
AI and the software supply chain: AppSec just got way more complicated
In addition to the extensive list of components in today's software, AI relies on open-source AI models and training data. What could possibly go wrong?

Freelance writer. Ericka Chickowski's award-winning writing on business and technology have appeared in dozens of trade and consumer magazines, including Entrepreneur, Consumers Digest, Channel Insider, CIO Insight, Dark Reading, DevOps.com and InformationWeek. She's made it her specialty to explain in plain English how technology trends affect real people.
find Ericka Chickowski on:

In addition to the extensive list of components in today's software, AI relies on open-source AI models and training data. What could possibly go wrong?

Hackers are having a field day targeting developers with supply chain attacks, which open doors to other compromises. Here's why — and what to do about it.

Your security operations team should be planning how to stay ahead of these emerging AI risks.

The path to success for SBOMs faces many hurdles. Here are key factors that threaten your investments.

Here's why SBOMs are essential for cybersecurity incident response — and how to put them to work.

Here's why some security practitioners question the term — and what they think app sec teams should focus on instead.

Flaws quickly spread across the supply chain. Here's how researchers at Alpha Omega and beyond are automating fixes.

Teams are mired in CVEs, the NVD (which is fed by CVE data), and the CVSS. Experts explain why it's time to modernize.

CISA's C-SCRM turns a page on a busy year for federal software supply chain security directives and guidance. Will it move the needle?
Get your 14-day free trial of Spectra Assure
Get Free TrialMore about Spectra Assure Free Trial