By clicking “Accept”, you agree to the storing of cookies on your device to enhance site navigation, analyze site usage, and assist in our marketing efforts. View our Privacy Policy for more information.
18px_cookie
e-remove

Prioritizing SCA Findings with Reachability Analysis - On-Demand Webinar

In this on-demand webinar, Darren Meyer (Staff Research Engineer, Endor Labs) discusses how reachability analysis can reduce SCA noise.

The session kicks off with a technical overview of dependency management followed by a case study where a customer achieved a 93.56% reduction in alerts, and concludes with Q&A.

Key moments include:

  • 00:26 - The AppSec "hamster wheel of doom"
  • 03:00 - Discovering which part of an OSS package is vulnerable and expoitable
  • 07:25 - A case study on prioritizing SCA results
  • 11:14 - Reachability based on program analysis
  • 21:38 - SBOM support in an SCA tool
  • 22:18 - Augmenting Dependabot with Endor Labs

In this on-demand webinar, Darren Meyer (Staff Research Engineer, Endor Labs) discusses how reachability analysis can reduce SCA noise.

The session kicks off with a technical overview of dependency management followed by a case study where a customer achieved a 93.56% reduction in alerts, and concludes with Q&A.

Key moments include:

  • 00:26 - The AppSec "hamster wheel of doom"
  • 03:00 - Discovering which part of an OSS package is vulnerable and expoitable
  • 07:25 - A case study on prioritizing SCA results
  • 11:14 - Reachability based on program analysis
  • 21:38 - SBOM support in an SCA tool
  • 22:18 - Augmenting Dependabot with Endor Labs

In this on-demand webinar, Darren Meyer (Staff Research Engineer, Endor Labs) discusses how reachability analysis can reduce SCA noise.

The session kicks off with a technical overview of dependency management followed by a case study where a customer achieved a 93.56% reduction in alerts, and concludes with Q&A.

Key moments include:

  • 00:26 - The AppSec "hamster wheel of doom"
  • 03:00 - Discovering which part of an OSS package is vulnerable and expoitable
  • 07:25 - A case study on prioritizing SCA results
  • 11:14 - Reachability based on program analysis
  • 21:38 - SBOM support in an SCA tool
  • 22:18 - Augmenting Dependabot with Endor Labs
Written by
Darren Meyer
Darren Meyer
Published on
March 6, 2024

In this on-demand webinar, Darren Meyer (Staff Research Engineer, Endor Labs) discusses how reachability analysis can reduce SCA noise.

The session kicks off with a technical overview of dependency management followed by a case study where a customer achieved a 93.56% reduction in alerts, and concludes with Q&A.

Key moments include:

  • 00:26 - The AppSec "hamster wheel of doom"
  • 03:00 - Discovering which part of an OSS package is vulnerable and expoitable
  • 07:25 - A case study on prioritizing SCA results
  • 11:14 - Reachability based on program analysis
  • 21:38 - SBOM support in an SCA tool
  • 22:18 - Augmenting Dependabot with Endor Labs

In this on-demand webinar, Darren Meyer (Staff Research Engineer, Endor Labs) discusses how reachability analysis can reduce SCA noise.

The session kicks off with a technical overview of dependency management followed by a case study where a customer achieved a 93.56% reduction in alerts, and concludes with Q&A.

Key moments include:

  • 00:26 - The AppSec "hamster wheel of doom"
  • 03:00 - Discovering which part of an OSS package is vulnerable and expoitable
  • 07:25 - A case study on prioritizing SCA results
  • 11:14 - Reachability based on program analysis
  • 21:38 - SBOM support in an SCA tool
  • 22:18 - Augmenting Dependabot with Endor Labs

The Challenge

The Solution

The Impact

Get a demo of Endor Labs

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Get a demo of Endor Labs

Get a demo of Endor Labs

Welcome to the resistance
Oops! Something went wrong while submitting the form.

Get a demo of Endor Labs

Get a demo of Endor Labs

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Get a demo of Endor Labs