Supply Chain Security stories
The new service aims to help firms keep pace as AI-powered criminals automate attacks faster than security teams can patch flaws.
Businesses adopting AI agents face new security and accountability risks as Ping Identity extends access controls, auditability and governance.
A zero-day in a widely used Japanese learning platform let hackers plant malware, while Chinese phishing services are now bypassing one-time codes.
Businesses rushing to deploy AI agents face a fresh security gap, as Zscaler adds identity mapping and partner services to its platform.
The certification should ease procurement concerns for finance teams handling sensitive planning data, as buyers demand tougher proof of security controls.
A Floxy study warns developers that Google's coding assistant keeps code for 540 days and defaults to training on user data.
The round values the software supply chain security company at USD $1 billion as AI coding boosts the flow of third-party code into production.
Threats from AI skills are escalating as the cybersecurity group expands research to counter a fast-growing software supply chain and attack surface.
The new integration keeps passwords out of prompts and repos, reducing the risk of leaks as AI coding agents move into production workflows.
Only a small fraction of disclosed flaws are likely to hit suppliers, leaving security teams to focus on the 58 highest-risk CVEs.
Independent security checks are gaining urgency as fast-growing AI and software firms face rising scrutiny from customers, partners and regulators.
The release gives security teams and developers new controls for credentials, merge requests and supply chain oversight as AI use grows.
Most Spring teams are exposed to container risks as 64% of respondents were unaware Dockerfile choices can affect security.
Members are backing tougher open source security as OpenSSF expands guidance on regulation, Python coding and AI-driven vulnerability tools.
Thousands of schools faced disruption after a vendor breach exposed how learning platforms and cloud services can halt teaching and assessments.
The hire signals CodeHunter's push to scale pre-execution software security as threats mount across supply chains and development environments.
A JFrog study says weak package and container defences are leaving Indian organisations exposed as AI use adds new checks for developers.
Belgian software SMEs risk losing B2B contracts as new EU rules expose weak threat modelling and scant security training, a PXL study says.
UpGuard says exposed credentials and supplier risk leave Australia's biggest listed firms vulnerable, despite a modest rise in security scores.
Rising attack volumes are exposing under-resourced SMEs to downtime, lost contracts and regulatory risk unless security is built in now.