Argon Blog

Thoughts, news, and musings from CI/CD and DevOps
experts, interviews, articles, and breach analyses.

The importance of having visibility over your pipeline’s plugins...

Hardly a week goes by these days without hearing about a new supply chain attack. A recent headline featured yet…

Eran Orzel
Jun 21 · 4 min read

The Future of DevSecOps: Webinar Recap

The relevance of DevSecOps has grown in the past years as companies solidify their move towards automating their software delivery…

Nurit Bielorai
Jun 14 · 4 min read

Jenkins 101: Common Misconfigurations & How to best Secure it?

What is Jenkins and it’s Logo about? Jenkins is the most widely-used CI/CD tool today. As the world moves from…

Eylam Milner
Jun 07 · 4 min read

Securing your artifactories and repositories from Dependency Confusion...

Your CI/CD security is only as strong as its weakest link. An overlooked part of the CI/CD pipeline can be…

Eilon Elhadad
May 31 · 4 min read

10 Github Security Best Practices

You just created your organization in Github. This presents an exciting opportunity, as it’s one of the leading SCM (Source…

Guy Ben-Aharon
May 24 · 3 min read

The proliferation of Pipeline tools and plugins: A backdoor for Supply...

Codecov hackers gained access to Monday.com source code Monday.com has recently disclosed that it was impacted by the Codecov supply-chain attack…

Eran Orzel
May 18 · 4 min read

Looking to harden your security posture?

open source vulnerability scanner