Supply Chain Security stories
Archipelo, Checkmarx tie dev context to app security
Yesterday
#
application security
#
devsecops
#
iam
Archipelo and Checkmarx partner to fuse dev workflow signals with app security scans, giving teams origin evidence to prioritise fixes.
JFrog flags 13 critical CI/CD flaws in GitHub workflows
Yesterday
#
fintech
#
application security
#
devsecops
JFrog warns 13 GitHub CI/CD workflow flaws, mostly critical, could let attackers hijack pipelines and steal secrets at scale.
Claude Code flaws expose new risks in AI dev tools
Yesterday
#
devops
#
cloud security
#
application security
Claude Code flaws found by Check Point could let malicious repos run code and grab API keys before developers confirm a project is trusted.
Delinea buys StrongDM to boost AI-era identity security
Yesterday
#
devops
#
hybrid cloud
#
digital transformation
Delinea acquires StrongDM to create a unified, just-in-time identity security control plane for AI-driven and hybrid cloud environments.
Delinea buys StrongDM to tackle AI-driven access risk
Yesterday
#
devops
#
hybrid cloud
#
pam
Delinea acquires StrongDM to fuse privileged access tools with just‑in‑time authorisation, tackling AI‑driven identity and access risks.
Endor Labs unveils AURI to secure AI-driven coding
Yesterday
#
devops
#
application security
#
devsecops
Endor Labs has launched AURI, an AI-aware security platform that embeds continuous code checks directly into agent-driven development workflows.
Reversec names Åse Holmberg Zetterlund as Chief Executive
Yesterday
#
devops
#
partner programmes
#
supply chain
Cyber consultancy Reversec has named former Accenture executive Åse Holmberg Zetterlund as CEO to drive its next phase of global expansion.
NCC warns of rising cyber risks to connected farming
2 days ago
#
agricultural technology
#
ransomware
#
cloud security
NCC warns that insecure connected farm machinery could let cyber attacks disrupt harvests, cut yields and threaten food supply chains.
AI adoption drives security spend but breaches persist
2 days ago
#
data protection
#
hybrid cloud
#
digital transformation
Rising AI adoption is driving higher security spend, yet most enterprises still suffer repeated breaches as risk outpaces new defences.
Manifest flags AI readiness gap between execs & AppSec
3 days ago
#
digital transformation
#
cloud security
#
application security
Manifest research reveals executives overestimate AI security readiness, as AppSec teams warn of unmanaged tools, blind spots and rising risk.
UpGuard unveils Risk Automations to speed cyber fixes
3 days ago
#
uc
#
siem
#
cloud security
UpGuard debuts Risk Automations to link cyber risk findings with security workflows, promising faster fixes after USD $75 million raise.
From Bill C-26 to C-8: Canada's cyber law reboot explained
5 days ago
#
uc
#
firewalls
#
data protection
Canada's long-stalled cybersecurity overhaul is reborn as Bill C-8, promising strict rules for critical infrastructure after years of delay.
The security challenges in AI-assisted software development
5 days ago
#
digital transformation
#
application security
#
devsecops
As AI tools spread through software teams, rising security flaws and shadow AI use are forcing leaders to tighten guardrails fast.
GitProtect DevOps backup now live on Microsoft Marketplace
Last week
#
data protection
#
dr
#
devops
GitProtect DevOps backup lands on Microsoft Marketplace, giving Azure customers streamlined procurement and deployment for code protection.
Chainguard extends secure libraries to Python, Java, JS
Last week
#
application security
#
devsecops
#
supply chain
Chainguard expands its rebuilt-from-source Libraries to Python, Java and JavaScript, targeting malware risks in AI-driven software supply chains.
OpenClaw AI assistant surge sparks major security fears
Last week
#
malware
#
phishing
#
application security
A rapid surge in OpenClaw AI assistant use has left tens of thousands of exposed systems and a trail of hijacked tools and malicious add-ons.
GitLab expands MSP partner push for agentic AI control
Last week
#
data protection
#
digital transformation
#
hyperscale
GitLab expands its MSP partner programme to deliver agentic AI-powered DevSecOps as a managed service with strict data sovereignty controls.
Datadog flags rising DevSecOps risk from ageing code
Last week
#
devops
#
siem
#
application security
Datadog warns 87% of organisations run software with exploitable flaws as ageing code, fast releases and automation amplify DevSecOps risk.
AI-fuelled cyber attacks now steal data in 72 minutes
Last week
#
firewalls
#
pam
#
cloud security
AI-driven hackers can now steal data in just 72 minutes, as faster, multi-surface attacks overwhelm complex, over-trusting enterprises.
UpGuard raises USD $75m to expand AI cyber risk tools
Last week
#
digital transformation
#
cloud security
#
advanced persistent threat protection
UpGuard secures USD $75m Series C to scale its AI cyber risk platform, fuelling product development, global expansion and acquisitions.