Tag: vulnerability scanning
![Legit Security syslogs HashiCorp Checkmarx Synopsys Cycode CodeLogic scanning Contrast Security secrets scan dynamic](https://devops.com/wp-content/uploads/2020/11/scanning.jpg)
Checkmarx Brings Generative AI to SAST and IaC Security Tools
Under an early access program, Checkmarx today made available query builder and guided automation tools that take advantage of OpenAI's generative artificial intelligence (AI) technologies to make it simpler for developers to ...
![Mobb antipattern DevOps](https://devops.com/wp-content/uploads/2020/11/antipattern.jpg)
Mobb Launches Community Edition of Automated Remediation Tool
Mobb today made available a free community edition of a namesake tool that creates fixes to open source vulnerabilities. The fixes are based on the results of code scanning by a static ...
![New Relic Grafana Labs observability New Relic](https://devops.com/wp-content/uploads/2020/08/Fidelity-Drives-Software-Delivery-Performance.jpg)
New Relic Bolsters Observability Platform
New Relic has updated its observability platform to include the ability to better detect and track errors in addition to monitoring vulnerabilities. At the same time, an instance of the New Relic ...
![Sonar Rezilion DevOps radar](https://devops.com/wp-content/uploads/2022/02/green-radar-screen-with-targets-picture-id951548330.jpg)
Rezilion Updates Open Source MI-X Tool to Better Secure App Development
Rezilion has updated its open source MI-X vulnerability discovery tool to include mitigation and remediation recommendations. In addition, the tool can now produce machine-readable output in either a JSON or CSV format ...
![privacy risk Sigstore GraphQL security Checkmarx Sonatype WhiteSource the secure software development](https://devops.com/wp-content/uploads/2020/05/The-Secure-Software-Development-Life-Cycle.jpg)
WhiteSource Tool Automatically Fixes Code Vulnerabilities
WhiteSource today announced that it has developed the first-ever tool that automatically remediates vulnerabilities discovered in custom code. Rami Sass, WhiteSource CEO, said WhiteSource Cure surfaces recommendations for fixing security vulnerabilities in ...
![continuous testing](https://devops.com/wp-content/uploads/2020/08/components.jpg)
Using Incident Response for Continuous Testing
Incident response tools offer the ability for organizations to not only implement continuous testing but to also shorten the feedback loop from continuous testing back into planning and development At this point, ...
![software, cloud, security engineers](https://devops.com/wp-content/uploads/2020/02/DEVSECOPSPT2.1.jpg)
Tenable Allies With Datadog to Drive DevSecOps
Datadog and Tenable have teamed up to enable organizations to adopt best DevSecOps processes. Tenable CTO Renaud Deraison said his company is making the cybersecurity data it gathers via its Nessus vulnerability ...
![Qualys](https://devops.com/wp-content/uploads/2019/12/Qualys.jpg)
DevOps Chats: 1-Click Vulnerability Scanning on GCP, With Qualys
Sometimes the best way to accomplish something is to choose a path requiring the least friction, or amount of change. Qualys customers now have that path available to them in bring vulnerability ...
![DevSecOps](https://devops.com/wp-content/uploads/2019/11/DevSecOps.jpg)
Survey Surfaces Uneven Approaches to DevSecOps
A ZeroNorth survey shows implementing DevSecOps is rife with questions for many organizations, with no clear answers There’s general agreement that digital business transformation initiatives are driving an overall acceleration in the ...
![Black Duck, HPE Partner to Protect Open Source](https://devops.com/wp-content/uploads/2016/07/HPE.jpg)
Black Duck, HPE Partner to Protect Open Source
Open-source software has a number of significant benefits. For starters, it’s both free, which is hard to beat, and open, which means developers can customize or modify it to fit their needs ...