The Power of VEX
Finding security vulnerabilities is required to secure your software infrastructure. But you need VEX to tell you which ones are actually dangerous and which ones can be ...
Read more arrow_right_altExplore application security, software supply chain, secure development and product updates from OpenRefactory.
Finding security vulnerabilities is required to secure your software infrastructure. But you need VEX to tell you which ones are actually dangerous and which ones can be ...
Read more arrow_right_alt
With the announcement of Project Akrites, the effort to secure the Open Source Software infrastructure takes another step. But is it enough?
Read more arrow_right_alt
IBM's Project Lightwell is addressing the critical issue of Open Source security weaknesses. OpenRefactory has a more practical approach.
Read more arrow_right_alt
OpenRefactory has recently released the VEX Generation Toolset, an open-source initiative developed by the Apache Software Foundation and OpenRefactory with funding from ...
Read more arrow_right_alt
OWASP 2025 shows that application security isn’t just about code anymore. Software Supply Chain Failures are now a top‑3 risk.
Read more arrow_right_alt
Authored by Md Shoaib Shahriar Ibrahim and Saadman Ahmed, security engineers at OpenRefactory. Edited by Charlie Bedard Introduction In a previous blog post , we introduc...
Read more arrow_right_alt
Authored by Piotr P. Karwasz who is a PMC member of Apache Log4J and an exte al collaborator of OpenRefactory. Edited by Charlie Bedard. Introduction A Vulnerability Expl...
Read more arrow_right_alt
In today’s fast-paced world of software development, security vulnerabilities are an ever-present risk. While patching a vulnerability addresses the immediate problem, un...
Read more arrow_right_alt
Authored by Munawar Hafiz, CEO at OpenRefactory and Piotr Karwasz, VP, Apache Logging Services, Apache Software Foundation. Edited by Charlie Bedard nMost of our software...
Read more arrow_right_alt