Business Wire

CA-VERACODE

1.5.2024 14:51:32 CEST | Business Wire | Press release

Share
Veracode Elevates Developer-Powered Application Risk Management with Latest Innovations: Enhanced Repo Risk Visibility & Analysis and Veracode Fix in the IDE

Veracode, a global leader in application risk management, today announced platform innovations that set a new standard for developer-powered application security. New repo risk visibility and analysis from Longbow Security, powered by Veracode, speeds up remediation of application risk from code repositories to runtime images. The solution launches alongside Veracode Fix in the Integrated Development Environment (IDE) and Batch Fix to bridge the gap between development and security teams. These latest innovations help developers focus on the most critical tasks that drive value and differentiation.

“Developers today face significant competing pressures to innovate faster and perform more security checks on their code than ever before,” said Tim Jarrett, Group Head of Product Management at Veracode. “We are committed to a frictionless experience for developers and security operators and our latest product enhancements make the job of securing code simple and seamless.”

Bringing Developer & Security Teams Together: Repo Risk Visibility & Analysis

In April, Veracode acquired Longbow Security to help organizations effectively manage and reduce application risk across the growing attack surface. The integration of Longbow’s newest capability, repo risk visibility and analysis, bridges the gap between development and security teams with enhanced visibility from code repositories to cloud assets and runtime images. It also illuminates infrastructure-as-code and misconfiguration risk for cloud assets originating from repositories.

“Customers challenged us to apply our unique cloud risk and prioritization expertise from Longbow to problems they face managing upstream risk in their code repositories,” said Derek Maki, Vice President of Product Management at Veracode. “We responded with a solution that gives visibility into the relationship between source code weaknesses and runtime security posture. Simultaneously, development teams get a consolidated view of risk and huge time savings when it comes to prioritizing remediation, reducing code changes, and fixing issues fast.”

This new feature complements Veracode’s latest innovation for GitHub repo scanning, which enables developers to streamline activities like staging servers and environments so they don’t need to scan every time. This makes it easier for development and security teams to collaborate on secure coding and scanning as Veracode results are delivered to GitHub where developers can act immediately.

Security Debt Reduction: Veracode Fix in the IDE & Batch Fix

Research shows 92 percent of U.S.-based developers are already using artificial intelligence (AI) coding tools both in and outside of work, with generative AI helping software engineers write code 35-45 percent faster. At the same time, other research suggests code developed by AI contains the same percentage of security flaws as that generated by humans.

Veracode was the first company to deliver a solution that provides developers with AI-generated secure code fixes. Since launching Veracode Fix at RSA Conference last year, hundreds of customers have used the solution to reduce their backlog of security debt and risk. Ninety-two percent of CWEs (Common Weakness Enumeration) with a severity rating from medium to very high can be addressed through AI-generated code edits from Veracode Fix.

With the introduction of Veracode Fix in the IDE, developers can now fix flaws faster with AI-suggested remediation right in the IDE, without switching applications or researching alternative code options. Fixes can be made before code is pushed through the software development lifecycle, dramatically cutting the time and cost spent fixing flaws compared to retroactive remediation.

Batch Fix enables bulk AI-assisted remediation of flaws in source code across multiple flaws and files in one operation. This makes remediation of flaws an order of magnitude faster, aiding the reduction of security debt at scale. For example, developers can use it to fix a CWE that requires an easy-to-test resolution and run it across multiple source files at once.

Jarrett closed, “With these latest innovations, Veracode meets developers where they are—in the tools they use daily—to help them secure the code they create today, without compromising productivity. This vastly improves efficiency and velocity, fostering a culture of collaboration and trust between development and security teams.”

Repo Risk Visibility & Analysis, Veracode Fix in the IDE, and Batch Fix are available immediately. For more information, please visit the Veracode blog.

Visitors to RSA Conference can learn more about Veracode’s platform and these new features by visiting Veracode’s booth #2045 in the main hall.

About Veracode

Veracode is a global leader in Application Risk Management for the AI era. Powered by trillions of lines of code scans and a proprietary AI-assisted remediation engine, the Veracode platform is trusted by organizations worldwide to build and maintain secure software from code creation to cloud deployment. Thousands of the world’s leading development and security teams use Veracode every second of every day to get accurate, actionable visibility of exploitable risk, achieve real-time vulnerability remediation, and reduce their security debt at scale. Veracode is a multi-award-winning company offering capabilities to secure the entire software development life cycle, including Veracode Fix, Static Analysis, Dynamic Analysis, Software Composition Analysis, Container Security, Application Security Posture Management, and Penetration Testing.

Learn more at www.veracode.com, on the Veracode blog, and on LinkedIn and Twitter.

Copyright © 2024 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20240501107223/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

FPT Expands Strategic Collaboration with Microsoft to Advance AI Frontier Innovation Across Asia25.6.2026 04:00:00 CEST | Press release

FPT Corporation today announced an expanded strategic collaboration with Microsoft aimed at accelerating enterprise AI adoption and co‑innovation across Asia, with a strong focus on ASEAN, Japan, and South Korea. The collaboration brings together Microsoft’s global AI platforms with FPT’s large‑scale delivery and regional market capabilities to support organizations as they move from AI experimentation to real‑world, scalable impact, with measurable business outcomes. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260624200416/en/ Representatives of FPT and Microsoft at the signing ceremony, formalizing an expanded strategic collaboration to advance AI Frontier innovation across Asia The collaboration aligns with FPT’s AI‑First strategy and Microsoft’s vision for human‑agent collaboration, with the goal of enabling enterprises to redesign how work is done across engineering, operations, and business functions. Positioning FP

Murata Expands Product Information Management API Service to Cover All 73 Product Categories25.6.2026 04:00:00 CEST | Press release

Murata Manufacturing Co., Ltd. (TOKYO: 6981) (ISIN: JP3914400001) now covers all 73 product categories in its Product Information Management (PIM) API Service. By using this API service, engineers, developers, and procurement specialists can retrieve up-to-date product information, enabling prompt responses to product status changes and reducing the risk of component obsolescence. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260624146819/en/ [Murata Manufacturing Co., Ltd.] Murata expands Product Information Management API Service to cover all 73 product categories As digital transformation accelerates in the manufacturing industry, a wide variety of systems and platforms are being used across the entire workflow - from design and component selection through to procurement. Previously, Murata’s PIM API Service covered only surface-mount and leaded ceramic capacitors and inductors. This narrow service coverage required user

Swedish Court Further Reschedules Delivery of Judgment in PriceRunner Vs Google Antitrust Case24.6.2026 20:55:00 CEST | Press release

Klarna provides investor update Klarna Group plc (NYSE: KLAR) wishes to update investors that the Patent and Market Court in Stockholm, Sweden (Patent- och marknadsdomstolen) has again postponed publication of its judgment in the antitrust damages proceedings brought by PriceRunner, a Klarna subsidiary, against Google. The Court has rescheduled publication of its judgment from June 26, 2026 to July 1, 2026 at 13:00 CET. As with the Court's two previous notifications, the rescheduling is a procedural decision by the Court and relates solely to the timing of the judgment delivery. In its notification, the Court cited high workload as the reason for needing additional time to finalize the judgment. No inference about the outcome should be drawn from it. Important Notice The outcome of the proceedings is inherently uncertain. No assurance can be given that PriceRunner will succeed on liability or quantum. Any award would be subject to appeal by Google, to sharing arrangements with former P

Vertex Energy Announces 6,000 bpd Group III Base Oil Expansion Project24.6.2026 16:00:00 CEST | Press release

Vertex Energy, Inc. (“Vertex” or the “Company”) today announced it is advancing a project at its Mobile, Alabama refinery to produce crude-derived conventional Group III base oils through the Company’s existing hydrocracker and related processing infrastructure, providing lubricant manufacturers and blenders with an additional domestic source of high-quality Group III supply. The project is designed to add an incremental 6,000 barrels per day of conventional Group III production capacity and support production of 4 cSt, 6 cSt, and 8 cSt Group III base oils using an existing crude-derived hydrocracked vacuum gas oil stream produced at the Company’s Mobile, Alabama refinery. Combined with the Company’s existing re-refined Group III base oil production, this additional capacity is expected to make Vertex the leading Group III producer in North America. Vertex has completed preliminary design work and has procured a high-pressure lubricants hydrotreating unit. The Company plans to start pr

Taktile Secures $110M in Goldman Sachs-led Series C to Power AI Transformation in Financial Institutions24.6.2026 15:30:00 CEST | Press release

Growth Equity at Goldman Sachs Alternatives backs Taktile as a leading enabler of AI-driven efficiency and performance gains in banks and insurers. Taktile, the leader in AI transformation for financial institutions, today announced its $110 million Series C fundraise. Growth Equity at Goldman Sachs Alternatives led the round, with participation from Balderton Capital, Index Ventures, Tiger Global, Y Combinator, and Dig Ventures. Taktile Fast Facts Taktile enables banks and insurers to transform into AI-native organizations that are increasingly powered by autonomous agents. Demand for Taktile accelerated in 2025, as AI models became capable of automating high-stakes decisions that previously required hours of manual work—from underwriting business loans and assessing claims to catching financial crime. Customers automate and optimize decisions with Taktile by combining its financial services expertise and product built for sector-specific AI use cases. One of the world’s largest insur

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye