Safeguard
Topic

Security

In-depth guides and analysis on security from the Safeguard engineering team.

523 articles

Security

DevOps Measurements: Metrics That Actually Matter

The DevOps measurements worth tracking tie delivery speed to stability and security. Here are the ones that change decisions, not just dashboards.

Jun 24, 20265 min read
Security

Cyber Hygiene: The Everyday Habits That Stop Most Breaches

Cyber hygiene is the routine set of practices that keep systems healthy and hard to compromise. Get the basics right and you close the door on the majority of real-world attacks.

Jun 24, 20267 min read
Security

Automated Cloud Security: Scaling Protection Without Scaling Headcount

Automated cloud security uses continuous, policy-driven tooling to find and fix misconfigurations and vulnerabilities at the speed the cloud actually changes.

Jun 23, 20266 min read
Security

Cybersecurity SDK: Building Security Into Your Application from Code

A cybersecurity SDK gives developers ready-made libraries for the security work they would otherwise get wrong — crypto, auth, scanning, and secrets. Here is how to choose and use one well.

Jun 23, 20265 min read
Security

Enterprise Security Products: How to Build a Stack That Fits

Enterprise security products span identity, endpoint, network, cloud, and application layers. Here is how the categories fit together and how to avoid buying overlap.

Jun 23, 20266 min read
Security

CVE-2023-41080: Apache Tomcat Open Redirect in FORM Authentication

CVE-2023-41080 lets a crafted URL trigger an open redirect during FORM login on Tomcat's ROOT web app. Here is the exact condition, affected versions, and the one-line fix path.

Jun 22, 20265 min read
Security

CVE-2022-42919: Python's multiprocessing Privilege Escalation Explained

A local privilege escalation in Python's multiprocessing forkserver on Linux. Here is what CVE-2022-42919 does, which versions are affected, and how to remediate.

Jun 22, 20265 min read
Security

Enterprise Level Security: A Practical Guide

Enterprise level security is less about buying premium tools and more about controls that hold up under scale, audit, and adversaries. Here is what actually distinguishes it.

Jun 22, 20266 min read
Security

Serialisation in Java: A Security Guide

How Java serialisation works, why deserialising untrusted data is dangerous, and the filters and patterns that keep it from becoming remote code execution.

Jun 22, 20266 min read
Security

ngx-cookie-service: Secure Cookie Handling in Angular

ngx-cookie-service makes reading and writing cookies in Angular trivial, but the security depends entirely on the flags you set. Here is how to use it without leaking session data.

Jun 22, 20266 min read
Security

snyk.io: What It Is, What It Costs, and How It Fits Your Stack

A straight look at snyk.io: what the platform scans, how its 2025 pricing tiers and test caps work, and where it fits alongside other security tooling.

Jun 21, 20266 min read
Security

Who Is Snyk's General Counsel, and Why Vendor Legal Governance Matters

The Snyk general counsel runs legal, privacy, and regulatory affairs for a developer security vendor. Here's what that role tells you about evaluating any security supplier.

Jun 20, 20266 min read

Self-healing security runs on Safeguard.

Your first fix PR is minutes away.

No sales call required, even your agent can complete the purchase over MCP.

Security (Page 7) — Supply Chain Security Blog | Safeguard