Xygeni Blog

threat detection and response - real time threat detection - threat detection and response solutions - threat detection and response tools​

Threat Detection and Response for DevOps

Discover how modern threat detection and response solutions with real time threat detection outperform traditional tools for developers.
4 min read
Autofix Software -sast tools examples- examples of sast tools - sast and dast tools examples (opcional)

Autofix Software: Fix Alerts, Not Just Detect

See how Xygeni Autofix Software goes beyond sast tools examples with real fixes. Trusted examples solved instantly.
5 min read
requests.get, flask -request, flask request form

Request.get in Flask: The Simple Injection Vector You Might Miss

Prevent injection flaws from unsafe requests.get and flask request form. Learn how to validate inputs and secure Flask apps in CI/CD!
aws security - amazon web services security - AWS security best practices

AWS Security FAQs: Everything You’ve Ever Wondered

Apply Amazon Web Services security matters. AWS security best practices to protect data, apps, and pipelines from misconfigurations.
11 min read
what is deserialization - remote code execution

How Insecure Deserialization Becomes Remote Code Execution (and How to Catch It Before Merge)

Learn what is deserialization & how unsafe use can escalate to remote code execution. Spot risks, artifacts and CI/CD before they ship!
python user input - user input python - how to get user input in python

The Wrong Way to Get User Input in Python (And the Secure Alternative)

Learn the risks of insecure Python user input & discover how to get user input in Python safely with validation, sanitization, CI/CD checks!
sql substring_index - substring_index in sql - string functions in sql

The Hidden Security Pitfalls of SQL SUBSTRING_INDEX

Misused string functions in SQL can leak data or break tenant isolation in critical systems. Learn the hidden risks of sql substring_index!
chmod 777 - linux permissions - backdoor attack

Chmod 777 Is Not a Fix: How a Misconfigured Script Became a Backdoor

Chmod 777 may fix errors fast but breaks Linux permissions, opening the door to backdoor attacks in CI/CD. Learn safer DevSecOps practices!
OpenSSL s_client - ssl error - TLS security

OpenSSL s_client Showed My TLS Was Broken: Diagnosing SSL Errors in CI

Fix SSL errors fast with OpenSSL s_client. Learn how to diagnose TLS security issues in CI/CD, before they break builds!
cybersecurity platform - unified cybersecurity platform - cybersecurity risk management platform​ - cybersecurity management platform​

From 10 Tools to One Cybersecurity Platform

Consolidate security with one unified cybersecurity platform. Xygeni replaces multiple tools to protect your SDLC from code to production.
8 min read
IaC security - infrastructure as code security - IaC cyber security

IaC Security: How to Build Strong Infrastructure as Code

Master IaC cyber security with proven infrastructure as code security practices. Prevent risks for Terraform, Kubernetes or CloudFormation.
8 min read
watering hole attacks - what is a watering hole attack

From Dev to Target: How Watering Hole Attacks Infiltrate Your Pipeline

Discover what is a watering hole attack and how watering hole attacks infiltrate trusted dev resources to compromise your CI/CD pipeline!