Please turn JavaScript on

Mend Leadership Update: Building on Our Momentum for the Next Phase of Growth

Is this your feed? Claim it!

Publisher:  Unclaimed!
Message frequency:  0.27 / day

Message History

AI didn’t just change how fast you ship. It changed what your AI application security program has to protect.

Two years ago, security teams protected code, open source, and containers. Today they also have to protect AI agents, MCP servers, models, prompts, and runtime interactions, configured or deployed faster than any team can manually review. The attack surface didn...


Read full story

Mend.io’s research team caught this campaign before most of the open source community ever saw it. Continuous monitoring of RubyGems flagged a batch of gems that looked, at a glance, like an ordinary cryptomining squat, and Mend.io reported the full batch to RubyGems for takedown. Every gem was pulled within hours.

Mend.io’s team also pulled two of the samples apart in ...


Read full story

Why the independent layer keeps winning as the models get better, not despite them.

This series has been building to one question, and it is the objection every honest reader has been holding since the first piece. If the frontier models keep getting better this fast, why does an independent security layer keep winning? Why not wait for the model that w...


Read full story
What are dependency management tools?

Dependency management tools are software solutions designed to automate and streamline the process of handling external libraries, modules, or packages that a project relies on. These tools help de...


Read full story

On July 7, 2026, the European Central Bank sent a letter to the CEO of every bank it directly supervises with an unambiguous instruction: build a formal action plan against AI-enabled cyberattacks, and submit it to your supervisory team by October 31.

The


Read full story