DevSecOps
Most Critical Open Source Projects Lack Memory-Safe Code, CISA Says
The country’s top cybersecurity agency is continuing to urge software developers to adopt memory-safe programming languages to help reduce the number of vulnerabilities in their products ...
Orca Security Adds Ability to Scan Source Code for Vulnerabilities
Orca Security this week extended the reach of its cybersecurity portfolio to include an application that scans source code stored in GitHub and GitLab repositories for vulnerabilities ...
Ensuring Application Security from Design to Operation with DevSecOps
Safe development is critical for any company that creates software, whether for its own use or for others. DevSecOps principles focus on automating information security processes and introducing security measures early in ...
Datadog Extends Scope and Reach of Observability Platform
Datadog at its DASH 2024 conference added a bevy of tools and capabilities to streamline DevSecOps workflows, including integration with open-source OpenTelemetry agent software developed under the auspices of the Cloud Native ...
Decoding DevSecOps: Striking the Right Balance
DevSecOps has promise and pitfalls, and we need a path forward to achieve a balance between speed and security ...
From Concept to Reality: How ASPM Brings DevSecOps to Life
Building on the foundation laid by DevSecOps, ASPM represents a leap forward in operationalizing these principles within the CI/CD process ...
Survey Surfaces Extent of Web Application Security Crisis
A survey of 349 U.S. and UK cybersecurity professionals finds that while 60% work for organizations that update web applications at least once a week nearly three-quarters (75%) test their web applications ...
Digital.ai Extends Scope and Reach of DevSecOps Platform
The Erawan Release of a DevSecOps platform provides a set of new and enhanced capabilities to help automate applications security along with integration with Backstage, an open-source internal developer platform originally developed ...
Mend.io Adds Tool to Detect Presence of Generative AI Code
Mend.io this week added a MendAI tool to its application security portfolio that identifies code generated by an artificial intelligence (AI) model ...
Splunk Adds Data Management and AI Tools to Observability Portfolio
Recent adoption shows that AI tools enable more applications at scale. However, the application environment is going to be that much more complex as the number of dependencies between applications and services ...
AWS Previews Generative AI Tool for CloudTrail Activity Logs
AWS today previewed a GenAI tool for its AWS CloudTrail data lake and is focusing most of its cybersecurity efforts on a new generation of cloud infrastructure that is inherently more secure ...
Backslash Security Extends Reach of Application Security Platform
Making the Backslash application security platform even more secure with news of added support as well as a revamped, simpler user interface ...

