News | Checkmarx Application Security

Checkmarx – Chinese

News

Your one stop for the latest application security articles, stories, and trends, all in one place. Stay on top of the news, and know what’s happening—both at Checkmarx and in the industry at large.

News

Checkmarx 2018 Predictions: DevOps is Here to Stay
October 23, 2017

One of the biggest areas for application security in 2018 is how it fits within a true DevOps environment. In my discussions with some of the largest organizations in the world there seems to be one common theme, and that is the movement to a true DevOps program. DevOps is a hot... Read More

Checkmarx Expands Codebashing Developer Application Security Training With New Interactive Mobile Security Courses
October 17, 2017

The importance of integrating security tests in the software development life cycle is commonly discussed and widely agreed upon, yet getting developers to write secure code to begin with is... Read More

ShiftLeft’s new cybersecurity platform customizes itself for every workload
October 11, 2017

Thanks to sophisticated development tools and practices that have emerged in recent years, application teams are producing code faster than ever. The downside is that the shorter release cycles become, the... Read More

Cloud-native apps push static code analysis tools to the limit
September 27, 2017

Matt Rose is the global director of application security strategy at Checkmarx, an organization that provides static code analysis tools that play a key role in the secure software testing... Read More

Pumpkin-Spiced Cybersecurity: October Is National Cyber Security Awareness Month
September 27, 2017

Cyberattacks, including global ransomware attacks, massive data breaches, and distributed denial-of-service attacks have recently dominated the headlines, saturating consumers’ news intake with stories about cybersecurity threats. These repeated reminders of... Read More

A bug fix always beats a round of risk assessments
September 26, 2017

“Many organizations have an effective process for identifying problems, but no process for remediation,” said Matt Rose, the global director of application security strategy at Checkmarx. “Organizations do a lot... Read More

CloudBees, partners add Jenkins services, security
September 25, 2017

For its part, Checkmarx, an application security software company, introduced a new release of its Interactive Application Security Testing product, CxIAST. The product enables continuous application security testing in real time, so software delivery schedules are not affected by security testing. Click here to continue reading Read More

Containers and microservices complicate cloud-native security
September 13, 2017

But not every data breach can be blamed on an end user, which is why developers must be vigilant when it comes to cloud-native security. According to Matt Rose, global director of application security strategy at Checkmarx, it's commonplace for his software company's static code analysis tools to identify places... Read More

Jenkins World 2017 Highlights the Growing Ubiquity of Continuous Integration
August 31, 2017

Matt Rose, global director of application security strategy at Checkmarx, said that Jenkins is the bellwether for the CI/CD world. “Most of our customers are using Jenkins in some way.... Read More

Gigster receives $20M in funding, Checkmarx’s DevSecOps platform, and Okta’s two-factor authentication — SD Times news digest: August 30, 2017
August 30, 2017

At Jenkins World 2017, Checkmarx announced its new Interactive Application Security Testing solution, CxIAST, which gives teams continuous application security testing in real time, with zero scan time, accuracy and... Read More

Mobile data theft a risk from shared app libraries
August 16, 2017

Matthew Rose, ‎global director of application security strategy at Checkmarx, an application security software vendor headquartered in Israel, said there were a number of ways a shared library might be... Read More

Alert: Avoid These Security Cameras Like the Plague
August 3, 2017

The Loftek CXS-2200 and VStarcam C7837WIP, which look nearly identical, contained more than a dozen vulnerabilities between them, many of which would let an attacker take over the camera from the internet. "The vulnerabilities just kept on coming," the report notes. "A malicious user can exploit your device to track... Read More

Two IP-enabled cameras full of flaws
August 3, 2017

Checkmarx researchers said a pair of IP-enabled security cameras have nearly two dozen flaws that would make them vulnerable to attack. Loftek DSS-2200 and VStarcam C7837WIP, manufactured in China and aimed at the consumer market, also can be pressed into service as botnets to execute distributed denial of service (DDoS)... Read More

Two Popular IP Cameras Riddled With Vulnerabilities
August 3, 2017

Two consumer-grade IP-enabled security cameras manufactured by Loftek and VStartcam are riddled with nearly two dozen vulnerabilities that expose them to remote attacks. According to researchers, more than 1.3 million of the cameras are in use today, with 200,000 models located in the United States. Based on a report released... Read More

Remotely Exploitable Flaws Found in Popular IP Cameras
August 2, 2017

Checkmarx researchers have analyzed a couple of IP cameras from Loftek and VStarcam and discovered several new vulnerabilities and variations of previously found flaws. In Loftek’s CXS 2200 camera, experts discovered cross-site request forgery (CSRF) flaws that can be exploited to add new admin users, server-side request forgery (SSRF) flaws... Read More

Checkmarx: Proactive Threat Protection
July 31, 2017

Today’s cyber landscape leaves no room for mistakes when it comes to the security of software and applications. Enterprises are well aware of the harsh consequences of a cyberattack. Moreover, with end users expecting software vendors to deliver cutting edge software at the speed of light, enterprises find themselves constantly... Read More

Playing Games To Learn Code, Checkmarx Acquires Codebashing
July 26, 2017

Application security testing company Checkmarx has now acquired the somewhat aggressively named Codebashing, a company that specializes in game-like application security education and training for software application developers.   Read the full article on Forbes Read More

Checkmarx acquired Codebashing
July 26, 2017

Checkmarx has acquired Codebashing, an application security education company that delivers Game-like AppSec Training for Developers. Traditional secure coding education is ineffective and cannot scale to deliver continuous and across the board secure coding knowledge. Long training courses disrupt the developer’s daily routine and don't address the specific challenge as... Read More

Checkmarx Acquires Codebashing to Redefine Secure Coding Education
July 25, 2017

Through Acquisition, Checkmarx will Provide Interactive Tools to Further Developer Application Security Knowledge and Deliver Secure Applications Even Faster.  Checkmarx, a global leader in application security testing solutions, today announced its acquisition of Codebashing, a leading application security education company that delivers Game-like AppSec Training for Developers. Read the full article... Read More

Checkmarx Acquires Codebashing
July 25, 2017

Checkmarx announced the acquisition of Codebashing, an application security education company that delivers Game-like AppSec Training for Developers. By shifting security left and empowering developers to deliver secure applications, this acquisition allows Checkmarx to introduce continuous, in-context, bite sized secure coding training. Effective training allows enterprises to grow their in-house... Read More

Skip to content