AppSec stories
Security teams gain a single workflow to validate real exploit paths as BreachLock folds autonomous testing into its wider platform.
Rising use of AI coding tools is widening software supply-chain risks for businesses across the Middle East, Türkiye and Africa.
Security teams could get clearer visibility into compiled software, as RevEng.AI's new models aim to spot risks without source code.
Security teams could see fewer false positives and faster fixes as Cycode's new system blends rule-based checks with AI to trace attack paths.
As AI coding agents speed up development, JFrog is adding controls meant to keep governance, compliance and patching from lagging.
Independent testing found no critical, high or medium flaws in TiDB's platform as database buyers demand stronger proof of security.
Machine-speed discovery is shrinking defenders' lead time, as AI now uncovers obscure flaws and turns them into exploits before patches land.
Partners across EMEA and APAC gain a route into AI coding and DevSecOps projects as SonarQube checks aim to cut security and governance risks.
Many firms lack the capacity to fix existing flaws fast enough, leaving them exposed as AI-generated attacks scale up, experts warn.
Customers will get human-verified open source fixes as Broadcom expands Spring security coverage and counters risks from AI-generated patches.
Buyers of AI tools now have a benchmark to judge testing providers, as CREST's new standard targets gaps in assurance and due diligence.
As attackers use AI to speed up phishing and malware, companies are being told that multi-factor authentication and patching matter more than ever.
Security teams could cut exposure faster as the model helps rank exploitable flaws and apply temporary defences before vendor fixes arrive.
Regulated teams can now keep AI processing inside GitLab Dedicated, with new secret handling, spending caps and security fixes added in 19.3.
Basic security lapses are leaving web apps exposed, with Barracuda saying routine misconfigurations account for most of 20 flaws per site.
Misconfigured models are giving attackers a fresh route into cloud systems, raising the risk of data theft and service compromise.
The new tool aims to catch Bitcoin software flaws between formal audits after a regression led to more than USD $116 million stolen.
Developers can now scan C code earlier in the process, as Endor Labs says its buildless AI SAST found 96 of 102 known bugs in tests.
Blockchain apps risk losing new users unless developers simplify approvals and signing while keeping private keys and transactions secure.
Businesses facing faster AI-driven attacks can now use Visa's updated framework and advisory services to cut vulnerability fixes from weeks to hours.