News | Checkmarx Application Security


Your one stop for the latest application security articles, stories, and trends. Stay on top of the news and know what’s happening, both at Checkmarx and in the industry at large.


Survey: Coding During COVID-19
March 17, 2021

At the end of February, Checkmarx asked 250 US developers how their everyday work had changed during the pandemic. Read More

Need for Speed Heightens Security Risks for Software Development
March 9, 2021

The onus is increasingly falling on developers, who have a greater reliance on emerging technologies, a study by Checkmarx finds. Read More

Checkmarx Offers Open Source Code Scanning
March 5, 2021

Checkmarx launches scanning solution of infrastructure as code to secure cloud-native applications. Read More

The People Behind the Israeli Unicorns
March 3, 2021

TheMarker magazine presents the coveted unicorn club memberships and the entrepreneurs who rolled an idea from scratch to more than a billion. Read More

New Scanning Solution for Infrastructure as Code
March 2, 2021

The open source based IaC scan engine is intended to enable developers to identify and fix configuration problems. Read More

Cloud-Based Dev Teams: Shift Security Left
March 1, 2021

Cloud-based managed services as well as IaC practices are increasingly popular among application developers for the efficiencies they create. But if dev teams are not careful, experts warn, they could be maliciously exploited. Read More

New Checkmarx Solution KICS Finds Problems in IaC Automatically
March 1, 2021

With KICS, Checkmarx offers a new, open source-based solution for static analyzes that enables developers to develop Infrastructure-as-Code (IaC) securely. Read More

IaC: Checkmarx Launches Static Code Analysis KICS
February 25, 2021

The open source software called Keeping Infrastructure as Code Secure looks for weaknesses in IaC. Read More

Checkmarx Unveils New Open Source IaC Scanning Engine
February 25, 2021

Software security solutions provider Checkmarx today launched a new open-source static analysis tool designed to allow developers to write more secure infrastructure-as-code (IaC). Read More

Checkmarx Debuts Keeping Infrastructure as Code Secure Solution
February 25, 2021

In an effort to better secure cloud-native apps, software security company Checkmarx has launched a new open-source static analysis solution. Read More

IoT Cybersecurity Improvement Act: A First Step in Bolstering Smart Tech Security
February 25, 2021

The IoT security bill is a step in the right direction, as it addresses one of the biggest gaps in software security overall -- generating awareness. But is it enough? Read More

Customer Data at Risk: Checkmarx Documents Critical Vulns in Apache Unomi
February 25, 2021

In view of the popularity of the platform, the Checkmarx Security Research Team recently examined the Unomi code - and identified two critical security gaps. Read More

20 Coolest Web, App, and Email Security Companies of 2021
February 23, 2021

Here’s a look at 20 web, application and email security companies that have invested in everything from safeguarding cloud applications and embedding certificates on chips to identifying software vulnerabilities. Read More

Libertarian or Orwellian: What to Make of the Vaccine Passport?
February 17, 2021

To look more deeply at the security implications of the digital vaccine passport concept, Digital Journal sought the opinion of Erez Yalon, senior director of security research at Checkmarx. Read More

How to Secure Your Dating Data This Valentine’s Day
February 14, 2021

The use of dating apps has significantly increased during the Covid-19 pandemic, but what about security and privacy? Read More

Deskpro Accounts Were Vulnerable to Hackers, Checkmarx Reveals
February 14, 2021

The successful exploitation of the discovered XSS vulnerability could have allowed attackers to hijack the sessions of admins and take over the accounts of helpdesk agents. Read More

Checkmarx: Critical Security Vulnerabilities in Remote Support Platform
February 12, 2021

Israeli company Checkmarx reveals critical security vulnerabilities found in DeskPro’s helpdesk platform. Read More

Security Researchers Discover Helpdesk Software Vulnerability
February 12, 2021

After auditing the security of Helpdesk Software solution Deskpro in accordance with the company's Responsible Disclosure Bug Bounty Program, the Checkmarx Security Research Team discovered a severe cross-site scripting (XSS) issue. Read More

Deskpro XSS Flaws Could Hijack Admin Sessions
February 11, 2021

Given the shift to remote work and the need for helpdesk software that lets remote teams collaborate, Checkmarx audited Deskpro’s security as part of the company’s bug bounty program. Read More

When it Comes to Vulnerability Triage, Ditch CVSS & Prioritize Exploitability
February 10, 2021

When it comes to software security, one of the biggest challenges facing developers today is information overload. Read More

Skip to content