Over 100,000 Infected Repos Found on GitHub

A new malicious code campaign impacting 100k GitHub repositories is evading detection and benefiting from unsuspecting developers actually helping the malware spread.

A dataset-free approach to leveraging LLMs for malicious code detection

Dive into Apiiro's breakthrough LLM-based free-text code search engine that identifies malicious code patterns without depending on large datasets.

Uncovering shadow GenAI frameworks in your codebase with Apiiro

Apiiro’s ASPM platform now automatically detects GenAI frameworks, so organizations have full visibility into privacy, data, and legal risk introduced by these frameworks.

LLM Code Authorship Detection: Unmasking Malicious Package Contributions

Apiiro’s security research team has developed a revolutionary approach for accurately connecting code segments—such as open-source packages or commits—by similarity.

CVE-2023-4863: Leverage Apiiro to determine risk from new WebP 0-day

A critical security flaw, CVE-2023-4863, has been identified in libwebp. Identify and prioritize instances of the new WebP 0-day that are most risky to your business with Apiiro—without runtime agents.

Inside Toyota’s secret leak from a supply chain vulnerability

A recent leak of almost 300,000 of Toyota's customer emails and control numbers showcases the risks of exposed secrets in code.