Get the latest tech news

Tech giants grapple with ballooning software supply chain risk, JFrog report reveals


JFrog's Software Supply Chain State of the Union 2024 report reveals ballooning risks, misleading vulnerability scores, and the challenges of AI in coding, urging organizations to prioritize comprehensive security solutions and proactive measures to safeguard their software ecosystems.

The JFrog Security Research team found that 74% ofthe reported common CVEs with High and Critical CVSS scoreson the top 100 DockerHub community images aren’t actuallyexploitable. (Image Credit: JFrog)The report also highlights the hidden risks lurking in software supply chains, with human error and exposed secrets accounting for a notable portion of potential vulnerabilities. Menashe also highlighted a potential threat for 2024, stating, “One thing CISOs need to be on the lookout for in 2024 is attackers increasingly exploiting the fact that AI will sometimes make up libraries that don’t exist.

Get the Android app

Or read this on Venture Beat

Read more on:

Photo of tech giants

tech giants

Photo of JFrog report

JFrog report

Related news:

News photo

Microsoft Deal, Apple-Google Talks Show Tech Giants Need AI Help

News photo

Tech Giants Face EU Grilling Over Use of Generative AI Tools

News photo

Elon Musk v OpenAI: tech giants are inciting existential fears to evade scrutiny - Moguls extol the fruits of artificial intelligence, but seek to hide its science from public view