Jul 08, 2025/6 min read Understanding Section 524B of the FD&C Act By Mike McGuire Tags: SCA , Threat & Risk Assessment , Secure the Software Supply Chain
Jun 30, 2025/6 min read Beyond detection: Understanding vulnerability reachability in SCA By Mike McGuire Tags: SCA , Secure the Software Supply Chain
Jun 09, 2025/3 min read Transitive dependencies are exponentially increasing open source software risk By Mike McGuire Tags: AppSec Risk Management, Black Duck SCA
Jun 03, 2025/3 min read Three steps to ensuring the reliability and security of your C++ projects By Corey Hamilton Tags: SCA , Build Security into DevOps , SAST , DevSecOps
May 08, 2025/3 min read How to secure AI-generated code with DevSecOps best practices By Steven Zimmerman Tags: Artificial Intelligence , Build Security into DevOps , DevSecOps
Mar 12, 2025/4 min read The 2025 OSSRA report uncovers answers to common open source questions By Fred Bals Tags: SCA , Secure the Software Supply Chain
Feb 04, 2025/2 min read Understanding the DeepSeek model license: Balancing openness and responsibility By Rich Kosinski Tags: SCA , M&A , Secure the Software Supply Chain , OSS License Compliance
Feb 03, 2025/4 min read Analyze AI-Generated Code with the Black Duck Snippet API By Mike McGuire Tags: SCA , Secure the Software Supply Chain
Oct 24, 2024/3 min read Understanding generative AI risks in software development By Phil Odence Tags: SCA , M&A , Secure the Software Supply Chain , OSS License Compliance
Oct 17, 2024/4 min read Addressing cloud-native app development challenges with scalable security tools By Charlotte Freeman Tags: DAST, SCA, Continuous Dynamic (DAST), SAST, DevSecOps, Black Duck SCA, Coverity SAST