Chainguard Blog
Featured posts
Chainguard Libraries for Python: Now Generally Available with CVE Remediation and Malware Protection
Chainguard Libraries for Python, trusted open source language libraries designed for CVE remediation and malware protection, is now generally available.
Bria Giordano, Director, Product Marketing, and Anushka Iyer, Product Marketing Manager
The State of Trusted Open Source: December 2025
Chainguard’s State of Trusted Open Source for December 2025 dives into usage trends for Chainguard Containers, CVE data, and why remediation speed matters.
Ed Sawma, VP of Product Marketing, and Sasha Itkis, Product Analyst
Security insights delivered before they become problems
Latest updates
- news
Introducing Chainguard Labs: An update on an open, living software supply chain compromises dataset and new SBOM research efforts
John Speed Meyers and Zachary Newman, Principal Research Scientists
- research
Are SBOMs any good? Preliminary measurement of the quality of open source project SBOMs
John Speed Meyers, Principal Research Scientist
- news
Our 2023 technology trends & predictions for software security
Chainguard Team
- open source
The archiving of the Gorilla Web Toolkit: A tale of two software security risks
Dan Luhring, Staff Software Engineer and Eddie Zaneski, Staff OSS Engineer
- product
ICYMI: Our Chainsmas spaces recap
Chainguard Team
- security
Software supply chain security: Broader than SolarWinds and Log4J
Dan Lorenc, CEO
- security
Principles for secure software distribution: Lessons from leaked Android platform signing keys
Zachary Newman, Principal Research Scientist
- research
Securing the machine learning supply chain
Zachary Newman, Principal Research Scientist
- engineering
Reflections on trusting VEX (or when humans can improve SBOMs)
Adolfo García Veytia, Staff OSS Engineer
- open source
7 reasons you should plan to adopt Sigstore in 2023
Tracy Miranda, Head of Open Source
- research
Software dark matter is the enemy of software transparency
John Speed Meyers, Adolfo Veytia, Dan Luhring, Zack Newman, and Santiago Torres-Arias
- news
Mitigating OpenSSL vulnerability with Chainguard
Dan Lorenc, CEO