Log4j stories
Chainguard extends secure libraries to Python, Java, JS
Last week
#
application security
#
devsecops
#
supply chain
Chainguard expands its rebuilt-from-source Libraries to Python, Java and JavaScript, targeting malware risks in AI-driven software supply chains.
Azul & Chainguard partner on zero-CVE Java containers
Thu, 19th Jun 2025
#
devops
#
supply chain
#
apm
Azul and Chainguard have teamed up to offer zero-CVE Java containers, enhancing security and support for enterprise Java workloads with Hardened, source-built images.
Azul boosts Java security with improved runtime vulnerability detection
Fri, 13th Jun 2025
#
devops
#
application security
#
apm
Azul's Intelligence Cloud now cuts Java security false positives by up to 99%, using runtime data to boost vulnerability detection accuracy for DevOps teams.
Azul unveils Java tool to cut false positives by up to 99%
Wed, 11th Jun 2025
#
devops
#
application security
#
apm
Azul has launched a Java vulnerability tool that cuts false positives by up to 99%, improving threat detection accuracy for production environments.
88% of companies consider ditching Oracle Java costs
Fri, 31st Jan 2025
#
devops
#
apm
#
ai
A survey by Azul reveals that 88% of enterprises are exploring alternatives to Oracle Java, citing rising costs and cloud expense concerns as key factors.
Qualys launches report to tackle tech debt & cyber risks
Wed, 10th Jul 2024
#
advanced persistent threat protection
#
cto
#
cyber threat
Qualys has launched a no-cost Tech Debt Report to help organisations identify and mitigate cyber risks from outdated technology.
Sonatype launches SBOM Manager to enhance software security
Mon, 8th Jul 2024
#
saas
#
partner programmes
#
supply chain
Sonatype releases its SBOM Manager, a crucial tool to help organisations track and manage software components.
Check Point introduces API Discovery to bolster cloud security
Thu, 23rd May 2024
#
firewalls
#
digital transformation
#
cloud security
Check Point fortifies its CloudGuard WAF with a new API Discovery feature, aiming to enhance cloud security by identifying and mitigating API vulnerabilities.
Cato Networks reveals insecure protocols widespread in inaugural SASE report
Wed, 15th May 2024
#
firewalls
#
network security
#
casb
Cato Networks exposes systemic cybersecurity gaps in inaugural threat report, revealing insecure protocols employed across WAN by all examined organisations.
New Relic report uncovers ongoing trends in Java adoption
Wed, 1st May 2024
#
encryption
#
fintech
#
martech
New Relic's fourth annual State of the Java Ecosystem report reveals latest trends in Java development and adoption, highlighting significant growth in Java 21's uptake and shifts in preferred Java Developer Kits.
Cloudflare reports 25% spike in global traffic & rise in cyber threats in 2023
Mon, 18th Dec 2023
#
hyperscale
#
public cloud
#
it automation
Cloudflare reveals a 25% surge in global internet traffic and heightened cybersecurity threats in its 2023 report.
Beware the lasting legacy of the Log4j vulnerability
Mon, 18th Dec 2023
#
application security
#
open source
#
software development
Efforts to mitigate the Log4j vulnerability involve updating to patched versions of Log4j, but the process continues to be complex.
The IT industry is stalling on SBOMs when it should be working on best practice
Tue, 24th Oct 2023
#
open source
#
software
#
it industry
SBOMs will be key to dealing with the next big vulnerability and incredibly useful in the fight to minimise the effects of smaller weaknesses.
Microsoft Exchange and Log4j continue to be top points of compromise
Fri, 24th Mar 2023
#
mfa
#
advanced persistent threat protection
#
email security
Arctic Wolf, a global specialist in security operations, has published its annual Arctic Wolf Labs Threat Report, revealing a year of turbulence.
FortiGuard Labs reports an increase of 50% in wiper malware
Fri, 24th Feb 2023
#
malware
#
firewalls
#
ransomware
Ransomware threats remain at peak levels with no evidence of slowing down globally with new variants enabled by Ransomware-as-a-Service (RaaS).
Iran-sponsored group using GitHub to deploy custom malware
Tue, 13th Dec 2022
#
advanced persistent threat protection
#
apm
#
software development
The Secureworks Counter Threat Unit (CTU) has uncovered a subgroup of Iranian Cobalt Mirage using GitHub to store and deploy malware.
Optus, Medibank – and supply chains flying under the radar
Wed, 7th Dec 2022
#
application security
#
devsecops
#
supply chain
Software supply chain attacks are becoming the biggest concern in cyber security, with organisations globally at risk.
72% of organisations remain vulnerable to Log4j vulnerability
Thu, 1st Dec 2022
#
breach prevention
#
cybersecurity
#
data breach
The data highlights legacy vulnerability remediation challenges, which are the root cause of the majority of data breaches.
Video: 10 Minute IT Jams - An update from Azul
Wed, 9th Nov 2022
#
martech
#
application security
#
advanced persistent threat protection
Today on 10 Minute IT Jams, we are joined by Erik Costlow, who is the Senior Director of Product Management, Azul.
Time to rethink how to fix software supply chain vulnerabilities
Mon, 7th Nov 2022
#
ransomware
#
it automation
#
supply chain
IT teams are still grappling with the Log4Shell vulnerability, affecting Java enterprise applications and making holiday surprises likely.