
How to safeguard your AI ecosystem: The imperative of AI/ML security assessments
The widespread use of Artificial intelligence (AI) and machine learning (ML) introduce their own security challenges; an AI/ML security assessment can help. ...

Black Duck audits reporting update: Streamlined view of risks and remediation steps
Emmanuel Tournier | | M&A and OSS license compliance, Mergers and acquisitions due diligence, Open Source and Software Supply Chain Risks, Open source license compliance
New Synopsys Black Duck® engagement summary report summarizes a breadth of insights across all domains of software due diligence. Introducing the new engagement summary report Synopsys is offering a new Black Duck® ...

CyRC Vulnerability Advisory: CVE-2023-2453 Local File Inclusion in Forum Infusion and CVE-2023-4480 Arbitrary File Read in Fusion File Manager
Synopsys researcher discovers vulnerabilities CVE-2023-2453, CVE-2023-4480 in PHPFusion. ...

SANS 2023 DevSecOps Survey
New 2023 SANS DevSecOps Survey explores DevSecOps challenges and trends ...

The parallels of AI and open source in software development
Phil Odence | | M&A and OSS license compliance, Mergers and acquisitions due diligence, Open Source and Software Supply Chain Risks, Open source license compliance
Parallels between the history of open source and the rise of AI in software development can teach us valuable AppSec lessons ...

Building Security In Podcast: New strategies for managing risk
In episode 3 of the ‘Building Security In – The Next Decade’ podcast, we discuss evolving strategies for managing risk. ...

Eliminate false positives with WhiteHat Dynamic
WhiteHat Dynamic helps organizations eliminate false positives ...

Solving cross-platform DevSecOps challenges with Synopsys
Cross-platform DevSecOps challenges are easily solved with Polaris Software Integrity Platform® capabilities. What is DevSecOps DevSecOps is the integration of security best practices into DevOps. The goal is to incorporate security testing earlier ...

CyRC Vulnerability Advisory: CVE-2023-0871 Vulnerability in OpenNMS Horizon
Synopsys Cybersecurity Research Center | | Cybersecurity Research Center, Security News and Research
CVE-2023-0871 is an XML External Entity injection vulnerability in OpenNMS Horizon. Overview The Synopsys Cybersecurity Research Center (CyRC) has discovered CVE-2023-0871, an XML External Entity injection vulnerability, in OpenNMS Horizon ...

The rise of AI in software development
Phil Odence | | M&A and OSS license compliance, Mergers and acquisitions due diligence, Open Source and Software Supply Chain Risks, Open source license compliance
Generative artificial intelligence tools are changing the world and the software development landscape significantly. Our webinar series will help you understand how ...