Software Supply Chain Security
Torvalds Offers Guidance as AI Bug Reports Clog Up Linux Security Workflow
Linux kernel maintainers are confronting a new operational problem tied to the rapid adoption of AI-assisted coding tools, as too many people are reporting the same vulnerabilities at the same time. Linus ...
Security Boulevard
Leading organizations address growing regulatory pressures with automation
Chai Bhat | | "AppSec Risk Management", "Black Duck SCA", "Build Security into DevOps", "Coverity SAST", "Secure the Software Supply Chain", "Security Consulting and Services", Compliance, DAST, polaris, SAST, SCA
Discover how top organizations use automation to meet growing regulatory pressures like EU CRA and FDA requirements. BSIMM16 data shows 30% increase in automated SBOM generation. Download the report.The post Leading organizations ...
Coding Agents Widen Your Supply Chain Attack SurfaceÂ
Saqib Jan | | 3 Pillars of agentic defense, Agentic supply chain security, AI coding agents risk, AI dependency hallucination, AI-driven sandboxing, Albert Ziegler XBOW, autonomous penetration testing, Chameleon of the Dungeon, egress filtering DevOps, GenAI security governance, hash pinning AI, Itamar Friedman Qodo, machine-speed threat detection, maker-checker AI validation, privileged AI agents, prompt injection DevOps, software life cycle automation security, Srikumar Ramanathan Mphasis, tool-calling attack surface, toolchain poisoning
Software supply chain attacks are evolving. Beyond compromised packages, discover the 2026 "Agentic" threat surface—where prompt injection, toolchain poisoning, and hallucinated dependencies bypass traditional DevSecOps. Learn how the 3 Pillars and AI-driven ...
Security Boulevard
The Silent Supply Chain: Why Your Fourth-Party Vendor is Your Biggest BlindspotÂ
Vanessa Jankowski | | AI‑driven risk, BlackSuit ransomware, cascade risk, CDK Global, continuous monitoring, critical supplier, dynamic prioritization, fourth‑party risk, Incident Response, questionnaires are broken, Security Automation, security ratings, supply chain security, supply‑chain resilience, third‑party mapping, third‑party risk, vendor dependency, Vendor Risk Management, vendor supply chain visibility., vulnerability intelligence
The CDK Global breach exposed how niche vendors can cripple entire industries. Move beyond questionnaires to continuous, AI-driven monitoring of third-, fourth- and nth‑party dependencies, dynamic prioritization, and threat‑informed supply‑chain risk management ...
Security Boulevard
AI coding security gap: 76% of orgs expose software supply chain to risk
Corey Hamilton | | "AI & Machine Learning", "Black Duck SCA", "Continuous Dynamic (DAST)", "Coverity SAST", "Secure the Software Supply Chain", Artificial Intelligence, Awareness, polaris
95% of organizations use AI for development, but only 24% properly evaluate AI-generated code for security, IP, and quality risks. Learn how to protect your software supply chain.The post AI coding security ...
What the DoD’s Missteps Teach Us About Cybersecurity Fundamentals for 2026Â
Shmulik Yehezkel | | 2025 cyber incidents, Attack Surface Management, CISOs and CSOs, cloud contractor risk, continuous assurance, cross-functional security, cybersecurity fundamentals, Cybersecurity maturity, digital escorts, DoD cybersecurity, enterprise resilience, foundational security, governance failures, PASM, physical-digital security, Proximity Attack Surface Management, proximity risk, supply chain security, Third Party Risk, Unit 8200, vendor governance, zero trust
As organizations enter 2026, the real threat isn’t novel exploits but blind spots in supply chain security, proximity attack surfaces, and cross-functional accountability. This piece explains why fundamentals must become continuous, operational ...
Security Boulevard
HYCU Tackles SaaS Data Protection With New R-Shield Solution
HYCU introduces R-Shield to provide comprehensive cyber resilience across SaaS, cloud, and on-premises environments as organizations face growing supply chain attacks ...
Security Boulevard
Conducting Security Audits in Supply Chain Management
Cyberattacks against supply chains have risen recently, but many risks go unnoticed and unaddressed. As cybercrime grows, supply chain professionals must embrace regular security audits. ...
Security Boulevard
Securing the Software Supply Chain: Checkmarx One Expands its Offerings
The software supply chain is under siege. Threat actors increasingly exploit weaknesses in code repositories, dependencies and mismanaged secrets to infiltrate and disrupt software development processes. In response, organizations are turning to ...
Security Boulevard
Microsoft Fixes Four 0-Days — One Exploited for SIX YEARS
Richi Jennings | | CVE-2024-38014, CVE-2024-38217, CVE-2024-38226, CVE-2024-43491, KBÂ5043083, KB5043936, Mark of the Web, Microsoft, Microsoft Patch Tuesday September 2024, Microsoft Windows, Microsoft Windows Zero Day, Patch Tuesday, SB Blogwatch, Windows, Windows Update
Week B: Bugs begone! This month Redmond fixes 79 security flaws in Windows and other products ...
Security Boulevard

