Search Results
Apr 30, 2026, 09:00 ET Chainguard Brings FIPS-Validated, Zero-CVE EKS Add-Ons to AWS Marketplace
industries to deploy and maintain compliant infrastructure more efficiently. With this move, Chainguard is now the only third-party provider delivering zero-known-CVE, FIPS 140-3 validated EKS add-on images in AWS Marketplace, providing a drop-in option for teams that manage their own add-on lifecycle.
More news about: Chainguard
Apr 22, 2026, 16:03 ET IGCS International Announces Strategic Equity Investment by Lacks Enterprises
IGCS International, a CVE-certified SDVOSB and leading provider of mission support and MRO supplies to the U.S. Department of Defense and federal agencies, today announced that
More news about: IGCS International
Apr 21, 2026, 11:00 ET Chainguard and Cursor Partner to Secure Agentic Coding with Trusted Open Source
secure-by-default workflow for AI-generated codeWith this partnership, Cursor gains seamless access to Chainguard's catalog of minimal, zero- to low-CVE
More news about: Chainguard
Apr 20, 2026, 10:48 ET Echo Delivers Hundreds of Secure, FIPS-Validated and STIG-Hardened Images, Now Used by Fortune 500 Companies
As regulatory requirements tighten and CVE discovery in open source software continues to surge, organizations are under increasing pressure to ship secure, compliant software at a rapid speed. Echo's hardened container images are built CVE-free from the ground up and meet the stringent FIPS
More news about: Echo Software Ltd.
Apr 16, 2026, 09:03 ET Seal Security Launches Mythos Readiness Program to Close the "Silent Patch Gap" Between Fix Commits and CVE Advisories
Research shows 94% of CVE fix commits are pushed publicly before the advisory - a median 11-day window in which attackers can now weaponize a bug in minutes using frontier AI agents. The program offers 50 companies outside Anthropic's Glasswing partnership the tooling and implementation support to
More news about: Seal Security
Apr 16, 2026, 03:00 ET OpenSearch Software Foundation Strengthens Enterprise Readiness With New Long-Term Support Versions
on OpenSearch need safety when running open source, something that is more than promises. They need proven operational excellence, fast and reliable CVE response, and continuous security patching they can trust. BigData Boutique has been doing exactly that for years, supporting many enterprise customers
More news about: OpenSearch Software Foundation
Apr 07, 2026, 09:00 ET Pluralsight Launches SecureReady to Help Organizations Build Job-Ready Cybersecurity Teams
every team member is focused on high-impact skills.Faster response to emerging threats: Publishes new courses within 48 hours of a major CVE (Common Vulnerabilities and Exposures) disclosure.Enterprise-grade labs: Features advanced adversary emulation, security sandboxes, and
More news about: Pluralsight
Apr 07, 2026, 09:00 ET Pluralsight Launches SecureReady to Help Organizations Build Job-Ready Cybersecurity Teams
every team member is focused on high-impact skills.Faster response to emerging threats: Publishes new courses within 48 hours of a major CVE (Common Vulnerabilities and Exposures) disclosure.Enterprise-grade labs: Features advanced adversary emulation, security sandboxes, and
More news about: Pluralsight
Apr 03, 2026, 09:05 ET Hopper Launches SUPPLYSHIELD™: A Secure Open Source Supply Layer Delivering Zero-CVE, Malware-Free Components Through a Trusted Registry
multimedia:https://www.prnewswire.com/news-releases/hopper-launches-supplyshield-a-secure-open-source-supply-layer-delivering-zero-cve-malware-free-components-through-a-trusted-registry-302733453.htmlSOURCE
More news about: Hopper
Mar 26, 2026, 08:59 ET Point Wild Releases Free LiteLLM Vulnerability Scanner Within 24 Hours of Supply Chain Attack
Node.js and Python tools to generate a full dependency graph (ensure your dependencies are downloaded as usual prior to scanning).Local CVE Cross-Referencing: Downloads two sources of vulnerabilities directly to your device (GitHub Advisories and Google's OSV) and matches your dependency
More news about: Point Wild
Mar 24, 2026, 08:19 ET SecureIQLab SOCx Platform Adds AI Security Validation Across Four Methodologies
self-reported data with no independent baseline.The threat is accelerating on multiple fronts. In mid-2025, researchers disclosed EchoLeak (CVE-2025-32711), a zero-click prompt injection attack against Microsoft 365 Copilot that exfiltrated enterprise data without user interaction. Weeks later, Russia-linked
More news about: SecureIQLab
Mar 24, 2026, 06:00 ET Minimus Launches Open Source Program, Bringing Hardened Images to Critical Infrastructure Projects
Minimus Image GalleryCustom image creation, Helm charts, and automatically generated SBOMsReal-time exploit intelligence to prioritize CVE remediation and patch effortsImage updates in accordance with Minimus' commercial SLAsApplications open March 24, 2026. Open source
More news about: Minimus
Mar 19, 2026, 12:05 ET CIQ Launches Self-Service Portal so Any Organization Can Access CIQ Products on Their Own Terms
Pro. CIQ's commercial Enterprise Linux subscription, with Long-Term Support, FIPS 140-3 validated cryptography, direct CIQ bug fixes and committed CVE response timelines bundled as standard. Built for enterprises that need a stable, accountable foundation across development, production and regulated
More news about: CIQ
Mar 18, 2026, 08:00 ET RAVEN.IO Raises $20 Million to Prevent Cyberattacks as AI-Generated Exploits Make CVE-Based Security Obsolete
attacks.A New Model: CVE‑less Runtime Behavioral SecurityThe rapid rise of artificial intelligence (AI)‑generated exploits has fundamentally changed the threat landscape. Attackers can now weaponize new vulnerabilities faster than the traditional CVE system can identify,
More news about: Raven
Mar 17, 2026, 06:00 ET Chainguard Introduces the Guardener: Intelligent, Continuous Maintenance for Secure Software Artifacts
AI agent migrates legacy Dockerfiles to low-to-zero CVE images, paving the way for ongoing artifact management across the software development lifecycle KIRKLAND, Wash., March 17, 2026 /PRNewswire/
More news about: Chainguard
Mar 17, 2026, 06:00 ET Introducing Chainguard OS Packages for Secure, Custom Container Image Builds
Chainguard OS Packages enables developers to build exactly what they want using their own tooling and pipelines without taking on the ongoing burden of CVE remediation and package maintenance.
More news about: Chainguard
Mar 17, 2026, 06:00 ET Chainguard Launches Commercial Builds with Industry Leaders, Setting a New Standard for Verifiable, Zero-Vulnerability Software
to commercial ISV software, packaging and maintaining it using hardened, minimal images built with verifiable provenance, FIPS readiness, and defined CVE service-level agreements (SLAs). Through the program, ISVs provide their source code or binaries directly to Chainguard. Chainguard then ingests that
More news about: Chainguard
Mar 17, 2026, 06:00 ET Chainguard Launches the First Unified Repository for Secure-by-Default Open Source Artifacts
secure-by-default experience and even more policy controls to the entire modern software stack. Additional policy types will include:CVE blocking: Prevent artifacts with known critical vulnerabilities from being pulled, reducing exposure before code runs.License enforcement:
More news about: Chainguard
Mar 11, 2026, 09:00 ET Chainguard Introduces FIPS Module with Industry-Leading CVE Commitment
known CVEs: Zero known vulnerabilities and a commitment to always submit module updates for any in-boundary CVE regardless of severity. This is an industry-first commitment to zero CVE-validated FIPS modules, without exception or delays in submissions.Validated on OpenSSL 3.4: Built
More news about: Chainguard
Mar 10, 2026, 08:00 ET SonicWall Named a Leader and Fast Mover in 2026 GigaOm Radar for Enterprise Firewalls
Public CVE Exploits 1,380/1,380 (100%) Private CVE Exploits
More news about: SonicWall
Mar 05, 2026, 12:05 ET CIQ Introduces the CIQ Linux Kernel, Built to Unlock the Full Performance of Modern AI Hardware in Enterprise Production
high-throughput network environments, translating directly to reduced operational costs at scale.Improved CVE coverage: Every CVE fix from the LT branches is included in CLK. When a CVE is fixed upstream, it is fixed in CLK.Emerging technology support: Features such as io_uring,
More news about: CIQ
Mar 05, 2026, 08:00 ET SAP and Uptycs partner to tame chaos of AI cyber threats
previously required senior architects.By asking simple and clear questions, teams receive diagnoses verified against external references like CVE databases, ensuring AI guidance is never hallucinated."The industry is tired of 'Security Slop' and AI that guesses," said Ganesh Pai, CEO and
More news about: Uptycs
Feb 24, 2026, 09:00 ET Caspia Launches New RTL Security Analyzer Enabling Agentic Silicon Security Verification
are recognized and suggested corrections are also provided.CODAx security checks are informed by public vulnerability databases including CWE, CVE, and Trust-Hub, which catalog over 1,000 known hardware security weaknesses. Caspia applies GenAI techniques to systematically map these weaknesses to
More news about: Caspia Technologies
Feb 18, 2026, 07:07 ET ActiveState Unifies 79M Components to Launch World's Largest Secure Open Source Catalog
By consolidating 12+ language ecosystems into a single repository, the ActiveState Catalog enables DevSecOps teams to slash CVE exposure by up to 99% and reclaim 30% of engineering timeVANCOUVER, BC, Feb.
More news about: ActiveState
Feb 11, 2026, 09:00 ET Endor Labs Acquires Autonomous Plane, Expanding AI-Native Application Security with Full-Stack Reachability From Code to Container
vulnerabilities in unused code or risk compliance penalties by missing critical issues buried in noise."Traditional container scanners report every CVE in an image, forcing teams to sift through hundreds of findings manually," said Quest. "Full-stack reachability uses information from the application
More news about: Endor Labs