Veracode's profile picture. Adaptive application security for the AI era

Veracode

@Veracode

Adaptive application security for the AI era

New data: Not all GenAI is created equal for secure coding. Our update shows OpenAI’s GPT-5 reasoning models hit 70-72% security pass rates while most rivals stall at 50-59%. Reasoning models use internal "code review" steps, which makes the difference. veracode.com/wp-content/upl…

Veracode's tweet image. New data: Not all GenAI is created equal for secure coding. Our update shows OpenAI’s GPT-5 reasoning models hit 70-72% security pass rates while most rivals stall at 50-59%. Reasoning models use internal "code review" steps, which makes the difference.
veracode.com/wp-content/upl…

What if a single typo could expose your software supply chain? ⚠️ The recent npm typosquatting attack on GitHub Actions shows how real this risk is. Our latest guide explains these attacks and shares a 4-step framework to prevent, detect, & respond. 🔗 veracode.com/blog/software-…

Veracode's tweet image. What if a single typo could expose your software supply chain? ⚠️
The recent npm typosquatting attack on GitHub Actions shows how real this risk is. Our latest guide explains these attacks and shares a 4-step framework to prevent, detect, & respond.

🔗 veracode.com/blog/software-…

🚨 Veracode Threat Research uncovered a malicious npm package targeting GitHub Actions. The team found “@acitons/artifact,” a typosquat of the legitimate @actions/artifact (206k+ downloads) designed to exfiltrate tokens & publish malicious artifacts. 🔗 veracode.com/blog/malicious…

Veracode's tweet image. 🚨 Veracode Threat Research uncovered a malicious npm package targeting GitHub Actions. The team found “@acitons/artifact,” a typosquat of the legitimate @actions/artifact (206k+ downloads) designed to exfiltrate tokens & publish malicious artifacts.

🔗 veracode.com/blog/malicious…

Cloud development moves fast, bringing both innovation and risk. ⚡ Learn how to secure cloud-native apps with a unified, proactive approach—from blocking malicious packages to preventing supply chain attacks and ensuring continuous compliance. 🔗 veracode.com/blog/applicati…

Veracode's tweet image. Cloud development moves fast, bringing both innovation and risk. ⚡

Learn how to secure cloud-native apps with a unified, proactive approach—from blocking malicious packages to preventing supply chain attacks and ensuring continuous compliance.

🔗 veracode.com/blog/applicati…

🚀 DevOps wants speed. Security wants safety. What if both could win? Our latest blog breaks down a six-step DevSecOps framework that embeds security into every stage of development so you can build secure apps faster and eliminate bottlenecks. 🔗 veracode.com/resources/devs…

Veracode's tweet image. 🚀 DevOps wants speed. Security wants safety. What if both could win?

Our latest blog breaks down a six-step DevSecOps framework that embeds security into every stage of development so you can build secure apps faster and eliminate bottlenecks.

🔗 veracode.com/resources/devs…

🚀 The new era of #SAST is here. Join Veracode leaders Derek Maki & Andrew Simmons + guest speaker, @Forrester Senior Analyst Janet Worthington for game-changing insights on the future of application security. 📅 Nov 4 | 11 AM ET 👉 Save your spot: veracode.com/resources/webi…

Veracode's tweet image. 🚀 The new era of #SAST is here. 

Join Veracode leaders Derek Maki & Andrew Simmons + guest speaker, @Forrester Senior Analyst Janet Worthington for game-changing insights on the future of application security.

📅 Nov 4 | 11 AM ET

👉 Save your spot: veracode.com/resources/webi…

Data from thousands of apps shows 63% of financial services firms have critical security debt—13% higher than other industries. The average time to fix flaws is 276 days. See how your AppSec program compares. Download the 2025 SOSS report for BFSI veracode.com/resources/anal…...

Veracode's tweet image. Data from thousands of apps shows 63% of financial services firms have critical security debt—13% higher than other industries. 

The average time to fix flaws is 276 days.

See how your AppSec program compares. Download the 2025 SOSS report for BFSI  veracode.com/resources/anal…...

False positives drain productivity & weaken security. One enterprise lost 200+ dev hours in a quarter chasing false alarms—until teams shut scanners off. 🚨 Veracode's deep, continuous risk analysis enables teams teams to move fast with confidence. 🔗 veracode.com/blog/deep-cont…

Veracode's tweet image. False positives drain productivity & weaken security. One enterprise lost 200+ dev hours in a quarter chasing false alarms—until teams shut scanners off. 🚨 Veracode's deep, continuous risk analysis enables teams teams to move fast with confidence.

🔗 veracode.com/blog/deep-cont…

Join Veracode Co-Founder Chris Wysopal at (ISC)² Security Congress on Oct 29 at 2:45 PM. His session “Secure by Design: Are We Winning?” will share new 2025 data on OWASP Top 10 flaws and where the industry stands today. 📅 Add to your agenda: …5isc2securitycongress.eventscribe.net/agenda.asp?sta…

Veracode's tweet image. Join Veracode Co-Founder Chris Wysopal at (ISC)² Security Congress on Oct 29 at 2:45 PM. His session “Secure by Design: Are We Winning?” will share new 2025 data on OWASP Top 10 flaws and where the industry stands today.

📅 Add to your agenda: …5isc2securitycongress.eventscribe.net/agenda.asp?sta…

Veracode’s own Sarah Law is featured in @SiliconRepublic sharing how mentorship, advocacy, and inclusive leadership can help open doors for the next generation of #WomenInTech. We’re proud to have her voice in this important conversation. siliconrepublic.com/careers/tech-l…

Veracode's tweet image. Veracode’s own Sarah Law is featured in @SiliconRepublic sharing how mentorship, advocacy, and inclusive leadership can help open doors for the next generation of #WomenInTech.

We’re proud to have her voice in this important conversation. 
siliconrepublic.com/careers/tech-l…

⚠️ First self-propagating npm worm spotted: GlassWorm targets VS Code extensions, hides with Unicode, steals creds, and uses blockchain + Google Calendar as C2 This is a major supply chain milestone. Stay ahead with key steps 🛡️ Full breakdown 👉 veracode.com/blog/glassworm…

Veracode's tweet image. ⚠️ First self-propagating npm worm spotted: GlassWorm targets VS Code extensions, hides with Unicode, steals creds, and uses blockchain + Google Calendar as C2

This is a major supply chain milestone. Stay ahead with key steps 🛡️

Full breakdown 👉 veracode.com/blog/glassworm…

Alert fatigue is draining teams. Veracode’s industry-leading 1.1% false positive rate means devs can focus on fixing real issues fast. Accurate results save time, reduce risk, & strengthen security posture. Read our State of Software Security 2025 report: bit.ly/3W7JbiD

Veracode's tweet image. Alert fatigue is draining teams. Veracode’s industry-leading 1.1% false positive rate means devs can focus on fixing real issues fast. Accurate results save time, reduce risk, & strengthen security posture.

Read our State of Software Security 2025 report: bit.ly/3W7JbiD

Security debt slows devs while attackers exploit vulnerable apps. 🔒 Modern AppSec tools embed security in workflows, reducing risk and speeding delivery. Stronger apps, faster releases, measurable ROI. 🚀 Read more: veracode.com/blog/investing…

Veracode's tweet image. Security debt slows devs while attackers exploit vulnerable apps. 

🔒 Modern AppSec tools embed security in workflows, reducing risk and speeding delivery. Stronger apps, faster releases, measurable ROI. 🚀

Read more: veracode.com/blog/investing…

Thrilled to be named a Leader in the 2025 Gartner® Magic Quadrant™ for Application Security Testing for the 11th consecutive time! We believe this reflects our commitment to helping the world build secure software. Full report: veracode.com/resources/anal… #GartnerMagicQudarant

Veracode's tweet image. Thrilled to be named a Leader in the 2025 Gartner® Magic Quadrant™ for Application Security Testing for the 11th consecutive time! We believe this reflects our commitment to helping the world build secure software. Full report: veracode.com/resources/anal…
 #GartnerMagicQudarant

Veracode repostou

🔥 Le damos la bienvenida a @Veracode como sponsor de #CyberFinance en esta @ekoparty 2025 🚀🚀🚀

CyberFinanceAR's tweet image. 🔥 Le damos la bienvenida a @Veracode  como sponsor de #CyberFinance en esta @ekoparty
2025 🚀🚀🚀

October is Cybersecurity Awareness Month. This year's theme, "Stay Safe Online," is about building a strong cyber-safe culture. We want to know which security challenge is top of mind for your team. What keeps you up at night? Share in the comments! #CybersecurityAwarenessMonth

Veracode's tweet image. October is Cybersecurity Awareness Month. This year's theme, "Stay Safe Online," is about building a strong cyber-safe culture. We want to know which security challenge is top of mind for your team. What keeps you up at night? Share in the comments!

#CybersecurityAwarenessMonth

For the 11th time in a row, Veracode has been named a Leader in the 2025 Gartner® Magic Quadrant™ for Application Security Testing. Thank you to our customers and partners for trusting us on this journey.

Veracode's tweet image. For the 11th time in a row, Veracode has been named a Leader in the 2025 Gartner® Magic Quadrant™ for Application Security Testing. 

Thank you to our customers and partners for trusting us on this journey.

Don’t just shift left—embed security across your SDLC. Veracode enables developers to build secure software from the start with seamless workflows, continuous visibility, & automated remediation. Faster delivery. Stronger security. Greater confidence. 👉 veracode.com/resources/eboo…

Veracode's tweet image. Don’t just shift left—embed security across your SDLC.

Veracode enables developers to build secure software from the start with seamless workflows, continuous visibility, & automated remediation. Faster delivery. Stronger security. Greater confidence.

👉 veracode.com/resources/eboo…

At today’s pace of software dev, speed & security must align. Veracode SAST (with binary analysis) catches flaws early in IDEs, repos & CI/CD—before they become a problem. ✅ <1.1% false positives ✅ AI-powered remediation ✅ Source + binary insights 🔗 veracode.com/blog/static-an…

Veracode's tweet image. At today’s pace of software dev, speed &amp;amp; security must align. Veracode SAST (with binary analysis) catches flaws early in IDEs, repos &amp;amp; CI/CD—before they become a problem.

✅ &amp;lt;1.1% false positives
✅ AI-powered remediation
✅ Source + binary insights

🔗 veracode.com/blog/static-an…

Go beyond “shift left” with Veracode SAST. From the first line of code, our SAST delivers broad coverage and accuracy so dev and security teams can move fast, stay secure, and build resilient apps. 👉 veracode.com/resources/whit…

Veracode's tweet image. Go beyond “shift left” with Veracode SAST.

From the first line of code, our SAST delivers broad coverage and accuracy so dev and security teams can move fast, stay secure, and build resilient apps.

👉 veracode.com/resources/whit…

Loading...

Something went wrong.


Something went wrong.