חזרה לפיד
articlesמקור: GitHub Security6.8.2026

מעבר לייעוץ תוכנות זדוניות ב-npm: גיטאהב מרחיבה את בסיס הנתונים

How we took malware advisories beyond npm

$cat article.txt

>גיטאהב הרחיבה את בסיס הנתונים לייעוץ בנוגע לתוכנות זדוניות (malware advisories) מעבר ל-npm, וכעת הוא כולל גם נתונים מ-OpenSSF. הרחבה זו…

◆ סיכום AI

גיטאהב הרחיבה את בסיס הנתונים לייעוץ בנוגע לתוכנות זדוניות (malware advisories) מעבר ל-npm, וכעת הוא כולל גם נתונים מ-OpenSSF. הרחבה זו משפרת את אבטחת שרשרת האספקה ומסייעת למפתחים לזהות ולמנוע שימוש בחבילות זדוניות במגוון רחב יותר של פרויקטים.

# מהמקור

GitHub malware advisories no longer stop at npm. Here's how we wired OpenSSF's malicious-packages data into the Advisory Database, and why we built the pipeline paranoid. The post How we took malware advisories beyond npm appeared first on The GitHub Blog.

#supply-chain-security#malware-detection#github-security#openssf
קרא במקור