-
By John K. Waters
A new report from Veracode analyzes 130,000 applications, and finds that it takes about six months for teams to close half the security flaws they find.
-
By John K. Waters
The Cloud Security Alliance does a deep-dive analysis of nine of last year's Egregious 11: Top Threats to Cloud Computing.
-
By John K. Waters
New security solution surfaces vulnerabilities in third-party code used in the development of custom applications.
-
By John K. Waters
Automated IT and security solutions provider Ivanti today announces two additions to its Neurons "hyper-automation" platform: Neurons for Patch Intelligence and Neurons for Spend Intelligence.
-
By John K. Waters
The results of a new survey suggest that a growing number of security and development professionals are convinced of the value of Security Champions programs.
-
By John K. Waters
Oracle's new Cloud Observability and Management Platform aims to provide a comprehensive set of management, diagnostic, and analytics services to help customers manage multicloud and on-premises deployments.
-
By John K. Waters
Authentication solution provider Okta has extended its Okta Devices Platform Service capabilities to developers via the Okta Devices SDK, which provides packaged tooling to build passwordless sign-in flows through branded push notifications with biometric capabilities, minimizing friction for end-users and increasing security posture.
-
By John K. Waters
ZeroNorth announces a new set of capabilities for its SaaS-based security platform aimed at removing friction between security and DevOps teams by making security "integral and transparent" within the SDLC.
-
By John K. Waters
Cloud security provider Accurics announced a new GitHub app designed to further automate the programmatic enforcement of security policies throughout the software development workflow.
-
By John K. Waters
Sumo Logic's fourth annual Illuminate user conference, virtual this year because of the pandemic, wrapped up yesterday after two days of educational sessions, expert keynotes, and product and initiative announcements.
-
By John K. Waters
CloudBees recently announced a new set of DevSecOps capabilities for its continuous integration and delivery (CI/CD) solutions, including feature flag integration within the CI and CD environments, which the company is billing as an industry first.
-
By John K. Waters
Sonatype's malicious code detection bots discovered and confirmed the presence of new vulnerable npm packages that exfiltrate/broadcast the target's IP, username, and device fingerprint info onto a public GitHub page where anyone can gain access.
-
By John K. Waters
Microsoft enables continuous developer-driven "fuzzing" with newly open sourced tool.
-
By John K. Waters
Cloud security provider Accurics has release an update of its free and open-source Terrascan static code analyzer with new support for Kubernetes.
-
By John K. Waters
Kubernetes security solutions provider Alcide earns AWS Outposts Ready designation.
-
A group of leading tech industry heavy weights that includes Microsoft, IBM, and Google, announced the formation of a new software foundation to consolidates industry efforts to improve the security of open-source software.
-
By John K. Waters
Automated IT and security solutions provider Ivanti is partnering with Intel to provide Device-as-a-Service (DaaS) with Intel's Endpoint Management Assistant
-
By John K. Waters
New Java developer library streamlines use of Platform Agnostic Security Tokens (PASETOs) and provides an alternative to JSON Web Tokens (JWT) to authenticate end users.
-
By John K. Waters
Red Hat announces the beta availability of the latest minor release of the RHEL 8 platform.
-
By John K. Waters
Google Cloud's Confidential Virtual Machines enable users to encrypt their data for the first time in-use--in other words, while it's being processed, in-memory, not just when it's at rest in storage or in-transit.
-
DevSecOps solutions provider Alcide has released a beta version of a new solution designed to provide "end-to-end continuous security guardrails" for Kubernetes deployments.
-
By John K. Waters
The latest Critical Patch Update (CPU) from Oracle, published today, addresses 397 security vulnerabilities across the company's product suite, including 15 patches for Java SE.
-
By John K. Waters
Alcide has released a new command-line tool designed to allow developers, DevOps pros and Kubernetes app builders to scan their Kubernetes configuration and deployment files and deploy it into their continuous integration pipelines.