News

2024 Sonatype Blog
sonatype. com > blog > ai-devsecops-and-the-future-of-application-security-the-gartner-report

AI, Dev Sec Ops, and the Future of Application Security: The Gartner" Report

2+ day, 10+ min ago  (767+ words) Even as organizations recognize the importance of application security, most still struggle to operationalize it at scale. That gap becomes harder to ignore as development accelerates, AI becomes embedded in workflows, and software supply chains grow more complex. At the…...

Sonatype
sonatype. com > blog > how-sonatypes-container-scanning-protects-you-from-zero-days

How Sonatype's Container Scanning Protects You From Zero-Days

1+ week, 1+ day ago  (854+ words) Nexus One Platform Automate open source and AI governance Sonatype Nexus Repository Build fast with a centralized binary repository Sonatype Lifecycle Avoid rework with automated SCA and remediation Sonatype Guide Guide AI coding assistants with open source intelligence Sonatype SBOM…...

Sonatype
sonatype. com > blog > axios-compromise-on-npm-introduces-hidden-malicious-package

Axios Compromise on npm Introduces Hidden Malicious Package

1+ week, 1+ day ago  (860+ words) Nexus One Platform Automate open source and AI governance Sonatype Nexus Repository Build fast with a centralized binary repository Sonatype Lifecycle Avoid rework with automated SCA and remediation Sonatype Guide Guide AI coding assistants with open source intelligence Sonatype SBOM…...

Sonatype
sonatype. com > blog > autonomous-development-and-ai-speed-vs. -security

Autonomous Development and AI: Speed vs. Security

1+ week, 6+ day ago  (967+ words) Nexus One Platform Automate open source and AI governance Sonatype Nexus Repository Build fast with a centralized binary repository Sonatype Lifecycle Avoid rework with automated SCA and remediation Sonatype Guide Guide AI coding assistants with open source intelligence Sonatype SBOM…...

Sonatype
sonatype. com > blog > grounded-intelligence-is-key-to-safe-ai-software-development-at-scale

Grounded Intelligence Is Key to Safe AI Software Development at Scale

2+ week, 1+ day ago  (685+ words) Nexus One Platform Automate open source and AI governance Sonatype Nexus Repository Build fast with a centralized binary repository Sonatype Lifecycle Avoid rework with automated SCA and remediation Sonatype Guide Guide AI coding assistants with open source intelligence Sonatype SBOM…...

Sonatype
sonatype. com > blog > compromised-litellm-pypi-package-delivers-multi-stage-credential-stealer

Compromised litellm Py PI Package Delivers Multi-Stage Credential Stealer

2+ week, 1+ day ago  (850+ words) Nexus One Platform Automate open source and AI governance Sonatype Nexus Repository Build fast with a centralized binary repository Sonatype Lifecycle Avoid rework with automated SCA and remediation Sonatype Guide Guide AI coding assistants with open source intelligence Sonatype SBOM…...

Sonatype
sonatype. com > press-releases > sonatype-research-on-ai-coding-safety

Sonatype Finds AI Grounded in Intelligence Delivers Safer Outcomes

2+ week, 1+ day ago  (300+ words) Nexus One Platform Automate open source and AI governance Sonatype Nexus Repository Build fast with a centralized binary repository Sonatype Lifecycle Avoid rework with automated SCA and remediation Sonatype Guide Guide AI coding assistants with open source intelligence Sonatype SBOM…...

Sonatype
sonatype. com > blog > golden-pull-requests-automating-trusted-remediation-without-breaking-builds

Golden Pull Requests: Automating Trusted Remediation Without Breaking Builds

2+ week, 2+ day ago  (96+ words) Nexus One Platform Automate open source and AI governance Sonatype Nexus Repository Build fast with a centralized binary repository Sonatype Lifecycle Avoid rework with automated SCA and remediation Sonatype Guide Guide AI coding assistants with open source intelligence Sonatype SBOM…...

Sonatype
sonatype. com > blog > what-golden-dome-requires-from-federal-devsecops-teams

What Golden Dome Requires from Federal Dev Sec Ops Teams

3+ week, 17+ hour ago  (623+ words) Nexus One Platform Automate open source and AI governance Sonatype Nexus Repository Build fast with a centralized binary repository Sonatype Lifecycle Avoid rework with automated SCA and remediation Sonatype Guide Guide AI coding assistants with open source intelligence Sonatype SBOM…...

Sonatype
sonatype. com > blog > hijacked-npm-packages-deliver-malware-via-solana-linked-to-glassworm

Hijacked npm Packages Deliver Malware via Solana, Linked to Glassworm

3+ week, 1+ day ago  (826+ words) Nexus One Platform Automate open source and AI governance Sonatype Nexus Repository Build fast with a centralized binary repository Sonatype Lifecycle Avoid rework with automated SCA and remediation Sonatype Guide Guide AI coding assistants with open source intelligence Sonatype SBOM…...