CramHacks logo
CramHacks
About
Subscribe
  • CramHacks
  • Topics
  • blog

blog

newslettersponsoredblog
sponsoredsponsored
+1+1
[Sponsored] CramHacks: Securing Containers with RapidFort
Mar 26, 2025

[Sponsored] CramHacks: Securing Containers with RapidFort

Curated Images, hardening at scale, and security benchmarking. I'm genuinely impressed by RapidFort's instrumentation and hardening workflows.

Kyle Kelly
blogblog
Lessons Learned from 2024's Supply Chain Attacks
Feb 27, 2025

Lessons Learned from 2024's Supply Chain Attacks

How the industry is mitigating the risks of abusing lifecycle scripts, stolen credentials, and fake reputations!

Kyle Kelly
blogblog
Community Spotlight: RapidFort's Hardened Container Images
Feb 12, 2025

Community Spotlight: RapidFort's Hardened Container Images

RapidFort's Community Images: A Cost-Effective Solution for Enhanced Container Security Management

Kyle Kelly
blogblog
Affected Functions: A Key to Understanding Open-Source Vulnerabilities
Jan 13, 2025

Affected Functions: A Key to Understanding Open-Source Vulnerabilities

Explore the public availability of affected functions for OSS vulnerabilities and why vendors are spending millions to build private datasets.

Kyle Kelly
blogblog
Stop Detecting, Start Fixing: Dependency Upgrades as the Real Solution
Nov 19, 2024

Stop Detecting, Start Fixing: Dependency Upgrades as the Real Solution

Dependency upgrades are the simplest, most effective way to mitigate risks—so why aren’t they the priority?

Kyle Kelly
blogblog
Are Automated PRs Closing the Gap in Dependency Updates?
Nov 04, 2024

Are Automated PRs Closing the Gap in Dependency Updates?

A look at the real-world impact of automated dependency upgrades via tools like Dependabot and Renovate on modern open-source projects

Kyle Kelly
blogblog
Stop F@#!ing (Forking) Your Dependencies
Aug 26, 2024

Stop F@#!ing (Forking) Your Dependencies

98% of PyMySQL forks are vulnerable to SQL Injection

Kyle Kelly
blogblog
Beyond the CVE: Analyzing the Depth of GitHub Security Advisories
Jun 24, 2024

Beyond the CVE: Analyzing the Depth of GitHub Security Advisories

Understanding the GitHub Security Advisory Database: A Must-Know for Open-Source Developers and Consumers

Kyle Kelly
blogblog
Dirty Little Secrets of Vulnerability Management
Jun 10, 2024

Dirty Little Secrets of Vulnerability Management

Exposing Common Misconceptions about CVEs, NVD, KEV Catalog, and EPSS

Kyle Kelly
blogblog
Why I Signed: An Open Letter to Congress on the National Vulnerability Database
Apr 15, 2024

Why I Signed: An Open Letter to Congress on the National Vulnerability Database

Neglecting the National Vulnerability Database: A Flaw We Can't Afford

Kyle Kelly
blogblog
From Penetration Testing to Security Research and Beyond
Feb 26, 2024

From Penetration Testing to Security Research and Beyond

Recognizing My Dream for Perpetual Learning

Kyle Kelly
blogblog
Vulnerability Databases: Is China's CNNVD Superior to the US NVD?
Feb 12, 2024

Vulnerability Databases: Is China's CNNVD Superior to the US NVD?

A global overview of vulnerability databases and disclosure practices

Kyle Kelly
Whether shaping strategy or crafting code, CramHacks keeps you informed.

CramHacks

Whether shaping strategy or crafting code, CramHacks keeps you informed.

Home

Posts

Account

Upgrade

About

About

© 2025 CramHacks.

Privacy policy

Terms of use