AI-powered patching and coding is putting us on a track towards a deepening dependency on future frontier models. The modern tools we use today to fix yesterday’s coding problems are […]
Sonar Previews Service to Improve Quality of AI Generated Code
Sonar’s SonarSweep improves AI-generated code by reducing bugs and vulnerabilities, helping organizations train more reliable AI models.
GitHub Brings Together Security, Developers to Fix Code Flaws
GitHub is linking developers with security pros to reduce the number of vulnerabilities that may be hiding in code that already is in workflows. The highly popular Microsoft-owned code repository […]
Backslash Security Extends Reach of Application Security Platform
Making the Backslash application security platform even more secure with news of added support as well as a revamped, simpler user interface.
ActiveState Makes All Tiers of Curated Artifact Repository Service Free
ActiveState today announced it is making all tiers of its ActiveState Artifact Repository service available for free for a limited time. The move aims to enable organizations to better secure […]
GraphQL Vulnerability Analysis: The Top Threats
Publicly available vulnerability data can be a goldmine for insights into how DevOps and DevSecOps teams can prioritize threats and improve security across the pipeline. With this in mind, Inigo […]
The Two Types of Code Vulnerabilities
Spell checkers, grammar checkers and predictive keyboards all help reduce errors in written communication, but in a creative medium where writers need to innovate new expressions, nothing can eliminate all […]
DevOps’ Role in Fixing Software Vulnerabilities
From the beginning, application development has required that software developers deal with bugs, vulnerabilities and other issues. But problems encountered under the DevOps model tend to be more manageable since […]
Shifting Left With DevSecOps: ESG Report Exposes Difficulties
A recent report asks the tough questions about DevSecOps adoption, and the results are surprising In a world of increasing development velocity, companies are placing more responsibility on developers to […]
Synopsys Advances DevSecOps via IDE Plugin
Synopsys has extended the static application security testing (SAST) and software composition analysis (SCA) of the Code Sight plugin it makes available for integrated development environments (IDEs). The latest iteration […]











