Tag: analysis
Sonar Surfaces Multiple Caveats When Relying on LLMs to Write Code
New SonarSource research shows LLMs like GPT-4o, Claude Sonnet 4, and Llama-3.2 produce highly functional yet risky code — with frequent high-severity vulnerabilities, hard-coded credentials, and messy “code smells” that raise long-term ...
Black Duck Analysis Surfaces Raft of Open Source Software Vulnerabilities in Code Bases
An analysis of 965 commercial codebases across 16 industries conducted in 2024 finds 86% of commercial codebases evaluated contained open-source software vulnerabilities, with 81% of them known to be high- or critical ...
Things To Do During Slow Times
Don MacVittie offers suggestions on what to tackle during this slow, holiday-filled time of year when many folks may not be available ...
Product Evaluation Discussions
Instead of doing a predictions blog like 99% of the punditry, I figured I would do an awareness blog to wrap up 2022. Every year, you deal with a wide variety of ...


