Composition Analysis stories
Developers can now scan C code earlier in the process, as Endor Labs says its buildless AI SAST found 96 of 102 known bugs in tests.
Enterprise software teams are facing far more vulnerabilities as AI-assisted development multiplies application output and speeds exposure growth.
Hong Kong saw a record 15,877 cyber incidents in 2025 as AI speeds attacks and shortens the window to exploit software flaws.
Malicious packages are now spreading faster across code repositories, with Google saying open source ecosystems face the sharpest rise in risk.
The hybrid system aims to help security teams spot serious flaws in AI-generated code faster, as production code becomes harder to review.
Greater exposure to remote attacks is worrying carmakers, as high-severity automotive cybersecurity flaws jumped to 161 in the second quarter.
The round will fund hiring, product work and overseas growth as investors back tools to counter AI-driven software supply chain risks.
Security teams could cut hours from patching work as open-weight Antares models narrow flaws to the relevant code segment.
The coalition has now processed more than 40,000 findings, underscoring how quickly open source flaws can spread across corporate systems.
The tool aims to help developers cut vulnerability backlogs and reach no exploitable flaws within 90 days as AI coding expands risk.
Security and compliance teams can now patch buildpack-based containers from a single hardened base, rather than chasing Dockerfiles across repositories.
Developers face earlier checks on risky open-source dependencies as AI coding tools speed up software assembly and raise supply chain concerns.
Malicious package advisories jumped from 21 in 2023 to 1,576 in 2025, as attackers increasingly target developers before code reaches production.
Enterprise buyers are treating software supply chain security as a standalone priority as Gartner creates a dedicated Magic Quadrant for the category.
The recognition underlines rising demand for tools that secure software builds before attackers can exploit open source dependencies and pipelines.
Rising use of AI coding tools is widening software supply-chain risks for businesses across the Middle East, Türkiye and Africa.
Malicious packages can now be held back before reaching developers, as Cloudsmith expands repository controls amid rising supply chain attacks.
AWS customers can now buy Chainguard Libraries through Security Hub Extended, as open-source dependency attacks push firms to tighten supply chain checks.
Open source package attacks can now be blocked earlier, as NetRise brings trust checks into editors, command lines and AI coding tools.
The funding could speed the rollout of a compact cancer imaging and radiotherapy platform, while opening industrial uses in mining and manufacturing.