News

It has been a busy week for supply-chain attacks targeting open source software available in public repositories, with ...
By combining Lineaje AI's innovative agentic AI, Gold Open Source and enhanced scanning with SCA360, organizations can eliminate software supply chain vulnerabilities and reduce complexity and ...
Experts, including Allan Friedman, CISA's leading voice on SBOMs until July 2025, emphasized that AI BOMs should be standardized before being implemented ...
Open source security startup Seal Security on July 29 announced raising $13 million in a Series A funding round.
Many companies lack visibility into complex digital supply chains, meaning hidden risks and regulatory exposure. Cyber ...
Dimensional Research surveyed more than 300 global executives, technology, and security professionals at all seniority levels directly responsible for software at enterprise companies. The ...
Google has announced the launch of a new initiative called OSS Rebuild to bolster the security of the open-source package ...
North Korea's infamous Lazarus Group hackers are increasing their weaponisation of open-source software, according to a new ...
A new report out today from software supply chain security firm Sonatype Inc. details how the infamous North Korea-backed ...
Why Businesses Struggle With Their Open-Source Supply Chain OSS can be amazing, but software is only as good as its supply chain security. Getting this right can be a complex puzzle, and it’s ...
A record-breaking year for open source consumption as downloads hit 6.6 trillion, amplifying software supply chain riskFulton, Md., Oct. 10, 2024 (GLOBE NEWSWIRE) -- Sonatype®, the end-to-end ...
In 2024, attackers increasingly used open-source software (OSS) repositories to launch supply chain attacks aimed at cryptocurrency data and assets. Their goal was to trick developers into ...