AppSec stories
Exploited software flaws are now overtaking stolen passwords as the main breach route, sharpening pressure on security teams to patch faster.
The tool has already blocked more than 52,000 risky npm packages as supply chain attacks continue to hit software teams.
Runtime behaviour, not login checks, is now seen as the key control as businesses put AI agents into live systems and data.
UK businesses face more mobile phishing and fraud as Zimperium widens access to its defences through ABC Distribution.
The move aims to help defenders turn faster vulnerability discovery into working fixes, as OpenAI broadens access to its cyber tools and partners.
A single compromised laptop can expose thousands of live keys, according to GitGuardian's early field tests, as attacks shift to developer machines.
Public release of the Mini Shai-Hulud code means copycat attacks can now hit developers, CI/CD systems and open-source supply chains.
The move puts Broadridge among firms using frontier AI to harden financial software, where breaches can disrupt trading and client communications.
Enterprise teams using AI coding tools may face higher technical debt, security gaps and costs, according to new SIG research.
Regulators may soon demand proof of who did what as AI agents start opening merge requests in heavily audited development pipelines.
Enterprise teams are getting a single control plane to track agent sprawl, tighten permissions and curb AI spending as autonomous systems spread.
Government agencies will gain wider access to application security tools as the partnership places Checkmarx products on Carahsoft's procurement channels.
Regulated firms can now scan code for flaws without sending sensitive data to external AI services, as AISLE targets private deployments.
With AI speeding up attacks, 53% of security leaders say point-in-time tests are already outdated by the time reports land.
Government buyers will gain wider access to Checkmarx tools as Carahsoft opens procurement routes through reseller networks and federal contracts.
Cybersecurity teams fear the release could speed up vulnerability hunting on both sides, forcing faster patching and tighter controls.
The new capital will help the Boston startup expand sales and engineering as firms seek clearer oversight of AI-assisted coding and software risk.
Enterprises could cut agent coding costs and compliance risks as the new releases add server-side repository access, audit tools and spend controls.
Customers will be able to buy software supply chain security with advisory and managed services as NetRise widens its route to market through partners.
Voluntary model reviews may leave gaps as advanced AI systems move closer to critical infrastructure and enterprise data.