Endor Labs Forks Semgrep to Opengrep for Static Code Analysis
Software application development lifecycle (SDLC) analysis company Endor Labs has worked with a cadre of industry partners to now launch Opengrep, a toolset designed to ensure static software...
View ArticleLife After Death, HeroDevs Acquires Xeol To Remediate Unsupported Software...
Xeol tracks end-of-life data in 100,000+ open-source software packages to help identify and remediate unsupported software in one streamlined workflow.
View ArticleOpen Source Software Security Concerns with Spike Curtis
Spike Curtis, principal engineer for Coder Technologies, dives into why open source software security concerns are valid, and why the only viable option is to invest more in securing software supply...
View ArticleBlack Duck Analysis Surfaces Raft of Open Source Software Vulnerabilities in...
An analysis of 965 commercial codebases across 16 industries conducted in 2024 finds 86% of commercial codebases evaluated contained open-source software vulnerabilities, with 81% of them known to be...
View ArticleConsortium Driving OpenStack to Become Arm of The Linux Foundation
The Open Infrastructure Foundation (OpenInfra), which oversees the development of the open source OpenStack cloud computing framework, this week agreed to become an arm of The Linux Foundation as part...
View ArticleSemaphore Goes Open Source: A New Dawn for DevOps Professionals
Semaphore's CI/CD platform goes open source under Apache 2.0, offering DevOps professionals a scalable solution without vendor lock-in. Explore how this changes the game.
View ArticleOpen Source: Pros and Cons to Consider Before Taking the Plunge
You can move from closed source to open source, or from a more restrictive license to a more open license, whenever you like, and you will receive nothing but applause from the tech community.
View ArticleReport: Commerical Software Just as Vulnerable as Open Source
An analysis published by ReversingLabs, a provider of tools for securing application development environments, suggests that commercial software used in software supply chains is just as vulnerable as...
View ArticleLineaje Leverages AI Agents to Secure Open Source Packages and Images
Lineaje has added artificial intelligence (AI) agents that leverage multiple types of code scanners to ensure the open-source software packages and artifacts being used by application developers are...
View ArticleVS Code’s Open Source AI Revolution: A New Chapter for Developers
VS Code open-sources GitHub Copilot Chat extension under the MIT license, democratizing AI-powered coding with transparency and collaboration.
View Article