can complete the purchase over MCP.

Security (Page 3) — Supply Chain Security Blog | Safeguard