Le Lézard
Classified in: Science and technology
Subjects: Photo/Multimedia, Conference, Event, Product/Service, Trade Show, Survey, Webcast

JFrog Software Supply Chain Report Shows Most Critical Vulnerabilities Scores Are Misleading


(KubeCon + CloudNativeCon Europe) ? JFrog Ltd. ("JFrog") (NASDAQ: FROG), the Liquid Software company and creators of the JFrog Software Supply Chain Platform, today released the findings of its annual Software Supply Chain State of the Union report 2024, which identifies emerging development trends, risks and best practices for securing enterprise software supply chains.

"DevSecOps teams worldwide are navigating a volatile field of software security, where innovation frequently meets demand in an age of rapid AI adoption," said Yoav Landman, CTO and Co-Founder, JFrog. "Our data provides security and development organizations with a comprehensive snapshot of the rapidly evolving software ecosystem, including notable CVE scoring errors, perspectives on the security implications of using GenAI to code, the most risky packages to allow your organization to use for development, and more, so they can make more informed decisions."

Key Findings

JFrog's Software Supply Chain State of the Union report combines JFrog Artifactory developer usage data amongst 7K+ organizations, original CVE analysis by the JFrog Security Research team, and commissioned third-party survey data of 1,200 technology professionals worldwide to provide context into the broad, rapidly evolving software supply chain landscape. Key findings include:

"Vulnerabilities are growing in number year over year, but that does not necessarily mean they are growing in severity. It's clear that IT teams are willing to invest in new tools to bolster their security, but knowing where to put those tools, use their team's time, and streamline processes is critical to keeping their SDLC secure," said Shachar Menashe, Sr. Director, JFrog Security Research. "We designed this report to go beyond trend analysis, providing both counsel and clarity on the technology business leaders use to make decisions, whether it's on AI navigation, malicious code, or security solutions."

For deeper insights from the JFrog Software Supply Chain State of the Union 2024 download the full report. You can also register to join JFrog security and developer experts on Wednesday, April 17, 2024 at 10:00 a.m. PT for a webinar, "Safeguarding Software Supply Chains in 2024: A Deep Dive into the State of the Union Report," detailing the challenges and complexities of managing and securing the software supply chain.

Like this Story? Share this: @JFrog shares research findings in their annual Software Supply Chain State of the Union 2024 report. Discover the emerging #DevSecOps trends, risks & best practices to securing enterprise #SoftwareSupplyChain. Learn more: https://jfrog.co/3TzsVNg #SoftwareSupplyChain #DevOps #DevSecOps #cybersecurity #containers #CVE

About JFrog

JFrog Ltd. (NASDAQ: FROG) is on a mission to create a world of software delivered without friction from developer to device. Driven by a "Liquid Software" vision, the JFrog Software Supply Chain Platform is a single system of record that powers organizations to build, manage, and distribute software quickly and securely, ensuring it is available, traceable, and tamper-proof. The integrated security features also help identify, protect, and remediate against threats and vulnerabilities. JFrog's hybrid, universal, multi-cloud platform is available as both self-hosted and SaaS services across major cloud service providers. Millions of users and 7K+ customers worldwide, including a majority of the Fortune 100, depend on JFrog solutions to securely embrace digital transformation. Once you leap forward, you won't go back! Learn more at jfrog.com and follow us on Twitter: @jfrog.

Cautionary Note About Forward-Looking Statements

This press release contains "forward-looking" statements, as that term is defined under the U.S. federal securities laws, including but not limited to statements regarding the JFrog Software Supply Chain Report.

These forward-looking statements are based on our current assumptions, expectations and beliefs and are subject to substantial risks, uncertainties, assumptions and changes in circumstances that may cause JFrog's actual results, performance or achievements to differ materially from those expressed or implied in any forward-looking statement. There are a significant number of factors that could cause actual results, performance or achievements, to differ materially from statements made in this press release, including but not limited to risks detailed in our filings with the Securities and Exchange Commission, including in our annual report on Form 10-K for the year ended December 31, 2023, our quarterly reports on Form 10-Q, and other filings and reports that we may file from time to time with the Securities and Exchange Commission. Forward-looking statements represent our beliefs and assumptions only as of the date of this press release. We disclaim any obligation to update forward-looking statements.


These press releases may also interest you

at 00:45
Claudio Bono, Managing Director for two independent Hotels in Silicon Valley, is thrilled to unveil a groundbreaking platform and an idea that will transform the landscape of the urgent unhoused crisis and social issues. Leveraging his extensive...

26 avr 2024
OKX, a leading Web3 technology company, today announced the integration of Side Protocol with the OKX Wallet. Side Protocol is a cross-chain middleware protocol designed to enable seamless communication and asset transfer between heterogeneous...

26 avr 2024
OKX, a leading Web3 technology company, today announced the integration of Biturbo with the OKX Wallet. Bitrubo is an innovative layer 2 solution that brings the power of Ethereum's smart contracts to the Bitcoin network. Biturbo is designed as an...

26 avr 2024
The report titled "Cognitive Security Market by Component (Services, Solutions), Security Type (Application, Cloud, Cybersecurity), Application, Deployment Mode, Enterprise Type, Vertical - Global Forecast 2024-2030" is now available on...

26 avr 2024
The report titled "Anti-Mullerian Hormone Test Market by Product (POC Testing, Self-check Kits), End-User (Commercial Labs, Research & development), Distribution, Use - Global Forecast 2024-2030" is now available on 360iResearch.com's offering,...

26 avr 2024
Rakovina Therapeutics Inc. a biopharmaceutical company committed to advancing new cancer therapies based on novel DNA-damage response technologies announced the financial results for its fourth quarter and fiscal year ending December 31, 2023 and...



News published on and distributed by: