An SCW study finds a large variance in how frontier and budget LLMs perform across different frameworks, and explains the striking cost variance.
AI is Coding Us Into a Corner
AI-powered patching and coding is putting us on a track towards a deepening dependency on future frontier models. The modern tools we use today to fix yesterday’s coding problems are […]
Agentic DevSecOps: AI Security Co-Pilots for Your CI/CD Pipeline
The emergence of AI has brought endless possibilities and innovative opportunities in today’s ever-changing, fast-paced technology landscape. AI is helping development teams produce software significantly faster than ever before. AI-enabled […]
If it Isn’t Code, it’s Just Advice
In the world of AI coding, success hinges on code-native solutions that integrate and verify changes directly in the codebase. Many AI tools fail by relying on external dashboards, lacking the reproducibility and testability that code provides. To truly harness AI, solutions must automate and validate changes within the existing code ecosystem, ensuring reliability and efficiency.
Eclipse Foundation Extends Scope and Reach of Open VSX Registry
The Eclipse Foundation launches a new framework for the Open VSX Registry, enhancing security features and transitioning to a hybrid architecture. With support from AI tool provider Cursor, this initiative aims to promote safer software supply chains.
Will AI Kill the OSS Star?
As AI-driven development accelerates, open source software faces an uncomfortable paradox: Usage is rising while engagement, sustainability and community economics quietly erode. AI isn’t eliminating OSS, but it is reshaping how code is written, discovered and maintained. The result may not be the death of open source, but the end of its long reign as the default foundation of modern software.
Secure By Design, Secure by Default
“Shift left” alone won’t secure software. Real security must be embedded continuously across design, development, and production—not just moved earlier.
Qwiet AI Extends Microsoft Support in Platform for Fixing Vulnerabilities
Qwiet AI extends its AI-driven application security platform with deeper Microsoft DevOps integrations, enhanced automation, and expanded AutoFix capabilities to proactively remediate code vulnerabilities.
The Hidden Imperative in the UK’s Software Security Code: Provable Readiness
The challenge ahead is clear: Let’s not settle for minimum viable security. Let’s aim for resilient, trustworthy and demonstrably secure software that stands up to the threats of today and tomorrow.
Code Signing in the DevOps Era: Silver Bullet or Security Theater?
In the race for speed and automation, code signing is treated as a silver bullet when it should be just one part of a deeper trust strategy.
- 1
- 2
- 3
- …
- 6
- Next Page »










