AppSec stories - Page 2
GitLab widens AI access & sets flat review pricing
Last month
#
devops
#
application security
#
devsecops
GitLab opens agentic AI to free-tier users, sets USD $0.25 flat fee for automated code reviews and expands security false-positive filtering.
Cobalt adds AI features to boost continuous pentests
Last month
#
devops
#
cloud security
#
application security
Cobalt weaves AI into its pentesting platform, automating recon and triage while keeping human experts on complex attack paths.
NetSPI unveils AI-led workflow redesign for pentesting
Last month
#
devops
#
cloud security
#
application security
NetSPI unveils an AI-powered overhaul of its pentesting platform UX, promising two-click workflows and sharper risk-based remediation focus.
Miggo & Grafana link runtime security with telemetry
Last month
#
devops
#
cloud security
#
application security
Miggo and Grafana link runtime security to Grafana Cloud telemetry, promising major cuts to critical vulnerability noise for joint users.
Chainguard unveils free starter pack for secure images
Last month
#
virtualisation
#
devops
#
cloud security
Chainguard launches a free Catalog Starter pack, giving developers five production-grade secure container images from its vast library.
Lineaje unveils UnifAI to secure enterprise agentic AI
Last month
#
data protection
#
digital transformation
#
application security
Lineaje launches UnifAI, a security and governance layer to centralise control, discovery and policy for enterprise agentic AI deployments.
HackerOne unveils live agentic AI prompt injection tests
Last month
#
data protection
#
devops
#
cloud security
HackerOne launches live Agentic Prompt Injection Testing to expose real-world AI exploit paths as prompt injection threats surge 540%.
JFrog unveils MCP registry to secure AI coding agents
Last month
#
devops
#
digital transformation
#
application security
JFrog launches an MCP registry to centralise and secure AI coding agents, extending software supply chain controls to agent workflows.
Secure Code Warrior unveils AI code governance tool
Last month
#
application security
#
devsecops
#
supply chain
Secure Code Warrior launches SCW Trust Agent: AI, giving security teams commit-level visibility and control over AI-influenced code.
AI surge drives record secrets sprawl across GitHub
Last month
#
cloud security
#
application security
#
socs
AI-fuelled coding drives record 29 million hardcoded secrets on GitHub in 2025, with leaks from AI tools and services surging sharply.
Harness unveils AI Security & coding tools for DevSecOps
Last month
#
devops
#
application security
#
advanced persistent threat protection
Harness has launched AI Security and Secure AI Coding tools to spot and block vulnerabilities in AI-powered apps and AI-generated code.
1Password debuts Unified Access to secure AI agents
Last month
#
data protection
#
cloud security
#
mdm
1Password unveils Unified Access to secure AI agents and machine credentials, promising endpoint-to-agent visibility for security teams.
AI agent from Tenzai ranks in top 1% of global CTFs
Last month
#
devops
#
application security
#
devsecops
Tenzai's autonomous AI agent has placed in the top 1% of major global hacking CTF contests, beating more than 125,000 human rivals.
Secure Code Warrior unveils AI tool to govern code risk
Last month
#
data protection
#
application security
#
devsecops
Secure Code Warrior launches SCW Trust Agent: AI to trace, rate and police AI-generated code risks directly at developers' commit point.
Checkmarx revamps AI-era app security with new agents
Last month
#
devops
#
application security
#
devsecops
Checkmarx overhauls its One platform with AI-native security agents to guard fast-moving, agentic development and AI software supply chains.
ActiveState unveils Curated Catalog for safer code
Last month
#
application security
#
devsecops
#
supply chain
ActiveState launches Curated Catalog, a private, pre-vetted open source repository to tighten software supply chain security for enterprises.
Spoofed AI agents flood websites, straining defences
Last month
#
digital transformation
#
application security
#
physical security
Spoofed AI agents are hammering major websites with billions of hidden requests, driving up costs and outpacing current security defences.
Manifest tool boosts SBOMs for critical C & C++ code
Last month
#
application security
#
cartech
#
devsecops
Manifest unveils SBOM generator for unmanaged C and C++ code, tackling critical supply chain blind spots in embedded and safety systems.
Tenable appoints Dino DiMarino to drive AI security growth
Last month
#
network infrastructure
#
digital transformation
#
cloud security
Tenable appoints veteran cybersecurity sales leader Dino DiMarino as chief revenue officer to drive global growth in exposure and AI risk.
Microsoft patches major SQL Server flaw in March update
Last month
#
firewalls
#
network security
#
mfa
Microsoft's March Patch Tuesday fixes 77 flaws, including a severe SQL Server bug that could grant attackers sysadmin rights remotely.