Discovery capabilities: A core differentiator for Black Duck SCA
Stay on top of open source vulnerabilities and license obligations with discovery capabilities from Black Duck.
Posted in Open Source Security, Software Composition Analysis (SCA)
Stay on top of open source vulnerabilities and license obligations with discovery capabilities from Black Duck.
Posted in Open Source Security, Software Composition Analysis (SCA)
Open source risk goes beyond application security. Legal, operational, and supply chain implications demand a capable solution like Black Duck SCA.
Posted in Software Composition Analysis (SCA)
The rise of open source software is not without risks for today’s applications. Use a software composition analysis tool to mitigate these risks.
Posted in Featured, Software Composition Analysis (SCA)
Open source software is now used in nearly every organization, which makes it critical to know your code. Learn how an SCA tool can help you.
Posted in Software Composition Analysis (SCA)
Today’s release of Black Duck adds vulnerability impact analysis, which indicates whether your application executes vulnerable code. Let’s look at how this addition further augments your prioritization efforts.
Posted in Application Security, Software Composition Analysis (SCA)
Get started with the Dockerized Black Duck installation. This post outlines workplace specifications, tools, and steps for installing Black Duck.
Posted in Software Composition Analysis (SCA)
Open source license noncompliance can have severe implications. Here are four advanced license compliance features that help protect your proprietary code.
Posted in Software Composition Analysis (SCA)
The NVD is a good source for open source vulnerability data. But with an average 27-day reporting delay, it shouldn’t be your only source of information.
Posted in Open Source Security, Software Composition Analysis (SCA)
Learn how vulnerability reports can help you fix critical vulnerabilities effectively, and the essentials of application security for DevOps and CI/CD.
Posted in Agile, CI/CD & DevOps, Open Source Security, Software Composition Analysis (SCA), Software Security Program, Webinars
If you use an SCA tool, why should you use a SAST tool as well? Let’s discuss what each tool can and can’t do and how they complement each other.
Posted in Application Security, Software Composition Analysis (SCA), Static Analysis (SAST)