articlesמקור: GitHub Security6.8.2026
מעבר לייעוץ תוכנות זדוניות ב-npm: גיטאהב מרחיבה את בסיס הנתונים
How we took malware advisories beyond npm
$cat article.txt
>גיטאהב הרחיבה את בסיס הנתונים לייעוץ בנוגע לתוכנות זדוניות (malware advisories) מעבר ל-npm, וכעת הוא כולל גם נתונים מ-OpenSSF. הרחבה זו…
◆ סיכום AI
גיטאהב הרחיבה את בסיס הנתונים לייעוץ בנוגע לתוכנות זדוניות (malware advisories) מעבר ל-npm, וכעת הוא כולל גם נתונים מ-OpenSSF. הרחבה זו משפרת את אבטחת שרשרת האספקה ומסייעת למפתחים לזהות ולמנוע שימוש בחבילות זדוניות במגוון רחב יותר של פרויקטים.
# מהמקור
GitHub malware advisories no longer stop at npm. Here's how we wired OpenSSF's malicious-packages data into the Advisory Database, and why we built the pipeline paranoid. The post How we took malware advisories beyond npm appeared first on The GitHub Blog.
#supply-chain-security#malware-detection#github-security#openssf
קרא במקור