Chainguard's new Athena coalition uses AI to fix open-source flaws - before attackers exploit them ...
Lightwell is a huge effort to safeguard open-source software. IBM and Red Hat are investing in this massive security initiative. We don't yet know how this subscription-based service will work. AI is ...
Hannah Dacayanan of UnitedLex discusses ways in which automated software composition analysis tools identify open source ...
GitHub is just the latest victim of TeamPCP, a gang that has carried out a spree of software supply chain attacks that has impacted hundreds of organizations.