Company
Date Published
Author
Simon Maple
Word count
1077
Language
English
Hacker News points
None

Summary

Snyk announced several key security-related announcements in October, December 2020, including disclosures about malicious code found in the SourMint SDK on both iOS and Android platforms, which could be exploited by ad banners or Mintegral themselves. The company also disclosed remote code execution was possible on iOS that could be exploited by ad banners or Mintegral. Additionally, Snyk announced its new developer-first Static Application Security Testing (SAST) product called Snyk Code, which scans application code and dependencies for vulnerabilities. The company also made several strategic announcements, including a partnership with Docker to provide security insights for Docker Official images and other content certification programs. Furthermore, Snyk released a new tool that detects Dockerfiles directly from source code repositories, like GitHub, and updated its popular Snyk CLI cheat sheet adding updates that include container support. The company also achieved CarbonNeutral status through The CarbonNeutral Protocol, an international guideline for sustainability.