Israel-based API security company Wib on Tuesday announced the launch of its product, as well as a $16 million funding round.
Microsoft: China Flaw Disclosure Law Part of Zero-Day Exploit Surge
The world’s largest software maker is warning that China-based nation state threat actors are taking advantage of a one-year-old law to “stockpile” zero-days for use in sustained malware attacks.
Cloud-Native Application Security Firm Apiiro Raises $100 Million
Cloud-native application security provider Apiiro this week announced that it has raised $100 million in Series B funding. To date, the company has raised $135 million.
The new funding round was led by General Catalyst, with additional participation from Greylock and Kleiner Perkins.
US Gov Issues Supply Chain Security Guidance for Software Suppliers
The Cybersecurity and Infrastructure Security Agency (CISA), the National Security Agency (NSA), and the Office of the Director of National Intelligence (ODNI) this week released the second part of a three-part joint guidance on securing the software supply chain.
Versa Networks Raises $120 Million in Pre-IPO Funding Round
Secure access service edge (SASE) solutions provider Versa Networks announced on Thursday that it has raised $120 million in a pre-IPO funding round.
GitHub Account Renaming Could Have Led to Supply Chain Attacks
Checkmarx warns that attackers could have exploited the renaming of popular GitHub accounts to create malicious repositories using the vacated name and launch software supply chain attacks.
Microsoft M12 Leads $25 Million Valence Security Series A
Valence Security, an early-stage startup with roots in Israel, is attracting significant interest from venture capital investors.
Arnica Raises $7 Million to Protect Software Developers, Code
Behavior-based threat detection startup Arnica has raised $7 million in a seed funding round led by Joule Ventures and First Rays Venture Partners, with participation from several angel investors.
Apple Fixes Exploited Zero-Day With iOS 16.1 Patch
Apple on Monday shipped a major iOS update with fixes at least 20 documented security defects, including a kernel flaw that’s already being actively exploited in the wild.
Google’s GUAC Open Source Tool Centralizes Software Security Metadata
Google today introduced Graph for Understanding Artifact Composition (GUAC), an open source tool for centralizing build, security, and dependency metadata.
Developed in collaboration with Kusari, Purdue University, and Citi, the new project is meant to help organizations better understand software supply chains.












