Data is the new gold. It is a resource that creates and destroys power. With it, individuals, companies, and governments can sway public opinion, gain insight into the competition, and develop the most strategic plans. So it is for this reason that data breac...
One of the obstacles any static analysis tool encounters is the ease with which developers can manage defects that are not pertinent to their development. Often, these “defects” simply do not apply. The most well-known case of such defects is false positives....
Software quality management solutions function with automated tests that use static analysis processes to generate software quality metrics. With the ability to parse code in almost every commonly used programming language, static analysis...
We believe that data is the phenomenon of our time. It is the world’s new natural resource. It is the new basis of competitive advantage, and it is transforming every profession and industry. If all of this is true—even inevitable—then cyber crime, by definit...
Application security people, like anyone else, can make mistakes. Hasty actions and bad assumptions lead to a less complete discovery of flaws — or to outright disaster. In the worst case, A clumsy attempt to discover security problems can itself cause a brea...
Returning from Saturday’s LechazoConf 2017, a conference about failures (and successes) of entrepreneurs/startups in Castilla-Leon (and Spain). I enjoyed the conference! Organization was awesome, content was nice, and the lechazo was great (I am from Traspine...
The conversation surrounding application security could go a thousand different directions, technology is a massive landscape after all. For the purposes of this discourse, our focus will be on three particular arms of appsec. Perhaps we could call them the G...
The GDPR is Promoting a Culture Change About Data Privacy The importance and need for security have never been greater, particularly with personal and data security. Among all the great benefits of technology—the internet and the resulting global co...
The concept of open source software has shifted considerably from what some enterprises once thought about it. Any negative thoughts then were all misconceptions or not understanding what open source really is. Considering open source software is often free o...
The National Institute of Standards and Technology (NIST) is a non-regulatory agency of the U.S. Department of Commerce that, among other things, maintains physical science laboratories and produces guidance for assessing compliance with a wide range of stand...
Open-source licensing isn’t as complicated as license agreements go. Some people find it confusing, and businesses must pay close attention to how the licenses work. Making a mistake in one direction can result in legal action. Erring in the other direction c...
Adding security to DevOps processes will empower developers with state-of-the-art insights and analysis HOUSTON – Oct. 5, 2018 – Idera, Inc., parent company of global B2B software productivity brands, today announced the acquisition of&nbs...