Fixing all vulnerabilities is unrealistic, you need to zero in on what matters

As technology constantly advances, software development teams are bombarded with security alerts at an increasing rate. This has made it nearly impossible to remediate every vulnerability, rendering the ability to properly prioritize remediation all th… Continue reading Fixing all vulnerabilities is unrealistic, you need to zero in on what matters

DevOps Chats: Open Source Security, With WhiteSource

WhiteSource, one of the leaders in the software composition analysis space, recently released its annual report, “The State of Open Source Security Vulnerabilities.” It is chock full of good data and findings on the current state of open s… Continue reading DevOps Chats: Open Source Security, With WhiteSource

Number of open source vulnerabilities surged in 2019

The number of disclosed open source software vulnerabilities in 2019 reached over 6000, up from just over 4,000 in 2018, a new WhiteSource report says. “This can be attributed to the rise in awareness to open source security following the widespr… Continue reading Number of open source vulnerabilities surged in 2019

WhiteSource Extends its Patented Technology to Python, JavaScript, and C#, Cuts Open Source Security Alerts by up to 85%

Developers using Java, Python, JavaScript and C# can now dramatically reduce the number of open source security alerts they must address TEL AVIV – February 12, 2020 – WhiteSource, the leader in open source security and license compliance m… Continue reading WhiteSource Extends its Patented Technology to Python, JavaScript, and C#, Cuts Open Source Security Alerts by up to 85%

Denim Group and WhiteSource to help customers manage their open source vulnerabilities

Denim Group, the leading independent application security firm, announced an integration with WhiteSource, the leader in open source security and license compliance management. This integration will allow WhiteSource customers to view and manage their … Continue reading Denim Group and WhiteSource to help customers manage their open source vulnerabilities

GitHub introduces Dependabot-powered automated security fixes

GitHub, the largest code-hosting site in the world, has announced many new features and changes at the 2019 GitHub Satellite conference that took place last week in Berlin. The feature that drew the most attention is GitHub Sponsors, which will allow u… Continue reading GitHub introduces Dependabot-powered automated security fixes

DevOps Chat: Forrester Wave Leaders Discuss SCA

Forrester recently released its “Forrester Wave Software Composition Analysis SCA for Q2 2019,” highlighting the leaders in this fast-growing category. We had a chance to sit down with three of the companies highlighted in the Wave report … Continue reading DevOps Chat: Forrester Wave Leaders Discuss SCA

DevOps Chat: Container Security with WhiteSource Software’s David Habusha

WhiteSource has become a force in the security of open source components in your applications. One would think that it would follow that securing these open source components inside of a container would flow from this. But with containers, all is not … Continue reading DevOps Chat: Container Security with WhiteSource Software’s David Habusha