Company
Date Published
Author
Ariel Ornstein
Word count
1350
Language
English
Hacker News points
None

Summary

Snyk has quickly added the Log4Shell vulnerability to its database, allowing customers to scan their Java applications and containers for the vulnerability using Snyk Open Source and Snyk Container. The company's tools help developers find out if they're vulnerable to the exploit, fix it at coding time, or through continuous monitoring. Snyk provides a free service that can be used by anyone to identify vulnerabilities in their projects, with features such as IDE plugins, CLI commands, SCM integrations, and API access. The company's Priority Score helps prioritize fixes based on signals like exploit availability and Twitter trends, while its reporting service provides detailed information about the vulnerability and suggested fixes. Snyk also offers automatic fix pull/merge requests for repositories already monitored by the platform.