Forrester recognizes Black Duck as a Leader in software composition analysis

| | "Security News & Trends", SCA
Explore why Forrester recognizes Black Duck as a leader in Software Composition Analysis. Discover our top scores in Current Offering and Strategy.The post Forrester recognizes Black Duck as a Leader in software ...

Understanding generative AI risks in software development

Generative AI risks share the same concerns as human-written code. Learn how Black Duck can help you managing license, quality, and security in your AI-generated code.The post Understanding generative AI risks in ...
Addressing cloud-native app development challenges with scalable security tools

Addressing cloud-native app development challenges with scalable security tools

| | DAST, DevSecOps, SAST, SCA
Learn about cloud-native trends, challenges, and security solutions for organizations shifting to cloud-based environments.The post Addressing cloud-native app development challenges with scalable security tools appeared first on Blog ...
Faster, better, stronger application security for developers in the IDE

Faster, better, stronger application security for developers in the IDE

New enhancements from Code Sight enable developers to customize security scans, prioritize new issues, and close feedback loops without leaving the IDE.The post Faster, better, stronger application security for developers in the ...
News Desk 2024: Eyal Paz and Liad Cohen on Transitive Vulnerabilities

Will We Survive The Transitive Vulnerability Locusts

Understanding and Mitigating the Risks of Transitive Vulnerabilities in Application Security At OX Security, our mission is to eliminate manual AppSec processes. Our latest research, presented at Black Hat 2024, highlights a ...
Making Sense of Open-Source Vulnerability Databases: NVD, OSV, and more

Making Sense of Open-Source Vulnerability Databases: NVD, OSV, and more

| | DevSecOps, SCA
Essential reading for developers and security professionals alike: a comprehensive comparison of vulnerability databases to help you cut through the noise ...
Once and future code snippets: How AI reignites risk

Once and future code snippets: How AI reignites risk

Generative AI tools can introduce potential license and security risks in the code they write. Learn how to address these risks with Black Duck SCA.The post Once and future code snippets: How ...
Understanding Supply Chain Risk - Using SCA to protect your application

H1 SCA Roundup – Defending Users Against Constantly Evolving Cyber Threats

| | Product News, SCA
Learn more about GitGuardian SCA commitment and fast adaptation strategies to safeguard the software supply chain of its users ...
Software Composition Analysis [Security Zines]

Software Composition Analysis [Security Zines]

| | SCA, Security Zines
For those feeling code-conscious about shady dependencies lurking in their apps, Software Composition Analysis is the software security wellness check you need! ...
The changing face of software supply chain security risk

The changing face of software supply chain security risk

Learn about the six key findings from the 2024 State of Software Supply Chain Security Risks from the Ponemon Institute.The post The changing face of software supply chain security risk appeared first ...