Business Wire

Continuous Protection for the Cloud Era: Veracode Spotlights Latest Innovations for Advanced Software Security

Share

Veracode, a global leader in application risk management, today unveiled a suite of innovations that transform how enterprises approach security. The enhanced platform cuts vulnerability remediation time by up to 92 percent, while using proactive defense to prevent 60 percent of critical supply chain risk from ever entering organizations. These latest enhancements to Veracode’s Package Firewall and Risk Manager provide assurance, context, and continuity across the software development lifecycle.

“Security teams tell us they’re drowning in vulnerability alerts while missing the risks that actually matter. Our latest innovations flip the script—instead of endless firefighting, teams can now prevent threats proactively and focus remediation efforts where they’ll have maximum business impact,” said Derek Maki, Head of Product at Veracode.

Redefining Application Risk Management with End-to-End Risk Visibility

The latest enhancements to Veracode’s Application Risk Management platform enable security teams to identify and remediate vulnerabilities with greater speed and precision than ever before. Veracode Risk Manager sets a new standard for application security posture management (ASPM), featuring six new integrations with industry leaders, including Wiz. By aggregating and prioritizing issues across all sources, Risk Manager reduces vulnerability remediation time by up to 92 percent. This holistic view empowers security teams to act on the Best Next Action™—the actions that reduce the most riskwith precision.

Securing the Software Supply Chain

With 70 percent of critical security debt stemming from third-party code, enterprises are under unprecedented pressure to safeguard their software supply chains. Regulations like the European Union’s Digital Operational Resilience Act (DORA) highlight the vital role of open-source security in maintaining software supply chain integrity.

Veracode Package Firewall redefines supply chain security with an automated solution that blocks untrusted packages, before they can infiltrate development pipelines. Powered by advanced AI analysis, Package Firewall identifies and blocks 60 percent more malicious packages than competing solutions, effectively preventing vulnerabilities, malware, and policy violations from entering organizational systems.

Paired with Software Composition Analysis (SCA) and Malicious Package Detection, Veracode Package Firewall significantly reduces the risk of supply chain attacks by finding and neutralizing libraries harboring malicious code.

“Veracode Package Firewall represents a fundamental shift in how we think about supply chain security. While others are still alerting malicious packages after they’re in your codebase, we’re blocking them at the gate. This means security teams can finally get ahead of supply chain threats instead of scrambling to respond when legitimate packages get compromised or malicious packages slip through,” said Maki.

Built on proprietary threat intelligence, the product automates real-time risk management to ensure nefarious files and programs never make it into an organization’s codebase.

Empowering Developer Productivity with Frictionless Security

According to Gartner, Inc., organizations with a high-quality developer experience are 33 percent more likely to attain their business goals and 31 percent more likely to improve delivery flow. Veracode continues to champion developer productivity through an enhanced platform experience, featuring improved Integrated Developer Environment (IDE) plugins and new Git integrations that embed enterprise-level security directly into workflows.

“Developer productivity isn’t just a nice-to-have; it directly impacts your ability to ship secure software at market speed. Our IDE integrations deliver enterprise-grade security insights without the context switching that kills developer flow. This is why we’re seeing 35 percent faster remediation times with our IDE plugins and integrations, including Visual Studio, IntelliJ IDEA, and Eclipse, as well as GitHub, GitLab, and Azure DevOps,” said Maki.

Veracode’s latest developer-focused innovations eliminate operational inefficiencies and simplify workflows, removing unnecessary complexity from day-to-day DevSecOps processes. Additional innovations include:

  • AI-Assisted Login for Dynamic Application Security Testing (DAST): Automates complex authentication flows, reducing script setup time by 50 percent and expanding dynamic testing coverage.
  • Container and Infrastructure-as-Code (IaC) Results: Centralizes container and IaC findings in the Veracode Platform, streamlining vulnerability management.
  • Veracode Fix Usage Analytics: Provides a dashboard that tracks usage and Common Weakness Enumerations (CWEs) addressed, offering insights by IDE, project, and source file to optimize remediation.

Availability

Veracode’s latest product innovations are available to customers today. To find out more about the company’s application risk management platform and solutions, visit the website.

About Veracode

Veracode is a global leader in Application Risk Management for the AI era. Powered by trillions of lines of code scans and a proprietary AI-assisted remediation engine, the Veracode platform is trusted by organizations worldwide to build and maintain secure software from code creation to cloud deployment. Thousands of the world’s leading development and security teams use Veracode every second of every day to get accurate, actionable visibility of exploitable risk, achieve real-time vulnerability remediation, and reduce their security debt at scale. Veracode is a multi-award-winning company offering capabilities to secure the entire software development life cycle, including Veracode Fix, Static Analysis, Dynamic Analysis, Software Composition Analysis, Container Security, Application Security Posture Management, Malicious Package Detection, and Penetration Testing.

Learn more at www.veracode.com, on the Veracode blog, and on LinkedIn and X.

Copyright © 2025 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands, or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.

View source version on businesswire.com: https://www.businesswire.com/news/home/20250724023276/en/

Contacts

Press and Media:
Katy Gwilliam
Head of Global Communications, Veracode
kgwilliam@veracode.com

(c) 2024 Business Wire, Inc., All rights reserved.

Business Wire, a Berkshire Hathaway company, is the global leader in multiplatform press release distribution.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Copeland and Daikin Cooperation Brings Solutions to European Customers15.12.2025 14:00:00 CET | Press Release

Copeland and Daikin, two global leaders in heating, ventilation and air conditioning (HVAC) solutions, today announced the expansion of their existing joint venture into Europe. Through this cooperation, the companies will introduce advanced inverter swing rotary compressors, power electronics and controls designed specifically for European residential heat pumps. This collaboration underscores both companies’ commitment to accelerate the energy transition, with heat pumps recognized by industry reports as a cornerstone technology helping to reduce global carbon dioxide emissions by an estimated 500 million tons by 2030. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251215625806/en/ (Left to right) Ross B. Shuster, CEO of Copeland and Jiro Tomita, executive associate officer of Daikin As Europe rapidly transitions away from fossil fuels, the demand for residential heat pumps is growing in parallel with ambitious sustainabil

Visa Unveils New Global Stablecoins Advisory Practice15.12.2025 13:00:00 CET | Press Release

Visa (NYSE: V), a global leader in digital payments, today announced the launch of its Stablecoins Advisory Practice. The new value-added service offering by Visa Consulting & Analytics (VCA) provides actionable insights and recommendations to guide banks, fintechs, merchants, and businesses of all sizes on market fit, strategy, and implementation. As the stablecoin market cap surpasses $250 billion, Visa’s settlement volume has accelerated, reaching a $3.5 billion annualized run rate as of November 30. Businesses are turning to Visa’s new Stablecoins Advisory Practice to unlock growth opportunities. “Putting our members first has always been our mission, and we’re committed to exploring innovations that strengthen financial health and convenience for those we serve. Stablecoins may represent an opportunity to enhance speed and lower cost in payments, so with the support of Visa, we are evaluating how this technology could fit into our broader strategy to deliver meaningful value to ou

SK Capital Announces Definitive Agreement to Invest in Swixx BioPharma AG to Drive the Next Phase of Growth and Global Expansion15.12.2025 12:30:00 CET | Press Release

SK Capital Partners, LP (“SK Capital”), a New York-based private investment firm focused on the life sciences, specialty materials, and ingredients sectors, today announced that its affiliate has reached an agreement to invest in Swixx BioPharma AG (“Swixx” or the “Company”) to accelerate the Company’s next phase of growth and global expansion. The investment values the Company in excess of EUR €1.5 billion. Swixx is the global leader in rest-of-world pharmaceutical commercialization services dedicated to delivering innovative, life-saving medications to underserved and hard-to-reach markets. Stuart Swanson and Petr Němec, Swixx’s Co-Founders, and Jean-Michel Lespinasse and Petr Pipal, Swixx’s CEO and CFO, respectively, will all retain significant ownership stakes in Swixx as part of the transaction. Existing institutional investors HBM Healthcare Investments, a Swiss-listed investment company for the global healthcare market, and Mérieux Equity Partners, a leading healthcare-specializ

Safe Software Recognized as a Niche Player in 2025 Gartner® Magic Quadrant™ for Data Integration Tools15.12.2025 12:00:00 CET | Press Release

Safe Software, a global leader in data integration and transformation, has once again been recognized in the 2025 Gartner® Magic Quadrant™ for Data Integration Tools, marking the sixth consecutive year the company has been included in this prestigious report. Safe Software’s FME Platform has evolved well beyond its geospatial roots to become the only All-Data, Any-AI Integration Platform, empowering organizations worldwide to connect all data, applications, and AI technologies anywhere, at any scale, and with complete flexibility. With a community of more than 200,000 enthusiastic users and 25,000+ organizations in over 125 countries, FME continues to redefine data integration by delivering a no-code enterprise solution that unifies data movement, automation, and AI connectivity. “Our continued recognition reflects the trust of our customers and the innovation of our team,” said Don Murray, CEO and Co-Founder of Safe Software. “We’re proud to help organizations integrate data seamlessl

GENESIS Pharma announces a new partnership with Otsuka Pharmaceutical Europe Ltd. for the commercialization of donidalorsen for hereditary angioedema in Central and Eastern Europe15.12.2025 10:00:00 CET | Press Release

ANNOUNCEMENT FOR EUROPEAN MEDICAL & PHARMACEUTICAL TRADE MEDIA AND EUROPEAN FINANCIAL MEDIA ONLY GENESIS Pharma, a regional biopharma company focused on the commercialization of innovative medicines in Central and Eastern Europe, announces an exclusive agreementwithOtsuka Pharmaceutical Europe Ltd. (OPEL), the European operation of global healthcare company Otsuka Pharmaceutical Co., Ltd., for donidalorsen. Under the terms of the agreement, GENESIS Pharma will exclusively distribute and commercializedonidalorsen in fourteen markets: Bulgaria, Croatia, Cyprus, Czech Republic, Estonia, Greece, Hungary, Latvia, Lithuania, Malta, Poland, Romania, Slovakia and Slovenia. In November 2025, the Committee for Medicinal Products for Human Use (CHMP) adopted a positive opinion, recommending the granting of a marketing authorisation for donidalorsen in the routine prevention of recurrent attacks of hereditary angioedema (HAE) in adults and adolescents aged 12 years and older. The CHMP opinion is c

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye