CFOtech US - Technology news for CFOs & financial decision-makers

AppSec stories - Page 3

Developer workstation ai security shields protecting supply chain

Checkmarx revamps AI-era app security with new agents

Last month
#
devops
#
application security
#
devsecops
Checkmarx overhauls its One platform with AI-native security agents to guard fast-moving, agentic development and AI software supply chains.
Secure datacenter with shielded servers and vetted oss packages flow

ActiveState unveils Curated Catalog for safer code

Last month
#
application security
#
devsecops
#
supply chain
ActiveState launches Curated Catalog, a private, pre-vetted open source repository to tighten software supply chain security for enterprises.
Night data center control room cyber attack alerts cinematic

Spoofed AI agents flood websites, straining defences

Last month
#
digital transformation
#
application security
#
physical security
Spoofed AI agents are hammering major websites with billions of hidden requests, driving up costs and outpacing current security defences.
Embedded circuit board to document stack symbolizing software bom

Manifest tool boosts SBOMs for critical C & C++ code

Last month
#
application security
#
cartech
#
devsecops
Manifest unveils SBOM generator for unmanaged C and C++ code, tackling critical supply chain blind spots in embedded and safety systems.
Dino dimarino

Tenable appoints Dino DiMarino to drive AI security growth

Last month
#
network infrastructure
#
digital transformation
#
cloud security
Tenable appoints veteran cybersecurity sales leader Dino DiMarino as chief revenue officer to drive global growth in exposure and AI risk.
Enterprise datacenter sql server patch technicians security shield

Microsoft patches major SQL Server flaw in March update

Last month
#
firewalls
#
network security
#
mfa
Microsoft's March Patch Tuesday fixes 77 flaws, including a severe SQL Server bug that could grant attackers sysadmin rights remotely.
Global socc night ai brain cloud alerts multinational team

HackerOne warns of widening AI security & testing gap

Last month
#
devops
#
digital transformation
#
cloud security
HackerOne warns AI rollouts are outpacing security, with 89% of organisations lacking full testing and incidents driving up costs.
Abby kearns

ActiveState names Abby Kearns as new Chief Executive

Last month
#
digital transformation
#
application security
#
it automation
ActiveState appoints seasoned open source leader Abby Kearns as Chief Executive, sharpening its focus on managed open source security.
Cinematic sf socat night ai dashboards it team analyzing agents

Vijil launches platform to harden enterprise AI agents

Last month
#
saas
#
devops
#
hyperscale
Vijil has unveiled a platform to test, monitor and adapt enterprise AI agents, aiming to harden them against attacks, failure and drift.
Cybersecurity analyst with ai assistants dark office vuln detection

Terra Portal blends AI agents with human-led pentesting

Last month
#
firewalls
#
devops
#
network security
Terra Security unveils Terra Portal, a desktop hub fusing AI agents with human pentesters to speed vulnerability fixes from months to hours.
8v3a0686 websize 1 cropped

Terra Security names Anna Sarnek VP of business strategy

Last month
#
firewalls
#
network infrastructure
#
devops
Terra Security appoints Anna Sarnek VP of business strategy to steer partner-led growth and define its AI-native offensive security push.
Software engineer ai coding security shields padlock network diagram

Endor Labs launches AURI to secure AI-driven coding

Last month
#
digital transformation
#
application security
#
devsecops
Endor Labs unveils AURI, a security intelligence platform embedding reachability-led checks into AI coding assistants and CI/CD pipelines.
Modern datacenter cloud with ai security testing shield lock

Terra Security gains first AWS nod for AI threat tests

Last month
#
network infrastructure
#
devops
#
hyperscale
Terra Security becomes first AWS partner validated for Autonomous Security Validation, as AI-driven continuous threat testing gains pace.
Ethical hacker structured pentest multi monitors robot scanner

Survey shows pentesters favour PTaaS over bug bounties

Last month
#
devops
#
application security
#
devsecops
New research from Cobalt finds 98% of surveyed pentesters prefer PTaaS to bug bounties and show almost no faith in AI-only security scanning.
Moody engineer cicd pipelines morphing into shadowy hands vaults

JFrog flags 13 critical CI/CD flaws in GitHub workflows

Last month
#
siem
#
fintech
#
application security
JFrog warns 13 GitHub CI/CD workflow flaws, mostly critical, could let attackers hijack pipelines and steal secrets at scale.
Asian engineer cybersecurity breach red warnings cloud repos

Claude Code flaws expose new risks in AI dev tools

Last month
#
devops
#
cloud security
#
application security
Claude Code flaws found by Check Point could let malicious repos run code and grab API keys before developers confirm a project is trusted.
Cinematic ai code security engineer shielded by glowing sphere

Endor Labs unveils AURI to secure AI-driven coding

Last month
#
devops
#
application security
#
devsecops
Endor Labs has launched AURI, an AI-aware security platform that embeds continuous code checks directly into agent-driven development workflows.
Digital shield enterprise cyber risk cloud network blue teal

LevelBlue & Tenable expand exposure tools for partners

Last month
#
devops
#
digital transformation
#
cloud security
LevelBlue debuts Exposure Management for Partners with Tenable, giving MSSPs and MSPs tiered, unified exposure and risk visibility tools.
Msp security operations center analysts monitoring threat dashboards

LevelBlue & Tenable launch exposure service for MSPs

Last month
#
digital transformation
#
cloud security
#
iot security
LevelBlue and Tenable have teamed up to launch a tiered exposure management service giving MSPs continuous, risk-based visibility.
Split boardroom execs vs stressed engineers ai data leak scene

Manifest flags AI readiness gap between execs & AppSec

Last month
#
digital transformation
#
cloud security
#
application security
Manifest research reveals executives overestimate AI security readiness, as AppSec teams warn of unmanaged tools, blind spots and rising risk.