Source Code Management (SCM) stories - Page 2
NetRise launches Provenance to trace open source risk
Last month
#
devops
#
iot security
#
iot
NetRise unveils Provenance, a tool to trace open source maintainers and stop risky dependencies before they spread through software.
'Human Risk' takes centre stage - Mimecast CEO
Last month
#
data protection
#
endpoint protection
#
phishing
Mimecast chief warns human risk is now cybersecurity's 'eighth layer' as malicious insiders overtake negligence in Australian attacks.
Veracode launches Fix for open-source vulnerability repair
Last month
#
devops
#
application security
#
devsecops
Veracode unveils an AI-driven tool that automatically fixes open-source vulnerabilities, tackling mounting security debt in software supply chains.
Trivy GitHub breach exposes CI/CD supply chain risk
Last month
#
devops
#
cloud security
#
application security
Aqua Security's Trivy GitHub Action was hijacked to ship infostealer code via CI/CD pipelines, exposing secrets across downstream users.
GitLab widens AI access & sets flat review pricing
Last month
#
devops
#
application security
#
devsecops
GitLab opens agentic AI to free-tier users, sets USD $0.25 flat fee for automated code reviews and expands security false-positive filtering.
BloodHound expands identity attack path mapping reach
Last month
#
data protection
#
encryption
#
pam
SpecterOps broadens BloodHound Enterprise to map identity attack paths across Okta, GitHub and Jamf-managed Macs in hybrid environments.
Morphisec adds AI defence to anti-ransomware suite
Last month
#
dr
#
ransomware
#
endpoint protection
Morphisec unveils Adaptive AI Defence to spot shadow AI, block compromised agents and thwart AI-driven ransomware in real time.
Entro launches AI agent governance tool for enterprises
Last month
#
data protection
#
digital transformation
#
cloud security
Entro launches AGA to map, monitor and control AI agents in enterprises, tackling shadow AI and non-human identity risks at scale.
Cobalt unveils service to manage enterprise pentesting
Last month
#
devops
#
cloud security
#
application security
Cobalt launches Security Program Manager service to run enterprise pentesting, align tests with business goals and speed up remediation.
North Korean IT workers infiltrate Western remote jobs
Last month
#
hcm
#
physical security
#
supply chain
North Korean IT workers using Western collaborators and fake identities are infiltrating remote jobs to funnel foreign salaries home.
ThoughtSpot unveils Spotter AI agents tailored by sector
Last month
#
saas
#
data analytics
#
digital transformation
ThoughtSpot rolls out Spotter for Industries, AI analytics agents tuned to sector rules to close the “context gap” in enterprise decisions.
Secure Code Warrior unveils AI code governance tool
Last month
#
application security
#
devsecops
#
supply chain
Secure Code Warrior launches SCW Trust Agent: AI, giving security teams commit-level visibility and control over AI-influenced code.
AI surge drives record secrets sprawl across GitHub
Last month
#
cloud security
#
application security
#
socs
AI-fuelled coding drives record 29 million hardcoded secrets on GitHub in 2025, with leaks from AI tools and services surging sharply.
1Password debuts Unified Access to secure AI agents
Last month
#
data protection
#
cloud security
#
mdm
1Password unveils Unified Access to secure AI agents and machine credentials, promising endpoint-to-agent visibility for security teams.
GitHub backs Alpha-Omega with fresh open source funds
Last month
#
siem
#
hyperscale
#
application security
GitHub joins tech giants in a USD $12.5 million Alpha-Omega push, boosting AI-powered defences for critical open source software.
Linux Foundation secures USD $12.5m for AI security
Last month
#
hyperscale
#
cloud security
#
supply chain
Linux Foundation wins USD $12.5m from tech giants to bolster AI-era open source security and ease pressure on overstretched maintainers.
VAST Data unveils Foundation Stacks for NVIDIA AI OS
Last month
#
hybrid cloud
#
aiops
#
open source
VAST Data unveils Foundation Stacks, turning NVIDIA AI Blueprints into production-ready pipelines on its AI Operating System.
VAST unveils Foundation Stacks to speed AI to production
Last month
#
hybrid cloud
#
digital transformation
#
hyperscale
VAST Data unveils Foundation Stacks, open-source pipelines turning NVIDIA AI Blueprints into production-ready workflows on its AI OS.
PagerDuty links Anthropic, Cursor & LangChain for AI ops
Last month
#
devops
#
apm
#
aiops
PagerDuty links Anthropic, Cursor and LangChain to expand its AI ops ecosystem, boosting incident response across modern software stacks.
GenAI drives patient data policy breaches in healthcare
Last month
#
malware
#
data protection
#
cloud security
GenAI use in healthcare is fuelling patient data policy breaches, with regulated records making up 89% of AI-linked violations, research shows.