Endor Labs

Endor Labs

Software Development

Palo Alto, California 7,324 followers

Secure everything your code depends on.

About us

80% of code in modern applications is code your developers didn’t write, but “borrowed” from the internet. With over 3M Open Source Software (OSS) projects, 43M versions, and 3.1T downloads yearly, development teams can gain tremendous benefits from leveraging the OSS ecosystem, as long as organizations invest in the tooling to address the security, scalability and sustainability challenges that come with it.  At Endor Labs, we've created the first open source dependency lifecycle management platform to help OSS consumers select, secure and maintain dependencies effectively.

Website
https://www.endorlabs.com/
Industry
Software Development
Company size
51-200 employees
Headquarters
Palo Alto, California
Type
Privately Held
Founded
2021

Locations

Employees at Endor Labs

Updates

  • View organization page for Endor Labs, graphic

    7,324 followers

    Join Kayra Otaner (Director of DevSecOps at Roche) and Jamie S. from Endor Labs to learn how you can and should create an independent pipeline for executing security controls and tools across all your enterprise-wide CI/CD pipelines.

    View organization page for Endor Labs, graphic

    7,324 followers

    Join Jamie S. and Darren Meyer for our next webinar: 𝐖𝐡𝐚𝐭'𝐬 𝐚 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲 𝐏𝐢𝐩𝐞𝐥𝐢𝐧𝐞? As AppSec / ProdSec teams have more tools and processes to deploy and manage across the SDLC, maintaining CI/CD pipelines and pipeline integrations for security purposes is getting more complex and expensive. An emerging solution to this problem is to create independent pipelines for executing security tasks in CI/CD. Learn about common patterns and tradeoffs for security pipelines in this introductory webinar. #webinar #appsec #security #cybersecurity #sca

    This content isn’t available here

    Access this content and more in the LinkedIn app

  • View organization page for Endor Labs, graphic

    7,324 followers

    We’re talking about Security Pipelines! Join us for a chat on Wednesday, July 17, at 9:00 a.m. PT. Darren Meyer, Staff Research Engineer at Endor Labs, will be hosting this session featuring Kayra Otaner, Director of DevSecOps at Roche, and Jamie S., Founding Product Manager at Endor Labs. They’ll dive into "What's a Security Pipeline?" AppSec / ProdSec teams have more tools and processes to deploy and manage across ❇️  The SDLC ❇️  CI/CD pipelines ❇️  Pipeline integrations These are complex and expensive. An emerging solution to this problem is to create independent pipelines for executing security tasks in CI/CD. Learn about common patterns and tradeoffs for security pipelines in this introductory webinar. https://lnkd.in/gPrY-Ugs #webinar #appsec #security #cybersecurity #sca

    • No alternative text description for this image
  • View organization page for Endor Labs, graphic

    7,324 followers

    Join us at the Cloud Security Alliance - SF Chapter meet-up on Tuesday, July 23rd at 5:30 PM at the Endor Labs HQ in Downtown Palo Alto! Network over food and drinks while enjoying talks by experts from the SANS Institute and Endor Labs. Dan deBeaubien will discuss Generative AI, Business Risk, and Opportunities, and Jamie S. will talk about- The SCA Balancing Act: Understanding Tradeoffs, What to Do and Avoid. We look forward to seeing you there! Find the RSVP link in the comments below 👇

    • No alternative text description for this image
  • View organization page for Endor Labs, graphic

    7,324 followers

    LeanAppSec just launched a new course on 𝐒𝐁𝐎𝐌𝐬 𝐟𝐨𝐫 𝐀𝐩𝐩𝐒𝐞𝐜 𝐚𝐧𝐝 𝐂𝐨𝐦𝐩𝐥𝐢𝐚𝐧𝐜𝐞! 𝐂𝐡𝐞𝐜𝐤 𝐨𝐮𝐭 𝐭𝐡𝐞 𝐜𝐨𝐮𝐫𝐬𝐞 𝐢𝐟 𝐲𝐨𝐮: 💬 𝐖𝐚𝐧𝐭 𝐭𝐨 𝐫𝐞𝐬𝐩𝐨𝐧𝐝 𝐪𝐮𝐢𝐜𝐤𝐥𝐲 𝐭𝐨 𝐬𝐮𝐩𝐩𝐥𝐲 𝐜𝐡𝐚𝐢𝐧 𝐢𝐧𝐜��𝐝𝐞𝐧𝐭𝐬: Use SBOMs to track where you have affected components 🏛️ 𝐂𝐚𝐫𝐞 𝐚𝐛𝐨𝐮𝐭 𝐜𝐨𝐦𝐩𝐥𝐢𝐚𝐧𝐜𝐞: Learn how you can generate and share SBOMs with auditors/regulators 🔧 𝐖𝐚𝐧𝐭 𝐭𝐨 𝐛𝐮𝐢𝐥𝐝 𝐚 𝐦𝐚𝐭𝐮𝐫𝐞 𝐬𝐞𝐜𝐮𝐫𝐢𝐭𝐲 𝐩𝐫𝐨𝐠𝐫𝐚𝐦: An SBOM shows your organization has a well-developed security practice. https://lnkd.in/emzU56JU #SBOM #AppSec #Compliance

    • No alternative text description for this image
  • Endor Labs reposted this

    View profile for Kristen Maliksi, graphic

    Culture & Operations Manager at Endor Labs

    As my second born is right about to hit two months old, I am reflecting on how thankful I am to have this time with him and my family! I just hit one year at Endor Labs and am so grateful to celebrate this milestone while on maternity leave. Thanks to Endor Labs for the incredible support and generous time off, making it possible to balance a career and motherhood. It’s no wonder we were just named on Inc's Best Workplaces list for 2024! I’m truly proud to be part of such a supportive and amazing team! 🙏🏼🚀🏆 (pic included: family outing to the local zoo 🥰) Check out highlights from the past year in this announcement: https://lnkd.in/gQ6NjbWG #Hiringnow #AppSec #IncBestWorkplaces

    • No alternative text description for this image
  • View organization page for Endor Labs, graphic

    7,324 followers

    Three #CocoaPods CVEs raise serious security concerns for consumers of Swift and Objective-C libraries used for macOS and iOS mobile development. E.V.A Information Security discovered three vulnerabilities in the Trunk server that runs the whole CocoaPods repository, causing significant concern. These vulnerabilities existed for a decade before they were discovered, making the CocoaPods supply chain fragile. If you’ve been using them for several years, there’s no telling when your Pods could have been sabotaged. The good news is that these problems have been patched by CocoaPods prior to the disclosure. The bad news is that no one really knows if adversaries took advantage of these vulnerabilities. Here’s a quick rundown of CocoaPods and what you can do to ensure your dependencies are up-to-date: https://lnkd.in/gz-PiCXH #CocoaPods #Swift #ObjectiveC

    • No alternative text description for this image
  • View organization page for Endor Labs, graphic

    7,324 followers

    Looking to try out your first SCA tool or thinking of switching from your current one? Awesome! Before you commit to a new tool, make sure to ask potential vendors these seven questions. Save this infographic so you have it handy when meeting with potential SCA vendors.

    • No alternative text description for this image
  • Endor Labs reposted this

    View profile for Edmond Momartin ☁️, graphic

    Public Cloud Security & Compliance AT&T | MBA InfoSec | OWASP-LA Board | ISSA Fellow | OWASP Chapter Committee

    Darren Meyer presents his talk on “What’s in your #AI code” during OWASP LA monthly meeting. One of the reasons he says tools are blind to issues related to code that contain #AI code, is that many of them rely solely on manifest or lock files. Thanks to HiveWatch for hosting us and everyone who braved heavier than normal SoCal traffic to attend the event.

    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image

Similar pages

Browse jobs

Funding