Mendix, a Siemens business, announced the general availability of Mendix 10.18.
NeuVector announced the NeuVector platform includes new features – purpose-built for enterprise DevOpps and security teams – focused on automated end-to-end vulnerabilitty management and protection, expanded registry scanning, and host protection in production environments.
The platform additions include the new Vulnerability and Compliance Explorer for quickly investigating, prioritizing, reporting, and mitigating potentially damaging vulnerability and compliance issues. High performance large-registry scanning and enhanced host (node) security processes have also been added.
NeuVector's new Vulnerability and Compliance Explorer enables DevOps and security teams to:
- Assess the current state of container security by identifying assets, scanning registries, and receiving comprehensive reports.
- Prioritize which images, nodes, or containers are most in need of attention.
- Respond to and mitigate any areas with security and compliance risk.
- Improve ongoing security procedures (and rescan to confirm improvements).
Importantly, the Explorer adds virtual patching as part of its response mechanism. This critical security feature gives DevOps teams the ability to virtually patch vulnerabilities in production containers or hosts without needing to actually patch or remediate that vulnerability in a library or package. Doing so gives enterprises confidence deploying containers in production environments that have vulnerabilities without a current fix available. NeuVector is able to do this by whitelisting all authorized application container behavior – such as network connections, processes, and file activity – either through NeuVector's behavioral learning processes or automatically via security policy as code. Any attempted exploit on a workload or host protected by NeuVector is then detected, alerted, and blocked (depending on user settings). In addition to virtually patching vulnerabilities, these same run-time security capabilities also protect enterprises against embedded malware, zero-day attacks, and insider or phishing attacks.
The platform release also introduces high performance scanning for images in large registries. DevOps teams can deploy additional scanners to run in parallel, quickly scanning registries with thousands or even tens of thousands of images. This new capability builds on NeuVector's market-leading scanner performance that easily handles enterprise requirements.
Additionally, the release strengthens host (node) protection in production environments. Now, just as NeuVector automatically baselines and whitelists container processes to detect suspicious activity, host processes are baselined and hosts can be put into an alert-or-block mode. This enhances existing host protections that include detecting privilege escalations as well as known suspicious processes (such as reverse shells, port scanning, and tunnels). Hosts are automatically scanned for vulnerabilities and run Docker and Kubernetes standards-based or customized compliance checks.
"Today's additions to the NeuVector platform make it even easier for DevOps and security teams to achieve end-to-end vulnerability insight and protection – helping them get in front of any issues and ensure their security compliance," said Gary Duan, CTO, NeuVector. "Alongside our new high-performance parallel scanning and reinforced host process protections, we're proud to make these key platform additions available to our customers. There's no easier or more thorough way to automate container security across the entire lifecycle."
Industry News
Red Hat announced the general availability of Red Hat OpenShift Virtualization Engine, a new edition of Red Hat OpenShift that provides a dedicated way for organizations to access the proven virtualization functionality already available within Red Hat OpenShift.
Contrast Security announced the release of Application Vulnerability Monitoring (AVM), a new capability of Application Detection and Response (ADR).
Red Hat announced the general availability of Red Hat Connectivity Link, a hybrid multicloud application connectivity solution that provides a modern approach to connecting disparate applications and infrastructure.
Appfire announced 7pace Timetracker for Jira is live in the Atlassian Marketplace.
SmartBear announced the availability of SmartBear API Hub featuring HaloAI, an advanced AI-driven capability being introduced across SmartBear's product portfolio, and SmartBear Insight Hub.
Azul announced that the integrated risk management practices for its OpenJDK solutions fully support the stability, resilience and integrity requirements in meeting the European Union’s Digital Operational Resilience Act (DORA) provisions.
OpsVerse announced a significantly enhanced DevOps copilot, Aiden 2.0.
Progress received multiple awards from prestigious organizations for its inclusive workplace, culture and focus on corporate social responsibility (CSR).
Red Hat has completed its acquisition of Neural Magic, a provider of software and algorithms that accelerate generative AI (gen AI) inference workloads.
Code Intelligence announced the launch of Spark, an AI test agent that autonomously identifies bugs in unknown code without human interaction.
Checkmarx announced a new generation in software supply chain security with its Secrets Detection and Repository Health solutions to minimize application risk.
SmartBear has appointed Dan Faulkner, the company’s Chief Product Officer, as Chief Executive Officer.
Horizon3.ai announced the release of NodeZero™ Kubernetes Pentesting, a new capability available to all NodeZero users.