IT Brief New Zealand - Technology news for CIOs & IT decision-makers

AppSec stories - Page 2

Flux result 4fd4ec51 3ee5 4138 9d86 cf53ec65c7ba

F5 & Forcepoint come together to secure enterprise AI

This month
#
data protection
#
hybrid cloud
#
digital transformation
F5 and Forcepoint have teamed up to link data discovery with runtime controls, aiming to curb AI risks as enterprises move systems into production.
John maddison  chief marketing officer at f5

F5 & Forcepoint join forces on enterprise AI security

Last month
#
data protection
#
digital transformation
#
application security
F5 and Forcepoint team up to give enterprises continuous AI security, linking data discovery with runtime controls to reduce risk in production systems.
Secure enterprise control room ai agent nodes toolchain anomaly cloud

Miggo expands runtime defence for AI agents & tools

Last month
#
firewalls
#
network security
#
cloud security
Miggo extends its runtime security platform to map, monitor and rein in AI agents and MCP toolchains as live behaviour becomes attack focus.
Flux result 0b725e6f 488f 44c4 b57e 5c23a2bc516f

NetRise launches Provenance to trace open source risk

Last month
#
devops
#
iot security
#
iot
NetRise unveils Provenance, a tool to trace open source maintainers and stop risky dependencies before they spread through software.
Cybersecurity analyst ai red teaming prompt injection shield branching

Novee launches AI red teaming tool for LLM app risks

Last month
#
devops
#
cloud security
#
application security
Novee unveils an autonomous AI red teaming tool to probe LLM apps for prompt injection, jailbreaks and other emerging security flaws.
Software engineer reviewing branching dependency tree upgrade success green

Sonatype finds live data beats larger AI models on upgrades

Last month
#
devops
#
application security
#
supply chain
Sonatype says smaller AI tied to live software data can outsecure larger models on dependency upgrades, slashing risk and cost.
Flux result b75b6c52 41bc 48f4 a421 ca157511836e

NSS Labs backs AI guardrail tests amid security fears

Last month
#
firewalls
#
devops
#
digital transformation
NSS Labs warns many enterprise AI guardrails fail basic security tests, urging independent, real-world validation of protections.
Alison

Cloudsmith adds controls to block risky dependencies

Last month
#
devops
#
cloud security
#
application security
Cloudsmith adds automated controls to quarantine and block risky dependencies, tightening enforcement on software supply chain security.
Editorial storm cloud cloud security failure server racks padlocks warnings

Red Hat finds cloud security incidents hit 97% of firms

Last month
#
data protection
#
hybrid cloud
#
cloud security
Red Hat reports 97% of organisations suffered cloud-native security incidents last year, exposing basic failings in configuration and governance.
Editorial software dev code review open source supply chain shield repair vulnerable deps

Veracode launches Fix for open-source vulnerability repair

Last month
#
devops
#
application security
#
devsecops
Veracode unveils an AI-driven tool that automatically fixes open-source vulnerabilities, tackling mounting security debt in software supply chains.
Img 20260304 wa0003

UiPath Accelerates AI in Software Development and Testing

Last month
#
devops
#
digital transformation
#
application security
UiPath is pushing AI deeper into software testing, promising autonomous agents that transform quality assurance and developers' roles.
Editorial compromised software supply chain key token leak dark

Trivy GitHub breach exposes CI/CD supply chain risk

Last month
#
devops
#
cloud security
#
application security
Aqua Security's Trivy GitHub Action was hijacked to ship infostealer code via CI/CD pipelines, exposing secrets across downstream users.
Ai assisted code review inclusive dev team modern office

GitLab widens AI access & sets flat review pricing

Last month
#
devops
#
application security
#
devsecops
GitLab opens agentic AI to free-tier users, sets USD $0.25 flat fee for automated code reviews and expands security false-positive filtering.
Editorial cybersecurity analyst pen test results attack path cloud diagrams

Cobalt adds AI features to boost continuous pentests

Last month
#
devops
#
cloud security
#
application security
Cobalt weaves AI into its pentesting platform, automating recon and triage while keeping human experts on complex attack paths.
Cybersecurity analyst dashboard network risks two click workflow

NetSPI unveils AI-led workflow redesign for pentesting

Last month
#
devops
#
cloud security
#
application security
NetSPI unveils an AI-powered overhaul of its pentesting platform UX, promising two-click workflows and sharper risk-based remediation focus.
Isometric cloud security alerts to calm monitoring dashboard network

Miggo & Grafana link runtime security with telemetry

Last month
#
devops
#
cloud security
#
application security
Miggo and Grafana link runtime security to Grafana Cloud telemetry, promising major cuts to critical vulnerability noise for joint users.
Developer workspace secure containers kubernetes cloud diagrams

Chainguard unveils free starter pack for secure images

Last month
#
virtualisation
#
devops
#
cloud security
Chainguard launches a free Catalog Starter pack, giving developers five production-grade secure container images from its vast library.
Sleek enterprise datacenter servers shielded secure blue glow

Lineaje unveils UnifAI to secure enterprise agentic AI

Last month
#
data protection
#
digital transformation
#
application security
Lineaje launches UnifAI, a security and governance layer to centralise control, discovery and policy for enterprise agentic AI deployments.
Email attachment20260319 397718 mhgso7

HackerOne unveils live agentic AI prompt injection tests

Last month
#
data protection
#
devops
#
cloud security
HackerOne launches live Agentic Prompt Injection Testing to expose real-world AI exploit paths as prompt injection threats surge 540%.
Isometric secure software pipeline ai agents shielded supply chain

JFrog unveils MCP registry to secure AI coding agents

Last month
#
devops
#
digital transformation
#
application security
JFrog launches an MCP registry to centralise and secure AI coding agents, extending software supply chain controls to agent workflows.