📔
Get the Burndown to Zero Playbook
A Guide to Making your AppSec Program AI Native.
Read it now.
Features
Pricing
About us
Docs
Blog
Weekly Briefings
Schedule demo
Get updates
Schedule demo
Pixee Blog
Why You Shouldn't Buy a Security Product in Response to React2Shell
Ryan Dens
December 10, 2025
9 min read
React2Shell (CVE-2025-55182) is serious, but buying new security products isn't the answer. Learn why systematic vulnerability management beats reactive purchasing.
React2Shell: The Next Struts2-Style Bug Parade?
Arshan Dabirsiaghi
December 08, 2025
3 min read
React2Shell evokes lessons about Abstract vs Concrete Risk. When powerful interpreters hide behind developer ergonomics, history suggests RCE emergence is inevitable.
8 Forces Pushing Enterprises Back to On-Premises AI Security
Victor Sowers
December 08, 2025
3 min read
AI-powered development collides with tightening governance. Here are the 8 forces making on-premises AI remediation urgent for regulated enterprises.
How to Secure the 77% of Code You Didn't Write
Victor Sowers
December 02, 2025
13 min read
Analysis of 20 industry reports reveals why 252-day MTTR persists despite SCA adoption. Learn what data shows about closing the supply chain security gap.
The AppSec Maturity Model: From Detection to Resolution
Victor Sowers
December 02, 2025
7 min read
Diagnose where your AppSec team is stuck: triage bottleneck, capacity constraints, or data governance? This maturity model helps identify which remediation investments address your bottleneck.
Machine-Speed Triage: The Three Intelligence Types Security Needs Now
Surag Patel
November 24, 2025
9 min read
Security teams make three triage decisions (false positive, won't fix, re-score) before any fix happens. Why one-third automation isn't enough.
When Half Your Security Leaders Are Too Burned Out to Protect You
Surag Patel
November 18, 2025
6 min read
Why 50% of CISOs are burned out: it's the dual pressure of AI-enabled attack surfaces and pressure to reduce headcount, plus tool sprawl that fails to protect against known vulnerabilities.
How to Reduce Your Security Backlog: 4-Step Plan to Cut Vulnerabilities
Victor Sowers
November 11, 2025
17 min read
66% of orgs have 100K+ vulnerabilities in their backlog. Learn the 4-step framework to eliminate security debt with automated vulnerability remediation.
Next