Safeguard
Topic

Security

In-depth guides and analysis on security from the Safeguard engineering team.

521 articles

Security

DevOps Measurements: Metrics That Actually Matter

The DevOps measurements worth tracking tie delivery speed to stability and security. Here are the ones that change decisions, not just dashboards.

Sep 30, 20255 min read
Security

Cyber Hygiene: The Everyday Habits That Stop Most Breaches

Cyber hygiene is the routine set of practices that keep systems healthy and hard to compromise. Get the basics right and you close the door on the majority of real-world attacks.

Sep 30, 20257 min read
Security

Automated Cloud Security: Scaling Protection Without Scaling Headcount

Automated cloud security uses continuous, policy-driven tooling to find and fix misconfigurations and vulnerabilities at the speed the cloud actually changes.

Sep 25, 20256 min read
Security

Cybersecurity SDK: Building Security Into Your Application from Code

A cybersecurity SDK gives developers ready-made libraries for the security work they would otherwise get wrong — crypto, auth, scanning, and secrets. Here is how to choose and use one well.

Sep 25, 20255 min read
Security

Enterprise Security Products: How to Build a Stack That Fits

Enterprise security products span identity, endpoint, network, cloud, and application layers. Here is how the categories fit together and how to avoid buying overlap.

Sep 24, 20256 min read
Security

CVE-2023-41080: Apache Tomcat Open Redirect in FORM Authentication

CVE-2023-41080 lets a crafted URL trigger an open redirect during FORM login on Tomcat's ROOT web app. Here is the exact condition, affected versions, and the one-line fix path.

Sep 22, 20255 min read
Security

CVE-2022-42919: Python's multiprocessing Privilege Escalation Explained

A local privilege escalation in Python's multiprocessing forkserver on Linux. Here is what CVE-2022-42919 does, which versions are affected, and how to remediate.

Sep 22, 20255 min read
Security

Enterprise Level Security: A Practical Guide

Enterprise level security is less about buying premium tools and more about controls that hold up under scale, audit, and adversaries. Here is what actually distinguishes it.

Sep 22, 20256 min read
Security

Serialisation in Java: A Security Guide

How Java serialisation works, why deserialising untrusted data is dangerous, and the filters and patterns that keep it from becoming remote code execution.

Sep 22, 20256 min read
Security

ngx-cookie-service: Secure Cookie Handling in Angular

ngx-cookie-service makes reading and writing cookies in Angular trivial, but the security depends entirely on the flags you set. Here is how to use it without leaking session data.

Sep 22, 20256 min read
Security

snyk.io: What It Is, What It Costs, and How It Fits Your Stack

A straight look at snyk.io: what the platform scans, how its 2025 pricing tiers and test caps work, and where it fits alongside other security tooling.

Sep 20, 20256 min read
Security

PyPI Security News: How to Track and Respond to Python Package Threats

Keeping up with PyPI security news is now part of the job for any Python team. Here is how to follow the threats that matter and act before a malicious package reaches production.

Sep 17, 20256 min read

Self-healing security runs on Safeguard.

Your first fix PR is minutes away.

No sales call required, even your agent can complete the purchase over MCP.

Security (Page 7) — Supply Chain Security Blog | Safeguard