Business Wire

Continuous Protection for the Cloud Era: Veracode Spotlights Latest Innovations for Advanced Software Security

24.7.2025 13:50:00 CEST | Business Wire | Press release

Share

Advanced AI-Powered Solutions Reduce Remediation Time While Proactively Blocking 60% of Critical Supply Chain Threats

Veracode, a global leader in application risk management, today unveiled a suite of innovations that transform how enterprises approach security. The enhanced platform cuts vulnerability remediation time by up to 92 percent, while using proactive defense to prevent 60 percent of critical supply chain risk from ever entering organizations. These latest enhancements to Veracode’s Package Firewall and Risk Manager provide assurance, context, and continuity across the software development lifecycle.

“Security teams tell us they’re drowning in vulnerability alerts while missing the risks that actually matter. Our latest innovations flip the script—instead of endless firefighting, teams can now prevent threats proactively and focus remediation efforts where they’ll have maximum business impact,” said Derek Maki, Head of Product at Veracode.

Redefining Application Risk Management with End-to-End Risk Visibility

The latest enhancements to Veracode’s Application Risk Management platform enable security teams to identify and remediate vulnerabilities with greater speed and precision than ever before. Veracode Risk Manager sets a new standard for application security posture management (ASPM), featuring six new integrations with industry leaders, including Wiz. By aggregating and prioritizing issues across all sources, Risk Manager reduces vulnerability remediation time by up to 92 percent. This holistic view empowers security teams to act on the Best Next Action™—the actions that reduce the most riskwith precision.

Securing the Software Supply Chain

With 70 percent of critical security debt stemming from third-party code, enterprises are under unprecedented pressure to safeguard their software supply chains. Regulations like the European Union’s Digital Operational Resilience Act (DORA) highlight the vital role of open-source security in maintaining software supply chain integrity.

Veracode Package Firewall redefines supply chain security with an automated solution that blocks untrusted packages, before they can infiltrate development pipelines. Powered by advanced AI analysis, Package Firewall identifies and blocks 60 percent more malicious packages than competing solutions, effectively preventing vulnerabilities, malware, and policy violations from entering organizational systems.

Paired with Software Composition Analysis (SCA) and Malicious Package Detection, Veracode Package Firewall significantly reduces the risk of supply chain attacks by finding and neutralizing libraries harboring malicious code.

“Veracode Package Firewall represents a fundamental shift in how we think about supply chain security. While others are still alerting malicious packages after they’re in your codebase, we’re blocking them at the gate. This means security teams can finally get ahead of supply chain threats instead of scrambling to respond when legitimate packages get compromised or malicious packages slip through,” said Maki.

Built on proprietary threat intelligence, the product automates real-time risk management to ensure nefarious files and programs never make it into an organization’s codebase.

Empowering Developer Productivity with Frictionless Security

According to Gartner, Inc., organizations with a high-quality developer experience are 33 percent more likely to attain their business goals and 31 percent more likely to improve delivery flow. Veracode continues to champion developer productivity through an enhanced platform experience, featuring improved Integrated Developer Environment (IDE) plugins and new Git integrations that embed enterprise-level security directly into workflows.

“Developer productivity isn’t just a nice-to-have; it directly impacts your ability to ship secure software at market speed. Our IDE integrations deliver enterprise-grade security insights without the context switching that kills developer flow. This is why we’re seeing 35 percent faster remediation times with our IDE plugins and integrations, including Visual Studio, IntelliJ IDEA, and Eclipse, as well as GitHub, GitLab, and Azure DevOps,” said Maki.

Veracode’s latest developer-focused innovations eliminate operational inefficiencies and simplify workflows, removing unnecessary complexity from day-to-day DevSecOps processes. Additional innovations include:

  • AI-Assisted Login for Dynamic Application Security Testing (DAST): Automates complex authentication flows, reducing script setup time by 50 percent and expanding dynamic testing coverage.
  • Container and Infrastructure-as-Code (IaC) Results: Centralizes container and IaC findings in the Veracode Platform, streamlining vulnerability management.
  • Veracode Fix Usage Analytics: Provides a dashboard that tracks usage and Common Weakness Enumerations (CWEs) addressed, offering insights by IDE, project, and source file to optimize remediation.

Availability

Veracode’s latest product innovations are available to customers today. To find out more about the company’s application risk management platform and solutions, visit the website.

About Veracode

Veracode is a global leader in Application Risk Management for the AI era. Powered by trillions of lines of code scans and a proprietary AI-assisted remediation engine, the Veracode platform is trusted by organizations worldwide to build and maintain secure software from code creation to cloud deployment. Thousands of the world’s leading development and security teams use Veracode every second of every day to get accurate, actionable visibility of exploitable risk, achieve real-time vulnerability remediation, and reduce their security debt at scale. Veracode is a multi-award-winning company offering capabilities to secure the entire software development life cycle, including Veracode Fix, Static Analysis, Dynamic Analysis, Software Composition Analysis, Container Security, Application Security Posture Management, Malicious Package Detection, and Penetration Testing.

Learn more at www.veracode.com, on the Veracode blog, and on LinkedIn and X.

Copyright © 2025 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands, or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.

View source version on businesswire.com: https://www.businesswire.com/news/home/20250724023276/en/

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

One Biosciences Receives BOOST Funding From Paris-Saclay Cancer Cluster to Advance the First Single-Cell Assay Approach for ADC Therapies22.6.2026 22:15:00 CEST | Press release

One Biosciences, a techbio company pioneering clinical-grade single-cell tumor profiling, today announced financial support via a Paris-Saclay Cancer Cluster (PSCC) BOOST grant to develop the first single-cell assay for antibody-drug conjugates (ADC) therapies in oncology. The rapid growth of ADCs is driving demand for more sophisticated biomarker strategies. By capturing tumor complexity at cellular resolution, single-cell profiling has the potential to enhance patient selection and support the development of next-generation ADCs. Ultimately, it will help match the right patients to the right therapies, maximizing therapeutic benefit. The PSCC BOOST-funded project seeks to bring a new level of precision to ADC development. It will be conducted in collaboration with Adcytherix, a clinical-stage biotech company developing differentiated ADCs for cancers with high unmet medical need. The collaboration will combine Adcytherix’s expertise in ADC development with One Biosciences’ AI-powered

Interactive Brokers Expands AI Integration Capabilities – Adding ChatGPT and Grok to Its Growing Suite of Agentic Trading Tools22.6.2026 16:00:00 CEST | Press release

Additional Asset Classes Available Including Options and Futures Interactive Brokers (Nasdaq: IBKR), an automated global broker, today announced the expansion of its agentic trading capabilities with the addition of ChatGPT and Grok, further broadening a growing ecosystem of AI platform integrations that began with Claude. Available through certified AI connector marketplaces across multiple leading platforms, these integrations allow clients to research, analyze, and generate instructions with speed and efficiency to uncover new trading and investing opportunities instantly. With this release, Interactive Brokers also extends the selection of products available for order instructions to include support for options, futures and futures options in addition to equities and ETFs. “We continue to see growing interest from investors in using artificial intelligence as a more natural way to interact with financial markets,” said Milan Galik, Chief Executive Officer of Interactive Brokers. “A

IQM Named Among Quantum Collaborators in HPE's New Hybrid Quantum-HPC Platform22.6.2026 15:22:00 CEST | Press release

The collaboration will advance practical and scalable hybrid classical-quantum applications. This follows IQM's first on-premises quantum computer installation in the United States, at Oak Ridge National Laboratory. IQM has sold 23 quantum systems globally to date and intends to list on Nasdaq in the United States by mid 2026. Hewlett Packard Enterprise has named IQM Quantum Computers among the companies collaborating on its hybrid classical-quantum computing platform, announced at HPE Discover Las Vegas. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260622035759/en/ IQM Radiance quantum computer at HPE Discover Las Vegas 2026 IQM, a global leader in full-stack superconducting quantum computers, is contributing superconducting quantum processor technology to the effort, in which HPE is integrating multiple quantum modalities with its Cray supercomputing infrastructure. This collaboration strengthens IQM's global expansion p

Return Abuse Goes Mainstream as Nearly Half of Consumers Use AI in Return Claims, New Riskified Research Finds22.6.2026 14:30:00 CEST | Press release

New global study shows normalization of strategic returns, widening regional differences, and rapid AI adoption reshaping ecommerce post-purchase risk Riskified (NYSE: RSKD), a global leader in ecommerce fraud detection and risk intelligence, today released a new global report, “Rewriting the Rules on Returns”, exploring how consumer attitudes and behaviors around ecommerce returns are evolving in the age of artificial intelligence (AI). The Riskified-commissioned study, conducted by eTail Insights, is based on a survey of 2,091 consumers across seven countries, alongside in-depth interviews with senior leaders from many of the largest retail companies in the world. The research finds that return abuse behaviors are increasingly normalized, while nearly half of consumers already use generative AI tools to assist with return or refund claims. At the same time, merchants are responding by tightening return policies, shortening return windows, and deploying advanced AI detection to better

Forrester Unveils Agendas For 2026 Technology & Innovation Forums In North America And EMEA22.6.2026 14:00:00 CEST | Press release

The Forums will equip technology leaders with the capabilities needed to operationalize AI and build high-performing IT organizations that deliver measurable business outcomes Forrester (Nasdaq: FORR) today announced the full conference agendas for its Technology & Innovation Forum Central (Austin, September 14–15, 2026), Technology & Innovation Forum EMEA (London, September 30–October 1, 2026), and Technology & Innovation Forum East (New York City, November 4–5, 2026). This year’s theme, “The IT Singularity,” dives into the new AI era in which AI has become ubiquitous and no longer a competitive advantage on its own. To succeed, technology leaders including chief information officers, chief data officers, and chief AI officers need to integrate AI into their operating models, modernize software development and IT operations, strengthen data and governance practices, and align technology investments with business strategy. Across the Forums, tech leaders and their teams will learn how

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye