Welcome to theJFrog Blog

FILTERBY

All
hth华体会最新官方网站
Solutions
Other
Arbitrary File Creation vulnerability in plexus-archiver – CVE-2023-37460

Arbitrary File Creation vulnerability in plexus-archiver – CVE-2023-37460

The JFrog Security research team constantly monitors open-source projects to find new vulnerabilities or malicious packages and share them with the wider community to help improve their overall security posture. As part of this effort, the team recently discovered a new security vulnerability in plexus-archiver, an archive creation and extraction package. plexus-archiver is used in…
Top Four JFrog Artifactory Enterprise Use Cases

Top Four JFrog Artifactory Enterprise Use Cases

JFrog Artifactory is a “binary artifact repository with a name that is so well known that it is synonymous with artifact repositories in general.” But why is Artifactory the solution chosen by most Fortune 100 companies and millions of developers for their artifact and binary management? Let’s start by looking at a few elements that…
Unveiling Secrets Detection with JFrog Frogbot

Unveiling Secrets Detection with JFrog Frogbot

A leap forward in DevOps security In today's interconnected world, secrets are the keys to unlocking sensitive data and systems. Like hidden gems for attackers, any inadvertent exposure of these secrets could lead to data breaches, unauthorized access, and security compromises. As organizations adopt DevOps practices, artifacts containing secrets are often stored and shared across…
CVE-2023-38545 & CVE-2023-38546 Curl and libcurl Vulnerabilities: All you need to know

CVE-2023-38545 & CVE-2023-38546 Curl and libcurl Vulnerabilities: All you need to know

Update - October 11, 2023: This blog has been updated to include all the details that have been published about the vulnerabilities. On Wednesday, October 4th 2023, Daniel Stenberg, one of Curl’s core maintainers announced that a forthcoming release of Curl, version 8.4.0, is scheduled to be available on October 11th 2023 at approximately 06:00…
Top DevOps Experts offer Key Insights at swampUP

Top DevOps Experts offer Key Insights at swampUP

With five keynotes and 15 breakout sessions in one day, there was no shortage of important industry knowledge and key insights from this year’s JFrog swampUP DevOps and DevSecOps user conference. Presenters discussed the role of DevOps at Netflix, how Fidelity migrated to the Cloud, the trend of shifting further left than left, and more.…
My Journey With The Frogs, Taking The Leap From COO Towards Sustainability

My Journey With The Frogs, Taking The Leap From COO Towards Sustainability

A few years ago, a dear friend of mine, and one of the best role models I could wish for as a COO, Vered Raviv Schwartz, wrote a great article which described in the best words I could ever think of the role of the COO. In this same article, she also referred to the…
Release with Trust or Die. <br>Key swampUP 2023 Announcements

Release with Trust or Die.
Key swampUP 2023 Announcements

Every year, JFrog brings the DevOps community and some of the world’s leading corporations together for the annual swampUP conference, aimed at providing real solutions to developers and development teams in practical ways to prepare us all for what’s coming next. Since the inception of swampUP - and truthfully since the creation of Artifactory -…
How to Authenticate Access to the JFrog Platform through Your IDE

How to Authenticate Access to the JFrog Platform through Your IDE

JFrog's IDE integrations such as IntelliJ and VS Code, allow developers to work with the JFrog Platform right from within their existing dev environment. By leveraging the advantages of JFrog's features, developers can develop, build, and deploy applications quickly and securely. Large organizations working with the JFrog Platform, can now easily use a SSO (single-sign-on)…
The JFrog Partner Ecosystem: Shaping the Future of DevOps and DevSecOps

The JFrog Partner Ecosystem: Shaping the Future of DevOps and DevSecOps

JFrog's Partner Day was full of insights, strategies, and program announcements that will shape the future of DevOps and DevSecOps. Partners from all over the world attended and participated as our launch partners. Tali Notman, JFrog CRO, kicked off the keynote with an overview of JFrog's growth strategy and JFrog’s vision of the connected ecosystem.…
Get Ready for Next.  <br>Put DevOps, DevSecOps, and AI to Work.

Get Ready for Next.
Put DevOps, DevSecOps, and AI to Work.

Our community has always had a “next.” There was the dawn of the computer age, when “next” meant that processing didn’t take up an entire room. There was the “next” of personal computing. Next came laptops, the internet, microservices, cloud-native, cybersecurity, automation and more. The thing that is next is always right around the corner…