Business Wire

CA-VERACODE

1.5.2024 14:51:32 CEST | Business Wire | Press release

Share
Veracode Elevates Developer-Powered Application Risk Management with Latest Innovations: Enhanced Repo Risk Visibility & Analysis and Veracode Fix in the IDE

Veracode, a global leader in application risk management, today announced platform innovations that set a new standard for developer-powered application security. New repo risk visibility and analysis from Longbow Security, powered by Veracode, speeds up remediation of application risk from code repositories to runtime images. The solution launches alongside Veracode Fix in the Integrated Development Environment (IDE) and Batch Fix to bridge the gap between development and security teams. These latest innovations help developers focus on the most critical tasks that drive value and differentiation.

“Developers today face significant competing pressures to innovate faster and perform more security checks on their code than ever before,” said Tim Jarrett, Group Head of Product Management at Veracode. “We are committed to a frictionless experience for developers and security operators and our latest product enhancements make the job of securing code simple and seamless.”

Bringing Developer & Security Teams Together: Repo Risk Visibility & Analysis

In April, Veracode acquired Longbow Security to help organizations effectively manage and reduce application risk across the growing attack surface. The integration of Longbow’s newest capability, repo risk visibility and analysis, bridges the gap between development and security teams with enhanced visibility from code repositories to cloud assets and runtime images. It also illuminates infrastructure-as-code and misconfiguration risk for cloud assets originating from repositories.

“Customers challenged us to apply our unique cloud risk and prioritization expertise from Longbow to problems they face managing upstream risk in their code repositories,” said Derek Maki, Vice President of Product Management at Veracode. “We responded with a solution that gives visibility into the relationship between source code weaknesses and runtime security posture. Simultaneously, development teams get a consolidated view of risk and huge time savings when it comes to prioritizing remediation, reducing code changes, and fixing issues fast.”

This new feature complements Veracode’s latest innovation for GitHub repo scanning, which enables developers to streamline activities like staging servers and environments so they don’t need to scan every time. This makes it easier for development and security teams to collaborate on secure coding and scanning as Veracode results are delivered to GitHub where developers can act immediately.

Security Debt Reduction: Veracode Fix in the IDE & Batch Fix

Research shows 92 percent of U.S.-based developers are already using artificial intelligence (AI) coding tools both in and outside of work, with generative AI helping software engineers write code 35-45 percent faster. At the same time, other research suggests code developed by AI contains the same percentage of security flaws as that generated by humans.

Veracode was the first company to deliver a solution that provides developers with AI-generated secure code fixes. Since launching Veracode Fix at RSA Conference last year, hundreds of customers have used the solution to reduce their backlog of security debt and risk. Ninety-two percent of CWEs (Common Weakness Enumeration) with a severity rating from medium to very high can be addressed through AI-generated code edits from Veracode Fix.

With the introduction of Veracode Fix in the IDE, developers can now fix flaws faster with AI-suggested remediation right in the IDE, without switching applications or researching alternative code options. Fixes can be made before code is pushed through the software development lifecycle, dramatically cutting the time and cost spent fixing flaws compared to retroactive remediation.

Batch Fix enables bulk AI-assisted remediation of flaws in source code across multiple flaws and files in one operation. This makes remediation of flaws an order of magnitude faster, aiding the reduction of security debt at scale. For example, developers can use it to fix a CWE that requires an easy-to-test resolution and run it across multiple source files at once.

Jarrett closed, “With these latest innovations, Veracode meets developers where they are—in the tools they use daily—to help them secure the code they create today, without compromising productivity. This vastly improves efficiency and velocity, fostering a culture of collaboration and trust between development and security teams.”

Repo Risk Visibility & Analysis, Veracode Fix in the IDE, and Batch Fix are available immediately. For more information, please visit the Veracode blog.

Visitors to RSA Conference can learn more about Veracode’s platform and these new features by visiting Veracode’s booth #2045 in the main hall.

About Veracode

Veracode is a global leader in Application Risk Management for the AI era. Powered by trillions of lines of code scans and a proprietary AI-assisted remediation engine, the Veracode platform is trusted by organizations worldwide to build and maintain secure software from code creation to cloud deployment. Thousands of the world’s leading development and security teams use Veracode every second of every day to get accurate, actionable visibility of exploitable risk, achieve real-time vulnerability remediation, and reduce their security debt at scale. Veracode is a multi-award-winning company offering capabilities to secure the entire software development life cycle, including Veracode Fix, Static Analysis, Dynamic Analysis, Software Composition Analysis, Container Security, Application Security Posture Management, and Penetration Testing.

Learn more at www.veracode.com, on the Veracode blog, and on LinkedIn and Twitter.

Copyright © 2024 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20240501107223/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Microsoft and Postel: An Innovative New Data and AI-Driven Solution to Optimize Italian SMEs' Relationships with Their Customers28.4.2026 07:00:00 CEST | Press release

Microsoft and Postel, a Poste Italiane Group company, announce an evolution of their collaboration and of the agreements they have signed for the digitalization of Italian businesses, welcoming Audiencerate as technology partner in the Data and Direct & Digital Marketing space. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260427013396/en/ The Marketing Data Platform combines AI-powered market intelligence, first-party data and omnichannel activation to help SMEs analyze market trends and historical campaign performance, turning insights into audiences and increasingly targeted future actions. The agreement provides for the distribution of an integrated platform that combines Postel's omnichannel physical-and-digital communication capabilities with Audiencerate'sdata intelligence functionalities and Microsoft's AI and Cloud solutions. The solution enables SMEs to leverage and activate their own data across the entire custom

LTM Launches BlueVerse™ Studio as a Hub for Enterprise Agentic AI Adoption28.4.2026 07:00:00 CEST | Press release

Showcasing AI capabilities to solve real‑world client challenges LTM, the Business Creativity partner to the world’s largest enterprises, today announced the launch of its BlueVerse Studio in Bengaluru, a hub designed to accelerate Enterprise Agentic AI adoption for clients and deliver measurable business outcomes. LTM continues to launch more studios globally to drive AI innovation and also has studios in London and Mumbai. As part of the company’s ongoing investment in bringing innovation closer to clients, the BlueVerse Studio was created to help clients scale AI solutions from experiments to practical applications while ensuring trust and control. It unites LTM’s strongest AI capabilities, including BlueVerse CraftStudio, physical AI showcases, and industry-centric AI offerings, within one ecosystem along with: Multiple BlueVerse-certified consulting and delivery professionals currently support enterprise-grade AI solutions. These certifications provide expertise in developing inte

Helical Fusion Launches Helix Program “Official Partners” to Build Japan’s Industrial Coalition for Commercial Fusion Energy28.4.2026 05:00:00 CEST | Press release

Multiple long-established Japanese companies join as inaugural partners in a shared push to build the fusion energy industry; Helical Fusion also completed the first close of its Series B round Helical Fusion Co., Ltd., a fusion energy company developing a Helical stellarator power plant, today announced the launch of Helix Program Official Partners, a new strategic partnership framework designed to bring together long-term industrial collaborators committed to advancing fusion from laboratory progress to real-world fusion power deployment. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260427596284/en/ Helical Fusion’s Integrated Demonstration Device, “Helix HARUKA,” currently under construction (photographed at the company’s dedicated workspace within the National Institute for Fusion Science in Gifu, Japan) The Helix Program is Helical Fusion’s core initiative to realize commercially viable fusion energy in the 2030s. Rat

Investor Supporting Japan’s Entertainment Industry, Yoshihiro Shimamura, to Visit France Workshop to be Held During the Cannes Film Festival28.4.2026 04:00:00 CEST | Press release

Shimamura Yoshihiro Film Planning Inc. (Head Office: Osaka, Japan; CEO: Yoshihiro Shimamura), a company engaged in film production and investment, will host a workshop in France during this year’s Cannes Film Festival, as part of its commitment to further advancing the entertainment industry. The company invests in leading entertainment-related businesses in Japan and places strong emphasis on long-term value creation. It identifies the cultural and entertainment sectors as high-growth areas and is actively involved in international co-productions as a core part of its film production activities. As a recent investment, the company acquired 2,000,000 shares of Hankyu Hanshin Holdings, Inc.—a major Japanese entertainment conglomerate known for producing content enjoyed across generations—and became a major shareholder (as of March 25, 2026). Through such investments, the company aims to support the global expansion of Japanese entertainment while exploring synergies with its own interna

Alsym Energy Announces Na-Series Battery Success Developed With Physics-Informed AI Platform27.4.2026 21:25:00 CEST | Press release

Alsym’s proprietary physics-informed AI platform powered the development of its Na-Series batteries—a non-flammable, high performance and low cost energy solution positioned to serve critical energy storage markets including data centers, utilities, telecommunications, commercial real estate, industrial and defense, among others. Alsym Energy, a pioneer in non-flammable, high-performance sodium-ion batteries, today announced details of the proprietary physics-informed AI platform used to develop the company’s recently launched Na-Series sodium-ion batteries. By integrating fundamental physics models with AI, autonomous testing and proprietary molecular diagnostics in a closed-loop system, Alsym is accelerating the design of safer, inexpensive, commercialized batteries through all phases of the development cycle. As global demand for electricity surges, the limitations of lithium-ion batteries have become increasingly apparent, particularly around safety and supply chain constraints. Li

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye