Cycode today announced it is providing early access to a capability that identifies which artificial intelligence (AI) coding tools are being employed by application developers in addition to adding an AI Bill of Materials (AIBOM) that also identifies what underlying technologies, such as large language models (LLMs), are being invoked. Devin Maguire, senior product marketing […]
Establishing Visibility and Governance for Your Software Supply Chain
Asset visibility and cloud governance start with SBOMs, VEX, and provenance tracking. Learn how to secure your software supply chain.
Worms in the Supply Chain: Shai-Hulud and the Next DevOps Reckoning
DevOps was supposed to make software delivery faster, safer and more reliable. For the most part, it has. But every so often, something nasty crawls out of the shadows and reminds us how fragile the system really is. It wasn’t a zero-day in Kubernetes or a cloud misconfiguration that caught my eye. It was a […]
SBOMs Are Not Enough
Track your components, patch when needed and you’ve got your risk covered. But that’s only part of the story.
Survey Surfaces Uneven Adoption of SBOMs to Secure Software
A survey of 100 security professionals finds nearly half (48%) of security professionals admit their organizations are falling behind on meeting software bill material (SBOM) requirements as specified by the U.S. Office of Management and Budget (OMB) Memo M-22-18, Executive Order 14028, and the European Union (EU) Cyber Resilience Act. Conducted during the recent RSAC […]
Legit Security Extends ASPM Platform to Provide More Vulnerability Context
Legit Security this week added an ability to determine the level of risk a vulnerability actually represents to its application security posture management (ASPM) platform.
Endor Labs Adds Ability to Identify Open Source AI Models to SCA Tool
Endor Labs today added an ability to detect open-source artificial intelligence (AI) models downloaded from the Hugging Face repository that have been incorporated into source code.
RunSafe Security Extends Platform Reach to Build More Accurate SBOMs
RunSafe Security this week added an ability to generate a software bill of materials (SBOM) based on the code actually included in an application before it is deployed in a production environment.
Mend.io Adds Tool to Detect Presence of Generative AI Code
Mend.io this week added a MendAI tool to its application security portfolio that identifies code generated by an artificial intelligence (AI) model.
Lineaje Adds Module to Manage Open Source Software Security Lifecycle
This can help DevSecOps teams identify open source software projects that are not being well maintained.
- « Previous Page
- 1
- 2
- 3
- 4
- …
- 6
- Next Page »








