Nir V

Nir V

Arnica
CEO & Co-Founder @ Arnica. Ex-CISO.
78 points
All activity
The fully open source code analysis engine. Quickly analyze large code bases & fix security issues at scale. Initiated by 10 rival security orgs, Opengreps promises to advance and commoditize static code security for the free use of all.
Opengrep
OpengrepThe open source code security engine
There are risks inherent in writing code. Risky third party packages, Infrastructure-as-code risks, and more. Arnica feeds developers AI generated recommendations, as they push code, to eliminate risks from ever finding their way into production.
AI-based code risk mitigations
AI-based code risk mitigationsAuto generate AppSec risk mitigation recs for developers
Nir VlaunchedGitGoat
GitGoat is an open source tool built to enable DevOps and Engineering teams to design and implement a sustainable misconfiguration prevention strategy. It can be used to test products with access to GitHub repos without a risk to your production data.
GitGoat
GitGoatIntentionally Misconfigured GitHub User + Repo + Teams Data
Nir VlaunchedArnica
Software supply chain attacks have caught the security community off-guard. Arnica, starting with GitHub & Azure DevOps, addresses the two primary root causes:
1) ๐Ÿช„ excessive permissions to developer tools
2) ๐Ÿฅธ lack of abnormal behavior detection
ArnicaBehavior based software supply chain security
Nir Vleft a comment
LastPass. If I don't have it, my computer is useless.
Chrome Extensions you can't live without
Lisa Bakhareva๐Ÿ‡บ๐Ÿ‡ฆJoin the discussion