---
title: "Blog"
date: "2024-05-03T14:58:17+00:00"
url: "https://checkmarx.com/blog/"
description: "Check our he latest insights in AppSec, DevSecOps, and AI-powered security from Checkmarx experts helping teams build secure software faster."
---

# Blog

- [ Home  ](https://checkmarx.com)
- [ Blog  ](https://checkmarx.com/blog/)

Stay ahead of evolving threats with insights from the Checkmarx AppSec Blog. Explore expert perspectives on application security, DevSecOps, AI innovation, and secure software development. Learn best practices, real-world strategies, and success stories that help developers and AppSec teams build trust in every line of code.

 [  ](https://checkmarx.com/blog/just-launched-the-future-of-application-security-in-the-era-of-ai-2027-industry-outlook/) [June 9, 2026](https://checkmarx.com/blog/just-launched-the-future-of-application-security-in-the-era-of-ai-2027-industry-outlook/)
 [Just Launched: The Future of Application Security in the Era of AI – 2027 Industry Outlook ](https://checkmarx.com/blog/just-launched-the-future-of-application-security-in-the-era-of-ai-2027-industry-outlook/)
 [Application security has entered a dangerously paradoxical new phase: Organizations now have more visibility into application security risk than at any point…](https://checkmarx.com/blog/just-launched-the-future-of-application-security-in-the-era-of-ai-2027-industry-outlook/)

 [Read Now          ](https://checkmarx.com/blog/just-launched-the-future-of-application-security-in-the-era-of-ai-2027-industry-outlook/)

 [  ](https://checkmarx.com/blog/when-findings-spark-debate-instead-of-fixes-aligning-appsec-and-development/) [May 19, 2026](https://checkmarx.com/blog/when-findings-spark-debate-instead-of-fixes-aligning-appsec-and-development/)
 [When Findings Spark Debate Instead of Fixes: Aligning AppSec and Development](https://checkmarx.com/blog/when-findings-spark-debate-instead-of-fixes-aligning-appsec-and-development/)
 [When security findings lack context, developers lose time investigating instead of fixing. Here’s how AI-driven triage changes the workflow.](https://checkmarx.com/blog/when-findings-spark-debate-instead-of-fixes-aligning-appsec-and-development/)

 [Read Now          ](https://checkmarx.com/blog/when-findings-spark-debate-instead-of-fixes-aligning-appsec-and-development/)

 [  ](https://checkmarx.com/zero-post/operation-navy-ghost-pyrogram-telegram-supplychain-attack/) [June 25, 2026](https://checkmarx.com/zero-post/operation-navy-ghost-pyrogram-telegram-supplychain-attack/)
 [Operation Navy Ghost: How Attackers Planted a Telegram-Powered Backdoor Across Fake pyrogram Packages on PyPI](https://checkmarx.com/zero-post/operation-navy-ghost-pyrogram-telegram-supplychain-attack/)
 [A threat actor targeted Telegram bot developers adopting the popular 'pyrogram' package on PyPI over the course of six months starting November 2025, in…](https://checkmarx.com/zero-post/operation-navy-ghost-pyrogram-telegram-supplychain-attack/)

 [Read Now          ](https://checkmarx.com/zero-post/operation-navy-ghost-pyrogram-telegram-supplychain-attack/)

## All Blog Posts

      Shape

  Category AI &amp; LLM Tools in Application SecurityApplication Security Trends &amp; InsightsASPMCheckmarx OneCheckmarx Product News, Use Cases &amp; GuidesCheckmarx Security UpdateCISO Strategy &amp; Leadership in Application SecurityCompliance &amp; Secure SDLC FrameworksContainer Security/Code-to-CloudCybersecurity Research &amp; InnovationDASTDevSecOps Integration &amp; AutomationIaCPartnerships and IntegrationsPress Releases &amp; Industry ReportsSASTSCASecrets DetectionSecure Coding Best Practices for DevelopersSupply Chain SecurityThreat Intelligence &amp; Vulnerability Analysis

Applied Filters:

 Clear filters

   [    July 23, 2026
 MCP Configuration Poisoning: Owning Your Machine With Just A Text File

 Read More           ](https://checkmarx.com/zero-post/mcp-configuration-poisoning-owning-your-machine-with-just-a-text-file/) [    July 14, 2026
 Sequel to ChainVeil npm Malware Targets Vite Ecosystem

 Read More           ](https://checkmarx.com/zero-post/sequel-to-chainveil-npm-malware-targets-vite-ecosystem/) [    June 24, 2026
 You’re Securing Your Code. But Are You Securing the AI Inside It?

 Read More           ](https://checkmarx.com/blog/youre-securing-your-code-but-are-you-securing-the-ai-inside-it/) [    June 22, 2026
 Learnings From Checkmarx Agentic AppSec Unleashed ‘26

 Read More           ](https://checkmarx.com/blog/learnings-from-checkmarx-agentic-appsec-unleashed-26/) [    June 22, 2026
 Checkmarx Named a Leader in Inaugural 2026 Gartner® Magic Quadrant™ for Software Supply Chain Security

 Read More           ](https://checkmarx.com/blog/checkmarx-named-a-leader-in-inaugural-2026-gartner-magic-quadrant-for-software-supply-chain-security/) [    June 16, 2026
 Your Scanner’s Accuracy Claims Are Only Half the Story

 Read More           ](https://checkmarx.com/blog/your-scanners-accuracy-claims-are-only-half-the-story/) [    June 16, 2026
 ChainVeil: A Malicious npm Supply Chain Attack by SuccessKey

 Read More           ](https://checkmarx.com/zero-post/chainveil-a-malicious-npm-supply-chain-attack-by-successkey/) [    June 15, 2026
 Checkmarx Security, Delivered Through Every AI Tool Your Team Already Uses

 Read More           ](https://checkmarx.com/blog/checkmarx-security-delivered-through-every-ai-tool-your-team-already-uses/) [    June 11, 2026
 Proof, Not Promises: How We Drive Security Testing Accuracy With Better Data

 Read More           ](https://checkmarx.com/zero-post/proof-not-promises-how-we-drive-security-testing-accuracy-with-better-data/)

  [Show more](#)
