Tag: software security
Report Shines Spotlight on Open Source Software Security Challenges
An analysis of more than five million open-source software packages published by Lineaje, a provider of a platform for tracking open-source software components, finds 95% of security issues involve some type of ...
Survey Surfaces Steady Gains in DevSecOps Adoption
A survey of more than 500 DevOps practitioners finds less than half (47%) of respondents work for organizations that regularly employ best DevSecOps practices. Conducted by Techstrong Research, an arm of the ...
SBOM as a Cornerstone of Secure Software Development
By providing transparency into the software supply chain, an SBOM helps organizations identify and manage vulnerabilities in third-party and open-source components ...
No Country for No-Code: Are We Heading Towards a Wild West of Software Security?
The specter of an untrained employee creating applications is alarming: No-code/low-code platforms empower employees with no application security knowledge to develop programs that security teams don’t know exist ...
Leveraging eBPF for DevSecOps
The applications for enhancing security observability with eBPF are vast, and it's increasingly valuable for DevSecOps use cases ...
Squaring the Circle: How to Make Public APIs Private
Many API attacks are effectively zero-day, novel attacks that exploit recent and unique changes to specific APIs. Here's how to stop them ...
OX Security Optimizes DevSecOps to Improve Application Security
OX Security updated its ASPM platform to enable DevSecOps teams to instantly identify applications with vulnerable code ...
Vulnerability Management for DevOps Teams: A Practical Guide
The goal of vulnerability management is to close the gap between discovery and resolution, thereby minimizing the window of opportunity for potential cyberattacks ...
How Encryption Innovation Will Power Cloud Privacy for Developers in 2024
With new encryption technologies rapidly advancing, developers can ensure their applications are secure ...
CISA, NSA Issue Supply Chain Security Guidance Report
The NSA, ODNI and CISA have issued guidance to assist software developers and suppliers in shoring up software integrity and security ...
Survey Surfaces Software Supply Chain Security Challenges
While there is general agreement on the importance of software supply chain security, there is a significant disconnect on how to achieve that goal ...
3 Steps to Secure Your CI/CD Pipelines
Palo Alto Networks' Daniel Krivelevich shares a general three-step framework organizations can use to secure the CI/CD pipeline and surrounding areas ...