Conference
|
Nov 5, 2026
OWASP 全球 AppSec 美国
Register
Conference
|
Oct 29, 2026
OWASP LASCON
Register
Conference
|
Sep 24, 2026
Gartner 2026 年安全与风险管理峰会
Register
Blog
|
Aug 24, 2026
Enabler 7: Developer Recognition
read more
Blog
|
Jul 29, 2026
Named in the Gartner® Hype Cycle™ for Application Security 2026
read more
Blog
|
Jul 21, 2026
Are you a CISO or Engineering Leader worried about the Security and Cost of LLM code generation?
read more
Case Study
|
Jan 6, 2026
Kamer van Koophandel Sets the Standard for Developer-Driven Security at Scale
read more
Case Study
|
Oct 8, 2025
Going for Gold: Soaring Secure Code Standards at Paysafe
read more
Case Study
|
Aug 15, 2024
DigitalOcean Decreases Security Debt with Secure Code Warrior
read more
News Article
|
Aug 27, 2026
Forbes: A New Frontier: NSA Proposes “Security By Design” Considerations For AI Enablement
read more
Media Release
|
Aug 21, 2026
Techpartner.news: Secure Code Warrior introduces framework to govern AI use in software development
read more
News Article
|
Aug 19, 2026
DevOps.com: Are LLMs Equally Good (or Bad) at Building Secure Software?
read more
eBook
|
Jul 21, 2026
Which AI Model Codes Most Securely?
read more
One Pager
|
Jul 7, 2026
Citizen AI by Secure Code Warrior
read more
Whitepaper
|
Jun 23, 2026
Understand how AI is transforming software development—and how security must evolve with it.
read more
Resource library

Insights from experts shaping secure development

Access expert content on secure coding, AI governance, and software risk management.

Filters
clear
Showing 0 of 100
By Category
By Role
No items found.
By Product
No items found.
Button Text
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Webinar
events-webinars
January 11, 2024
March 20, 2023

为何 SBOM 对准备《网络韧性法案》至关重要?

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 28, 2022

大型医疗保健提供商如何通过开发人员驱动的方法转型其安全文化

参加本次研讨会,听取 Contrast Security 联合创始人兼 CTO Jeff Williams 和 Secure Code Warrior 联合创始人兼 CTO Matias Madou 的分享。

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
July 6, 2020

嵌入式系统与赋能您的团队

物联网、生产系统的自动化控制和管理只是推动嵌入式系统发展的几个因素。但随着我们越来越依赖嵌入式软件,安全漏洞的影响是什么,我们又该如何缓解?

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
January 18, 2021

超越合规性:交付引人入胜的应用安全的技巧

您的开发团队是否将应用安全培训视为走过场?您是否希望他们更多地参与网络安全?本节将涵盖创建让开发人员主动参与的培训计划的技巧!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
October 8, 2020

获得出色 SOC 2 报告的最佳实践

在接手 SOC 报告项目时,有时会感到非常不知所措。这就是为什么我们与一些行业专家合作,探讨获取 SOC2 报告时的一些顶级技巧。

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 17, 2021

2021 HMG Live! 硅谷 CISO 最高领导力峰会

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
July 14, 2021

研讨会:从 DevOps 到 DevSecOps:从一开始就交付质量与安全兼备的发展

我们的专家将讨论在 SDLC 中实施安全培训和应用安全的关键考虑因素,如何通过游戏化学习吸引开发人员,以及如何在没有任何停机时间或高昂成本的情况下嵌入安全测试。

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
November 8, 2021

课程演练 (Walkthroughs) 深入剖析

了解我们全新的演练与任务 (Walkthrough & Missions) 沉浸式实战培训活动如何通过经过验证的渐进式学习方法提高开发人员参与度并提升技能。

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 23, 2021

技能提升:填补 AppSec 安全差距的缺失环节

听取 Zip 安全主管 Peter Robinson 和 Secure Code Warrior 联合创始人兼 AppSec 培训师 Jaap Singh 的深入讨论,探讨为什么提升员工的网络安全技能对于填补安全差距至关重要。

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 20, 2023

开发人员驱动安全的投资回报率 (ROI)

在投资技术栈或额外培训计划时,每个人都希望获得良好的投资回报,但在安全方面,人们需要进行超越简单 ROI 计算的长远布局。了解对开发人员驱动安全的投资如何不仅能节省昂贵的漏洞费用,还能创造主动且具有成本效益的策略。

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
August 3, 2023

通往安全倡导者之路

Workday 如何利用敏捷安全学习提升开发人员技能。

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
May 24, 2023
May 23, 2023

人员、流程与技术

加入与 Vis Chirravuri 的对话,亲身体验他如何为其安全代码学习计划开发人员、流程和技术方法

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
April 18, 2023
April 17, 2023

Secure Code Warrior 用户组 APAC

欢迎来到 SCW 用户组,这是一个与其他 SCW 管理员和用户建立联系的社区,以详细了解他们如何管理开发人员驱动的安全计划。学习使用平台的技巧和诀窍!

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Blog
blog-posts
July 25, 2023
July 25, 2023

开箱即用的代码:为什么安全开发人员可以不受限制地交付

似乎令人困惑的是,大多数开发为关键基础设施、汽车、医疗技术以及介于两者之间的一切提供支持的代码的开发人员,在没有事先验证其安全能力的情况下就这样做了。另一方面,由于存在种种安全门户,为什么具有安全技能的开发人员需要在不断放缓的开发流程中与其他所有人一起排队,他们一再证明自己知道如何安全地构建东西?

Learn More
No items found.
No items found.
July 25, 2023
Blog
blog-posts
July 24, 2023
July 24, 2023

敏捷学习平台的投资回报率

解决代码漏洞和技术债务的成本很高,并且继续抑制软件开发团队的生产力。了解如何为安全代码实施敏捷学习平台可以更有效地培训开发人员掌握安全编码技术,以便在 SDLC 中更快更早地修复漏洞,并从一开始就防止漏洞,从而大幅节省成本。本博客概述了如何考虑敏捷学习平台的财务影响和投资回报率。

Learn More
No items found.
No items found.
July 24, 2023
Blog
blog-posts
July 13, 2023
July 13, 2023

提高安全编码的标准:将敏捷学习融入面向未来的企业

我们宣布结束C轮融资,为下一阶段的使命筹集了5000万美元:帮助更多开创性组织利用其开发团队的力量来遏制常见漏洞。

Learn More
No items found.
No items found.
July 13, 2023
Blog
blog-posts
July 13, 2023
July 13, 2023

I guess this is growing up: Coming of age with CISA’s Secure-by-Design Guidelines

The recently released National Cybersecurity Strategy signals the need for a seismic cultural shift for most companies, with the most glaring recommendation coming in the form of security accountability falling primarily on software vendors. This is a positive step, though it is sure to cause teething problems, especially as many organizations struggle to accurately assess their security maturity across the board, particularly among the development cohort.

Learn More
No items found.
No items found.
July 13, 2023
Blog
blog-posts
July 13, 2023
July 13, 2023

如何通过敏捷学习安全代码来赢得开发人员的青睐

了解如何将安全代码的敏捷学习平台嵌入到开发人员的工作流程和工具中,并开始建立安全代码学习的文化。

Learn More
No items found.
No items found.
July 13, 2023
Blog
blog-posts
June 30, 2023
June 30, 2023

PCI-DSS 4.0 将比您想象的更快问世,这是提升组织网络弹性的机会

今年早些时候,PCI安全标准委员会公布了其支付卡行业数据安全标准(PCI DSS)的4.0版本。尽管组织要到2025年3月才能完全遵守4.0,但此次更新是他们迄今为止最具变革性的更新,将要求大多数企业评估(并可能升级)复杂的安全流程和技术堆栈的元素。除此之外,还为开发人员实施了基于角色的安全意识培训和定期的安全编码教育。

Learn More
No items found.
No items found.
June 30, 2023
Blog
blog-posts
June 22, 2023
June 22, 2023

从训练到敏捷学习:安全代码敏捷学习平台如何彻底改变您的安全软件方法

了解用于安全代码的敏捷学习平台如何通过在 SDLC 中左侧开始提高开发人员技能、降低风险并随着时间的推移降低技术债务。

Learn More
No items found.
No items found.
June 22, 2023
Blog
blog-posts
June 1, 2023
June 1, 2023

重新思考组织层次结构中的组织层次结构

通过帮助在严密的层次结构中定义我们的应用程序和软件,并以最低权限执行这些政策,我们可以确认我们的应用程序和软件在面前保护我们的应用程序和软件,也能生存和发展。

Learn More
No items found.
No items found.
June 1, 2023
Blog
blog-posts
May 19, 2023
May 19, 2023

主动防护:利用国家网络安全战略进行高级威胁防御

CISA的国家网络安全战略是我们全面提高软件标准并最终开创安全技能开发人员新时代的最佳机会。

Learn More
No items found.
No items found.
May 19, 2023
Blog
blog-posts
April 19, 2023
April 19, 2023

仔细研究 MVCrequestMatcher Spring 漏洞

2023 年 3 月 20 日,Spring Security Advisories 发布了一篇博客文章,引用了内部发现的漏洞 CVE-2023-20860。没有透露任何详细信息,只是这是与使用 “mvcMatchers” 有关的访问控制问题。Spring 开发人员已经修复了这个问题,建议进行版本更新。由于安全是我们在Secure Code Warrior的主要关注点,因此我们决定更深入地研究这个MvcRequestMatchers漏洞,找出核心问题所在。

Learn More
No items found.
No items found.
April 19, 2023
Blog
blog-posts
April 14, 2023
April 14, 2023

Secure Code Warriorcienceux 首席执行官员 ceircienceux 联合创始人彼得斯·丹希厄表示:“每一个人都应该在他们的网络安全中开启并接受网络安全中所在的扮演角色”

CyberNews 与 Secure Code Warrior 首席执行官兼联合创始人彼得斯·丹希克斯进行问答。

Learn More
No items found.
No items found.
April 14, 2023
Blog
blog-posts
March 27, 2023
March 27, 2023

提高 SDLC 生产力和减小成本的关键

软件开发生命周期中最大的差异之所以是开发人员没有时间从一开始就学习如何保护他们的代码。开发人员在返还和补救上浪费损坏了无数时间,导引致了数百万美元的机会本失踪。了解安全高速编解码如何帮助缩小这些差异并提高高生产力。

Learn More
No items found.
No items found.
March 27, 2023
Blog
blog-posts
March 14, 2023
March 14, 2023

Secure Code Warrior 的新增内容:课程指南、参与管理和新内容

Secure Code Warrior 的新内容:体验管理课程和探索其他内容的新方法。

Learn More
No items found.
No items found.
March 14, 2023
Blog
blog-posts
March 2, 2023
March 2, 2023

元宇宙中的恶意:在新领域对抗已知的网络威胁

当下的数字宠儿——元宇宙——的出现为代码级漏洞和社会工程增加了广阔的新攻击面。而且我们根本没有为在这个靠烟雾和镜子蓬勃发展的新竞争环境中战斗做好准备。

Learn More
No items found.
No items found.
March 2, 2023
Blog
blog-posts
February 15, 2023
February 15, 2023

利用开发者驱动的安全性减轻技术债务

解决不安全代码和随后的技术债务的成本是当今科技面临的最大障碍之一。了解实施可扩展的安全代码培训计划如何通过解决不良的编码模式和在软件开发周期的早期检测漏洞来帮助减少技术债务。

Learn More
No items found.
No items found.
February 15, 2023
Blog
blog-posts
February 10, 2023
February 10, 2023

开发人员如何定义 “安全编码”?

对什么构成安全编码行为的看法尚有待商榷。根据与Evans Data合作的最新研究,这种情绪以黑白形式展现出来。2022年开发者驱动的安全状况调查深入研究了1200名活跃开发者的关键见解和经验,阐明了他们在安全领域的态度和挑战。

Learn More
No items found.
No items found.
February 10, 2023
Blog
blog-posts
January 31, 2023
January 31, 2023

Coding Labs: Hands-on secure code for Developers

Learn how Coding Labs is like a personal trainer for developers- utilizing interactive, hands-on modules and intuitive feedback within a convenient in-browser IDE to help developers go from learning to doing faster than ever before.

Learn More
No items found.
No items found.
January 31, 2023
Blog
blog-posts
January 27, 2023
January 27, 2023

Secure Code Warrior 第 8 周岁:全部登上火箭飞船

本周,我们正式庆祝安全代码勇士问世八周年。一方面,这是阿波罗11号任务时长的350倍,相当于45,000场足球比赛,或者玩超级马里奥奥德赛到最后5696次。另一方面,它只是巨型乌龟寿命的三分之一(如果你想知道的话,是250年)。在一个高增长的初创公司的世界中,它代表着一段充满曲折、教训和成就的旅程,其中许多在我们第一次签署商业计划时是不可想象的。

Learn More
No items found.
No items found.
January 27, 2023
Blog
blog-posts
December 14, 2022
December 14, 2022

2022年回顾-亮点、新创新和资源可帮助您充分利用 Secure Code Warrior

在 Secure Code Warrior,我们不断创新,帮助开发人员和组织掌握正确的技能,以应对当今不断变化的安全挑战。我们汇编了平台的主要功能和更新,以及今年发布的资源和指南,以帮助您的组织在软件开发周期开始时通过开发人员驱动的安全性来保护您的软件。

Learn More
No items found.
No items found.
December 14, 2022
Blog
blog-posts
December 8, 2022
December 8, 2022

开发者驱动的安全性所带来的投资回报率

在投资techstack或其他培训计划时,每个人都希望获得丰厚的投资回报,但是在安全方面,除了计算简单的投资回报率之外,还需要进行长期的投资。了解对开发人员驱动的安全性进行投资不仅可以节省代价高昂的漏洞、生产力损失和累积的技术债务的开支,还可以制定积极且具有成本效益的策略,在当今的威胁格局中保持领先地位。

Learn More
No items found.
No items found.
December 8, 2022
Blog
blog-posts
November 24, 2022
November 24, 2022

为开发人员主导的安全性建立统一的方法

针对诸如SolarWinds活动之类的重大安全漏洞,该活动使用软件更新流程感染了广受欢迎的Orion管理软件的18,000多名用户,包括许多顶级公司和政府机构,人们越来越多地推动更有效的开发人员主导的安全工作。各种规模的组织都开始质疑他们的 “软件供应链”,并要求开发软件的开发人员具有经过验证的安全技能和意识。

Learn More
No items found.
No items found.
November 24, 2022
Blog
blog-posts
November 23, 2022
November 23, 2022

SCW 集成:通过微学习缩短平均修复时间

每个人都知道强大的技术堆栈的重要性。在发现和修复代码漏洞时,Secure Code Warrior集成的目标是缩短平均修复时间和使用可信、强大的解决方案。将微学习时刻整合到开发人员的工作流程中是更好地学习和加快补救的关键。

Learn More
No items found.
No items found.
November 23, 2022
Blog
blog-posts
November 10, 2022
November 10, 2022

利用可重复的安全编解码器能向左移动(并实现合规性)

如今,几乎每个团队都采纳了某种形式形式的合规规则,无论是确认保守公司遵循守护行业框架架构还是政府法规的初始认证流程的一部分,都是有用的,也是作为年度或审核的一部分。这是非常重要的例子,因为如果一个组织无法满足基本的合规要求,那么它的员工就无法切实行职责。

Learn More
No items found.
No items found.
November 10, 2022
Blog
blog-posts
November 3, 2022
November 3, 2022

不良的编码模式会导致重大的安全问题... 那么我们为什么要鼓励他们呢?

如果不对漏洞的工作原理、它们为何危险、导致漏洞的模式以及哪些设计或编码模式在他们的世界中有意义的环境中修复漏洞有基本的了解,开发人员就不会对漏洞减少产生积极影响。脚手架式方法可以让知识层层全面了解安全编码、保护代码库以及成为具有安全意识的开发人员意味着什么。

Learn More
No items found.
No items found.
November 3, 2022
Blog
blog-posts
October 24, 2022
October 24, 2022

Secure Code Warrior 荣获 Gartner 的《软件工程优秀供应商:提高开发人员生产力》

《2022年Gartner软件工程超酷供应商》重点介绍了开发人员安全技能的重要性。阅读更多内容并获取完整报告。

Learn More
No items found.
No items found.
October 24, 2022
Blog
blog-posts
October 20, 2022
October 20, 2022

定义安全代码

开发推动数字业务发展的软件、应用程序和程序的开发人员已成为许多组织的命脉。如果没有竞争性的应用程序和程序,或者没有24小时访问其网站和其他基础设施,大多数现代企业都不能(盈利)运作。

Learn More
No items found.
No items found.
October 20, 2022
Blog
blog-posts
October 3, 2022
October 3, 2022

了解 Python 的 tarfile 模块中的路径遍历错误

最近,一组安全研究人员宣布他们在 Python 的 tar 文件提取功能中发现了一个已有十五年历史的错误。该漏洞于 2007 年首次被披露,追踪后被追踪为 CVE-2007-4559。在 Python 官方文档中添加了一条注释,但错误本身没有修补。

Learn More
No items found.
No items found.
October 3, 2022
Blog
blog-posts
September 22, 2022
September 22, 2022

SCW 的新增内容:编码实验室、LMS 集成等

Secure Code Warrior 的新功能:亲身体验编码实验室的开发人员培训,将您的安全代码培训计划与 LMS 集成等等。

Learn More
No items found.
No items found.
September 22, 2022
Blog
blog-posts
September 21, 2022
September 21, 2022

硬编码的凭据可能会带来安全风险

在我们讨论优步最近发生的安全事件时,详细了解与硬编码凭证和社会工程相关的风险,以及为何组织向左移动并确保其开发人员了解最新的安全编码最佳实践如此重要。

Learn More
No items found.
No items found.
September 21, 2022
Blog
blog-posts
September 9, 2022
September 9, 2022

永无止境的攻击面时代的预防

软件开发不再是一个孤岛,当我们考虑软件驱动风险的各个方面——包括云端、家电和车辆中的嵌入式系统、我们的关键基础架构,更不用说连接所有风险的API——攻击面是无国界和失控的。

Learn More
No items found.
No items found.
September 9, 2022
Blog
blog-posts
July 22, 2022
July 22, 2022

我们是否足够成熟,可以实施开源软件安全动员计划?

开源软件安全动员计划代表了开发人员驱动的安全性迈出的积极一步。但是,我们都必须进行盘点并诚实地评估我们的组织是否足够成熟,以及我们的开发团队是否具有适当水平的安全意识和技能,以实施最新、最出色的防御策略。

Learn More
No items found.
No items found.
July 22, 2022
Blog
blog-posts
July 11, 2022
July 11, 2022

安全成熟度在开发团队中的重要性

努力向左移动需要开发团队内部集体持续提高安全知识和技能

Learn More
No items found.
No items found.
July 11, 2022
Blog
blog-posts
June 6, 2022
June 6, 2022

保护 API:不可能完成的任务?

API 安全性很严峻,但只要有足够的培训、规划和对最佳实践的关注,即使是最阴险的漏洞也可以得到缓解。

Learn More
No items found.
No items found.
June 6, 2022
Blog
blog-posts
June 2, 2022
June 2, 2022

新增:适用于 Okta 工作流程的 SCW 连接器

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
June 2, 2022
Blog
blog-posts
May 16, 2022
May 16, 2022

《安全代码勇士》的新增内容:2022年5月

更简单、更强大的课程创建流程、抢先体验切换和 SAP ABAP 培训内容。

Learn More
No items found.
No items found.
May 16, 2022
Blog
blog-posts
May 9, 2022
May 9, 2022

新增:利用 ABAP 培训内容更快地交付安全的 SAP ABAP 代码

为 ABAP 开发人员提供实用而有效的安全编码培训。

Learn More
No items found.
No items found.
May 9, 2022
Blog
blog-posts
April 27, 2022
April 27, 2022

心灵签名-你需要知道的

Psychic Signature 漏洞存在于 ECDSA 签名的加密中,它可以保护系统执行身份验证等关键任务。黑客可以利用此漏洞绕过任何签名检查。我们将在这篇文章中解释它是什么以及如何缓解它。

Learn More
No items found.
No items found.
April 27, 2022
Blog
blog-posts
April 14, 2022
April 14, 2022

提前防范 NGINX 和微软 Windows SMB 远程过程调用服务中的软件漏洞

最近,NGINX 披露了一个未修补的漏洞。大约在同一时间,微软披露了另一个严重漏洞——Windows RPC RCE漏洞。在这篇文章中,你可以了解谁面临这两个问题的风险,以及我们如何降低风险。

Learn More
No items found.
No items found.
April 14, 2022
Blog
blog-posts
April 5, 2022
April 5, 2022

未修补的攻击呈上升趋势。是时候规划防守优势了。

顾名思义,零日攻击使开发人员没有时间发现和修补可能被利用的现有漏洞,因为威胁行为者首先进入。损害已经造成,然后是疯狂地争先恐后地修复软件和企业声誉损失。攻击者始终处于优势,尽可能缩小这一优势至关重要。

Learn More
No items found.
No items found.
April 5, 2022
Blog
blog-posts
April 5, 2022
April 5, 2022

安全代码在开发团队的优先事项清单上处于什么位置?

我们连续第二年与 Evans Data Corp. 合作,对全球开发者社区进行了全面调查,调查内容涉及安全编码实践的技能、认知和行为,以及它们在软件开发生命周期 (SDLC) 中的感知影响和相关性。结果在很多方面都令人惊讶。

Learn More
No items found.
No items found.
April 5, 2022
Blog
blog-posts
April 1, 2022
April 1, 2022

Spring 库中的新漏洞:如何知道自己是否处于危险之中以及该怎么做

最近,作为 Java 社区中最受欢迎的库之一 Spring 库披露了两个与远程代码执行 (RCE) 相关的漏洞。我们对 “Spring4Shell” 和 “Spring Cloud Function” 的已知细节进行了细分,以帮助您了解自己是否处于危险之中以及如果存在风险该怎么做。

Learn More
No items found.
No items found.
April 1, 2022
Blog
blog-posts
March 28, 2022
March 28, 2022

2022年我们不能忽视的网络安全问题

在打击网络犯罪分子时,我们需要尽可能与他们保持一致,以预防的心态抢占他们的游乐场。我认为来年他们可能会开始掀起波澜:

Learn More
No items found.
No items found.
March 28, 2022
Blog
blog-posts
February 23, 2022
February 23, 2022

什么是特洛伊木马源以及它是如何潜入您的源代码的

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
February 23, 2022
Blog
blog-posts
February 8, 2022
February 8, 2022

冠军与教练:为什么每个开发团队都需要两者

许多在网络安全方法中设定目标的公司已经实施了官方的安全倡导者计划,将关键的安全责任(从团队之间的联络和一般啦啦队到监督最佳实践)赋予对此类角色表现出才能和热情的个人。

Learn More
No items found.
No items found.
February 8, 2022
Blog
blog-posts
February 2, 2022
February 2, 2022

如何防止常见的 Java 错误

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
February 2, 2022
Blog
blog-posts
January 27, 2022
January 27, 2022

Secure Code Warrior 工作了七年,开始感觉真实

我们的生日里程碑很好地提醒我们反思我们的劳动成果,庆祝团队,充满信心地迎接新的一年。现在,自成立七年以来,我想知道:我们做到了吗?这是一家真正的公司吗?当然,我们已经成熟了,但我当然希望我们永远不会失去从一开始就存在的好奇心、激情和极客意识。

Learn More
No items found.
No items found.
January 27, 2022
Blog
blog-posts
January 21, 2022
January 21, 2022

为什么脚手架式学习可以培养安全性强的开发人员

作为一个行业,我们永远不应该指望开发人员成为安全专家,但是组织可以采用新的开发人员支持标准,这样他们就可以生产出更高质量的软件。

Learn More
No items found.
No items found.
January 21, 2022
Blog
blog-posts
January 16, 2022
January 16, 2022

Log4j 漏洞详解-其攻击载体及其防范方法

2021 年 12 月,Java 库 Log4j 中披露了一个严重的安全漏洞 Log4Shell。在本文中,我们将 Log4Shell 漏洞分解为最简单的形式,便于你掌握基础知识,并向你介绍一个任务——一个游乐场,你可以利用对该漏洞的了解尝试利用模拟网站进行攻击。

Learn More
No items found.
No items found.
January 16, 2022
Blog
blog-posts
January 6, 2022
January 6, 2022

网络安全行业分析:我们必须纠正的另一个反复出现的漏洞

我们没有得到切合实际的建议,也没有最快的解决方案来对抗现代网络安全这一不间断的攻击。当然,每种漏洞都有自己的不同,并且有许多攻击手段可以在易受攻击的软件中利用。可行的通用建议将受到限制,但最佳实践方法似乎每时每刻都存在更多缺陷。

Learn More
No items found.
No items found.
January 6, 2022
Blog
blog-posts
December 15, 2021
December 15, 2021

您的安全计划是否侧重于事件响应?你做错了。

安全团队之外可能不会广泛理解将重点放在预防性而不是被动的方法上,尤其是在没有发生重大而严重的安全事件的情况下。

Learn More
No items found.
No items found.
December 15, 2021
Blog
blog-posts
December 1, 2021
December 1, 2021

Make unit tests readable with Sensei and AssertJ

Implement unit test coding guidelines uniformly and consistently

Learn More
No items found.
No items found.
December 1, 2021
Blog
blog-posts
November 30, 2021
November 30, 2021

API on Wheels:一次充满风险的漏洞之旅

将API安全性置于偶然的机会是日后引入问题的必经之路,最坏的情况是可能会带来毁灭性的后果,充其量只能说是令人沮丧的返工和低性能。

Learn More
No items found.
No items found.
November 30, 2021
Blog
blog-posts
November 12, 2021
November 12, 2021

将 jodaTime 移植到 java.time

以方便的方型将 Joda-Time 移植到 java.time

Learn More
No items found.
No items found.
November 12, 2021
Blog
blog-posts
November 11, 2021
November 11, 2021

揭开政府供应链管道中网络漏洞的面纱

很明显,网络安全很重要,但它在供应链背景下到底意味着什么?

Learn More
No items found.
No items found.
November 11, 2021
Blog
blog-posts
October 29, 2021
October 29, 2021

具有安全意识的开发人员:AppSec 需要你!

开发人员处于有利可图的进入AppSec的有利地位。

Learn More
No items found.
No items found.
October 29, 2021
Blog
blog-posts
October 27, 2021
October 27, 2021

如何说服你的老板投资安全编程培训

有效学习安全编码并保留这些知识可能会使它看起来天生就很困难,但是有了正确的工具和文化,就不一定如此。但是,说服利益相关者和上级投资于正确的培训并不总是那么容易。以下是一些方便的提示,可帮助您获得他们的忠诚。

Learn More
No items found.
No items found.
October 27, 2021
Blog
blog-posts
October 19, 2021
October 19, 2021

激励开发人员是改善安全实践的关键

专业开发人员希望拥抱DevSecOps并编写安全代码,但是他们的组织要想发展这种努力,就需要支持这种seachange。

Learn More
No items found.
No items found.
October 19, 2021
Blog
blog-posts
October 18, 2021
October 18, 2021

体验路径遍历漏洞的影响,这是最近 Apache 困境的罪魁祸首

10月初,Apache发布了2.4.49版本来修复路径遍历和远程代码执行漏洞,然后发布了2.4.50版本以解决修复未完成的事实。我们制定了一项使命,以证明现实生活中的风险。现在就试试吧。

Learn More
No items found.
No items found.
October 18, 2021
Blog
blog-posts
October 14, 2021
October 14, 2021

Warrior Insider:Nelnet——培养你的安全卫士,从内部创造一种安全开发文化

米查·马丁内斯是Nelnet的网络安全分析师和电影摄影师。当负责为开发人员创建有关安全编码的培训计划时,他采用了创造性的方式来吸引团队。他运行安全代码培训计划的方式给我们留下了深刻的印象,于是我们与他坐下来了解更多。

Learn More
No items found.
No items found.
October 14, 2021
Blog
blog-posts
October 5, 2021
October 5, 2021

OWASP 的 2021 年名单洗牌:新的战斗计划和主要敌人

注入攻击是臭名昭著的漏洞之王(按类别划分),由于访问控制中断而失去了头把交椅,成为最坏的情况,开发人员需要注意。

Learn More
No items found.
No items found.
October 5, 2021
Blog
blog-posts
September 23, 2021
September 23, 2021

高级安全情报:指导课程帮助开发人员为 NIST 做好准备

除了安全配置和访问控制外,开发人员是最接近和亲密接触代码的人。他们的安全技能必须得到培养,要达到NIST概述的高标准,动手实践课程结构可能只是解决这个问题的有效方法,尤其是对于大型开发团队而言。

Learn More
No items found.
No items found.
September 23, 2021
Blog
blog-posts
August 30, 2021
August 30, 2021

当好的微波炉变坏时:为什么嵌入式系统安全是开发人员的下一场头目战

就像基于 Web 的软件、API 和移动设备一样,如果攻击者在野外发现嵌入式系统中的易受攻击的代码,就会被利用。

Learn More
No items found.
No items found.
August 30, 2021
Blog
blog-posts
August 24, 2021
August 24, 2021

安全开发应该是 AppSec 的免疫系统

作为应用程序安全专业人员,您的工作是确保组织应用程序的网络安全。但是,你没有责任编写应用程序运行的代码。开发团队中的工程师是。那么,如何确保他们在开发这些系统时考虑到安全性呢?

Learn More
No items found.
No items found.
August 24, 2021
Blog
blog-posts
August 19, 2021
August 19, 2021

为什么端到端安全对嵌入式系统很重要

本文将概述如何保护嵌入式系统。我们将从基本定义开始,然后转到嵌入式安全方面的挑战、一些典型的解决方案以及缺失的难题是什么。

Learn More
No items found.
No items found.
August 19, 2021
Blog
blog-posts
August 17, 2021
August 17, 2021

MISRA C 2012 对比 MISRA C2-如何切换

在这篇文章中,我们将比较MISRA C 2012标准与C2,并指导您完成切换到新标准的旅程。我们将解释为什么 MISRA 的合规性是构建安全的嵌入式系统所必需的。

Learn More
No items found.
No items found.
August 17, 2021
Blog
blog-posts
August 11, 2021
August 11, 2021

嵌入式设备和嵌入式系统开发-概述

在这篇文章中,您将概述嵌入式设备和嵌入式系统的开发。

Learn More
No items found.
No items found.
August 11, 2021
Blog
blog-posts
July 26, 2021
July 26, 2021

Warrior Insider:对比安全-通过情境学习为开发人员提供有影响力的网络安全培训

我们与 Contrast Security 的 Larry Maccherone 坐下来讨论了情境学习如何成功地培训开发人员掌握安全编码。请继续阅读,了解组织如何在不干扰开发人员日常职责和工作流程的情况下向开发人员提供关键安全培训。

Learn More
No items found.
No items found.
July 26, 2021
Blog
blog-posts
July 22, 2021
July 22, 2021

为什么我们绝不能忽视网络安全中的人为因素

最近,我们非常高兴看到我们的董事长兼首席执行官彼得·丹希克斯在福布斯科技委员会的第一篇文章上线。该帖子详细介绍了如何提高开发人员的技能以创建更安全的代码是防止网络攻击和数据泄露的关键。

Learn More
No items found.
No items found.
July 22, 2021
Blog
blog-posts
June 24, 2021
June 24, 2021

泄露的API有可能使公司的声誉化为乌有

API 安全性是大多数安全专家心目中不远的问题,也是我们需要掌握应对的知识。

Learn More
No items found.
No items found.
June 24, 2021
Blog
blog-posts
June 21, 2021
June 21, 2021

与NIST一起采取行动:我们在网络防御未来问题上以人为主导的立场

拜登政府最近发布的网络安全行政命令无疑引起了安全行业的关注,尤其是那些希望吸引开发人员认识到在日常工作中应用安全编码最佳实践的重要性的人。

Learn More
No items found.
No items found.
June 21, 2021
Blog
blog-posts
June 16, 2021
June 16, 2021

Warrior Insider:Selligent-为什么网络安全对扩展业务很重要

我们最近与Selligent Marketing Cloud的软件工程师Dimitri Vanderhaeghe进行了交谈。Selligent Marketing Cloud是一个高度集成、由人工智能驱动的全渠道营销自动化平台,使雄心勃勃的B2C营销人员能够最大限度地利用与当今互联消费者的每一刻互动。对于一家快节奏的B2C技术公司来说,扩大规模并满足其不断增长的市场需求至关重要。能够满足这些需求的一部分是强调网络安全,最关键的是开发人员主导的安全技能计划。

Learn More
No items found.
No items found.
June 16, 2021
Blog
blog-posts
June 10, 2021
June 10, 2021

DevSecOps 的崛起——以及 “向左移动” 对您的组织真正意味着什么。

这对于一个发人深省的统计数据来说怎么样?60% 的中小型企业在网络攻击成功后的六个月内倒闭。大公司流失数百万(或数十亿!)而品牌声誉却在流失。随着组织越来越多地采用安全编码实践,“向左移动” 的情况正在发生。随着DevSecOps的兴起,安全代码从一开始就成为人们关注的焦点。

Learn More
No items found.
No items found.
June 10, 2021
Blog
blog-posts
June 9, 2021
June 9, 2021

Sensei Feature Highlight: Library Scope

Discover more about the most loved features of Sensei.

Learn More
No items found.
No items found.
June 9, 2021
Blog
blog-posts
June 3, 2021
June 3, 2021

信心十足地更快地交付质量代码:安全编码实践的变革力量。

根据IBM的一项研究,与最初发现和修复漏洞相比,在发布后修复漏洞的成本要高出三十倍。考虑到这一点,前瞻性首席信息官实施安全编码实践也就不足为奇了。这意味着培训和装备开发人员从一开始就编写更安全的代码,使他们成为组织的 “第一道防线”。

Learn More
No items found.
No items found.
June 3, 2021
Blog
blog-posts
May 27, 2021
May 27, 2021

安全代码培训 = 更好的代码 + 更快的发布日期

质量安全代码培训对您的组织有哪些潜在影响——这可能是一项值得的投资吗?

Learn More
No items found.
No items found.
May 27, 2021
Blog
blog-posts
May 20, 2021
May 20, 2021

围绕安全编码(障碍、问题和主动解决方案)重新调整您的组织

在我们高度互联的世界中,几乎每个组织都有共同的致命弱点。一个漏洞,他们的代码中只有一个可利用的漏洞,就可能引发客户数据盗窃、声誉损害和重大财务损失。围绕安全编码进行组织协调从未像现在这样迫在眉睫,但实现这一点说起来容易做起来难。

Learn More
No items found.
No items found.
May 20, 2021
Blog
blog-posts
May 20, 2021
May 20, 2021

认证安全意识:一项旨在提升开发人员能力的行政命令

美国联邦政府的最新行政命令涉及功能性网络安全的许多方面,但首次特别概述了开发者的影响,以及他们需要经过验证的安全技能和意识。

Learn More
No items found.
No items found.
May 20, 2021
Blog
blog-posts
May 13, 2021
May 13, 2021

经理和安全卫士 — 安全编码实践的吹笛者和关键影响者。

目前,只有15%的开发人员同意安全代码实践应该是每个人的责任。在安全威胁日益增加的世界中,这根本不够好。必须做点什么。创建健康的 AppSec 文化的关键之一是了解关键影响力(以及影响者!)在游戏中。

Learn More
No items found.
No items found.
May 13, 2021
Blog
blog-posts
May 12, 2021
May 12, 2021

网络攻击每 39 秒发生一次。政府终于有能力进行反击了吗?

我们需要强化以人为本的网络安全最佳实践方法,这将比严重依赖自动化、工具和对已经嵌入和发现的问题的反应来取得更好的结果。

Learn More
No items found.
No items found.
May 12, 2021
Blog
blog-posts
May 6, 2021
May 6, 2021

在安全编码方面,是什么让开发团队彻夜难眠?

不安全的代码使公司损失了数百万美元——那么是什么阻碍了采用安全编码做法呢?在一个几乎所有事情都依赖软件的世界中,确保代码安全至关重要。品牌声誉和财务可行性取决于此。话虽如此,人们对安全编码存在许多担忧,还有许多阻碍其全面有效采用的障碍。比以往任何时候都更需要一种新的工作方式。

Learn More
No items found.
No items found.
May 6, 2021
Blog
blog-posts
April 29, 2021
April 29, 2021

为什么安全代码是软件开发的新成功指标

在过去的几年中,在快速上市的祭坛上牺牲了许多东西,例如网络安全、数兆兆字节的敏感客户数据和无价的品牌声誉。

Learn More
No items found.
No items found.
April 29, 2021
Blog
blog-posts
April 29, 2021
April 29, 2021

隐藏在众目之外:为什么 SolarWinds 攻击所揭示的不仅仅是恶意网络风险

如果说网络安全行业有什么要毁掉圣诞节的话,那是一次毁灭性的数据泄露事件,有望成为有记录以来影响美国政府的最大网络间谍事件。

Learn More
No items found.
No items found.
April 29, 2021
Blog
blog-posts
April 22, 2021
April 22, 2021

如何配置安全代码培训以获得更好的安全编码结果

在为开发人员提供安全代码培训方面,教育成果还有很多不足之处。许多公司花费巨资,但实际回报却微乎其微。这也就不足为奇了。

Learn More
No items found.
No items found.
April 22, 2021
Blog
blog-posts
April 15, 2021
April 15, 2021

当前的安全代码培训让开发人员失望

随着数据泄露及其成本的持续增加,我们世界上生成的代码量太大,安全专家无法单独处理。公司需要具有安全编码技能的开发人员——开发人员知道他们需要这些技能来发展自己的职业生涯。但是当前的安全代码培训让他们失望了。那么,在安全代码培训方面,开发人员想要什么呢?

Learn More
No items found.
No items found.
April 15, 2021
Blog
blog-posts
April 8, 2021
April 8, 2021

为什么安全代码培训不起作用(以及你可以做些什么)

无聊,无聊,无聊!这是每当提到安全代码培训时,你都会从开发人员那里听到的主要回应之一。在 Secure Code Warrior,我们相信一定有更好的方法。

Learn More
No items found.
No items found.
April 8, 2021
Blog
blog-posts
April 7, 2021
April 7, 2021

如果 AppSec 工具是灵丹妙药,为什么这么多公司没有解雇它?

AppSec工具没有像我们预期的那样被利用,有几个原因,与其说是工具及其功能,不如说是它们如何与整个安全程序集成。

Learn More
No items found.
No items found.
April 7, 2021
Blog
blog-posts
April 6, 2021
April 6, 2021

开发人员有学习安全编码的动机... 那为什么不呢?

在学习安全编码时,开发人员的主要动机是什么,以及如何利用他们来设计和实施成功的应用程序安全计划?

Learn More
No items found.
No items found.
April 6, 2021
Blog
blog-posts
March 30, 2021
March 30, 2021

人为因素在未来的安全编码中起什么作用?

随着网络威胁数量的持续增长,组织每天都在安全性、实用性和速度之间做出权衡——在此过程中面临风险。

Learn More
No items found.
No items found.
March 30, 2021
Blog
blog-posts
March 25, 2021
March 25, 2021

我们需要英雄来保护我们的代码。开发人员有能力吗?

在网络威胁持续成倍增长的世界中,你的程序员是否在加紧努力?安全编码的人为要素——最重要的开发人员——准备好在保护我们的互联世界中发挥自己的作用了吗?为了回答这个问题,让我们来看看Secure Code Warrior与Evans Data Corp. 最近进行的一项关于开发人员对安全编码、安全代码实践和安全运营态度的研究中的一些见解。

Learn More
No items found.
No items found.
March 25, 2021
Blog
blog-posts
March 23, 2021
March 23, 2021

通过人为主导的安全编码,将重点从被动转移到主动

在过去的20多年中,同样的10个软件漏洞造成的安全漏洞比其他任何漏洞都多。但是,许多企业仍然选择违规后、事后补救措施;混淆这一切的人力和业务后果。但是现在,一项新的研究指出了一个由人类主导的新方向。

Learn More
No items found.
No items found.
March 23, 2021
Blog
blog-posts
March 17, 2021
March 17, 2021

生日快乐 SQL 注入,无法解决的错误

现在是 SQL 注入的第 22 个生日,尽管这个漏洞已经过时了,可以喝了,但我们还是让它变得更好,而不是永久压制它。

Learn More
No items found.
No items found.
March 17, 2021
Blog
blog-posts
March 11, 2021
March 11, 2021

Sensei Product Update - March 2021

Discover the latest improvements to the user experience of Sensei, Secure Code Warrior's IntelliJ plugin and start writing quality code even faster.

Learn More
No items found.
No items found.
March 11, 2021
Blog
blog-posts
March 10, 2021
March 10, 2021

建立信任:AppSec 与开发人员之间实现真正安全协同的途径

好吧,建立在不信任的脆弱基础上的关系最好期望值不高。遗憾的是,这可能是组织内开发人员与AppSec团队之间工作关系的状态。

Learn More
No items found.
No items found.
March 10, 2021
Blog
blog-posts
February 21, 2021
February 21, 2021

试试这个在线 Java Gotchas 测验

一个有趣的 Java Gotchas 小测验,支持 Github 存储库,展示了一些陷阱以及如何修复它们

Learn More
No items found.
No items found.
February 21, 2021
Blog
blog-posts
February 15, 2021
February 15, 2021

通过持续集成 IntelliJ Checkschacks

学习在 IDE、命令行和持续集成中以检查的形式形式形式以批运行 Sensei 和 IntelliJ 意图动作。

Learn More
No items found.
No items found.
February 15, 2021
Blog
blog-posts
February 10, 2021
February 10, 2021

从 “左边” 开始:安全代码总是高质量的代码吗?

根据其定义,一定质量水平的代码也是安全的,但是所有安全的代码不一定都是高质量的。“从左起” 是确保纯安全编码标准的公式吗?

Learn More
No items found.
No items found.
February 10, 2021
Blog
blog-posts
February 7, 2021
February 7, 2021

Java 陷阱-按位运算符与布尔运算符

在这篇博客文章中,我们将探讨常见的 Java 编码错误(使用按位运算符而不是条件运算符)、它使我们的代码容易受到的错误以及如何使用 Sensei 来修复和检测问题。

Learn More
No items found.
No items found.
February 7, 2021
Blog
blog-posts
February 4, 2021
February 4, 2021

对于开发者来说,要帮助杀死网络犯罪野兽,训练是一项分为两部分的任务

众所周知,网络安全领域英雄和反派之间的竞争环境非常不公平。敏感数据是新的黄金,攻击者可以快速适应以规避防御,利用大大小小的安全漏洞获取潜在的利润。

Learn More
No items found.
No items found.
February 4, 2021
Blog
blog-posts
February 1, 2021
February 1, 2021

什么是静态分析?

通过 5 种基于 IDE 的方法和插件的示例,了解静态分析及其如何帮助您编写更好的代码。

Learn More
No items found.
No items found.
February 1, 2021
Blog
blog-posts
January 27, 2021
January 27, 2021

安全代码勇士六年:我们长大了吗?

这是一年中的那个特殊时刻(无论如何,对我们来说),我回顾了我们最近一次绕太阳的圈子,以及在过去的365天里为迎接充满成长、经验教训和不可避免的不可预测性的新的一年所做的工作。

Learn More
No items found.
No items found.
January 27, 2021
Case Study
case-studies
January 6, 2026
January 6, 2026

Kamer van Koophandel Sets the Standard for Developer-Driven Security at Scale

Kamer van Koophandel shares how it embedded secure coding into everyday development through role-based certifications, Trust Score benchmarking, and a culture of shared security ownership.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
October 8, 2025
October 8, 2025

Going for Gold: Soaring Secure Code Standards at Paysafe

See how Paysafe's partnership with Secure Code Warrior led to a 45% boost in developer productivity and a major reduction in code vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
August 15, 2024
August 15, 2024

DigitalOcean Decreases Security Debt with Secure Code Warrior

DigitalOcean's use of Secure Code Warrior training has significantly reduced security debt, allowing teams to focus more on innovation and productivity. The improved security has strengthened their product quality and competitive edge. Looking ahead, the SCW Trust Score will help them further enhance security practices and continue driving innovation.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
November 28, 2023
November 28, 2023

Devlympics 2023: In Review

Explore the Devlympics 2023 results in this report. Dive into developer engagement, tech stack and languages trends in each industry that participated, and key vulnerabilities and CWEs covered in the annual global event hosted by Secure Code Warrior.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
November 22, 2023
November 22, 2023

One Culture of Security: How Sage built their security champions program with agile secure code learning

Discover how Sage enhanced security with a flexible, relationship-focused approach, creating 200+ security champions and achieving measurable risk reduction.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
October 2, 2023
October 2, 2023

The path to security champions: How Workday utilized agile learning to upskill developers

Discover how Workday transformed developer training with agile learning through Secure Code Warrior. By empowering developer with hands-on, language-specific education, Workday reduced vulnerabilities early in the SDLC. See their impressive results and key takeaways to build a secure code culture.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
July 22, 2023
July 22, 2023

How Thales implemented developer-driven security

In this case study, learn how Thales has developed people, process, and technology approaches for an agile secure code learning program in order to engage developers to become active security champions.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
June 7, 2023
June 7, 2023

How Colgate-Palmolive boosted developer security skills and created a secure coding culture

Discover how retail giant Colgate-Palmolive reshaped its application security during its digital transformation journey. Facing challenges in secure coding, they innovated their approach by integrating bite-sized, in-context learning into the developer workflow.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
May 13, 2021
May 13, 2021

Security as culture: How Blue Prism cultivates world-class secure developers

Learn how Blue Prism, the global leader in intelligent automation for the enterprise, used Secure Code Warrior's agile learning platform to create a security-first culture with their developers, achieve their business goals, and ship secure code at speed

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
May 12, 2021
May 12, 2021

Supercharged Security Awareness: How Tournaments are Inspiring Developers at Erste Group

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

How a ‘Game of Codes’ is leading IAG Group to a more secure coding future

IAG Group is the name behind many of the leading insurancecompanies in the Asia-Pacific region, underwriting policies formillions of customers to the tune of approximately AUD $11.4 Billionin premiums per annum.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Driving Actionable Awareness: FINRA's Push For Super-Secure Developers

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Creating a revolutionary security certification experience

Learn how they created an in-house technology education initiative, aimed at supporting thousands of employees to learn practical, cutting-edge skills in a number of disciplines, including machine learning and cybersecurity.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Beyond Compliance: Motorola Solutions Drives Winning Security Culture

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

ASRG's push for automotive software security

Explore this comprehensive case study to learn more about how they utilized Secure Code Warrior's tournaments to engage developers, increase awareness of key vulnerabilities affecting automotive software, and gain metrics across multiple languages and frameworks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Application Security @ NAB | Gamified Security Training: The Key to Scalable Developer Growth

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 27, 2026
August 27, 2026

Forbes: A New Frontier: NSA Proposes “Security By Design” Considerations For AI Enablement

​The cybersecurity industry, which has been advocating for “security by design” principles for more than a decade, stands in wide-eyed amazement at the risks posed by artificial intelligence (AI). As organizations rush to embrace AI enablement, a CISO’s most pressing priority is to avoid becoming a roadblock. However, without effective AI usage and governance, observability and traceability, organizations may be blindsided by their AI risk.​

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
August 21, 2026
August 21, 2026

Techpartner.news: Secure Code Warrior introduces framework to govern AI use in software development

Secure Code Warrior has introduced the SCW AI Adoption Model, a framework designed to help organisations govern AI use in software development as the industry shifts from the traditional software development lifecycle (SDLC) toward what the company calls the Agentic Development Lifecycle (ADLC).

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 19, 2026
August 19, 2026

DevOps.com: Are LLMs Equally Good (or Bad) at Building Secure Software?

With many software engineering teams moving from AI coding assistants into full agentic AI code generation and increasing the amount of code they produce exponentially, ensuring the security of that code must be a top priority. The study produces practical guidance for organizations that are getting on board the AI-assisted or agentic code development train.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 14, 2026
August 14, 2026

TechRadar Pro: Beware the token trap: Why saving on inference might put your ADLC at risk

Token use can create unexpected, sizeable costs for organizations.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 11, 2026
August 11, 2026

KBI Media: AI Coding Boom Raises Fresh Cybersecurity Risks for Business

AI enables faster development cycles and allows developers to focus on higher-value work. For many businesses, these efficiencies are becoming essential to remaining competitive. The challenge, therefore, is not whether to adopt AI, but how to do so responsibly. Businesses that invest in developer education, governance frameworks, AI observability and robust security controls will be better positioned to capture the benefits while limiting the associated risks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 11, 2026
August 11, 2026

In AI Today: AI's weakest link isn't the model but the software supply chain

The issue is no longer simply about protecting AI models themselves. Increasingly, attackers are focusing on the software ecosystem surrounding those models, including the development tools, middleware, open-source libraries, and automated deployment pipelines that organisations rely upon every day.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 10, 2026
August 10, 2026

The AI Journal: Investigating global AI regulation: Who is winning, and where to from here?

As we will unpack together, there is a lot of movement around the world, with some collaboration between nations, but the path forward is far from uniform or clear, particularly in business environments where AI adoption is often mandated before holistic safeguarding measures are in place.  

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 27, 2026
July 27, 2026

Cyber Daily: The industry reacts to OpenAI’s agent ‘accidentally’ hacking Hugging Face

According to one expert, AI guardrails are not designed as “security boundaries” but rather to influence behaviour – but what if that behaviour is hacking one of your industry partners?

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
July 24, 2026
July 24, 2026

SecurityBrief: Autonomous OpenAI agents breach Hugging Face in test

Cyber security experts have warned that the breach of Hugging Face infrastructure during an OpenAI security evaluation marks a turning point in the risks posed by autonomous AI agents. In the incident, AI models moved beyond a controlled test and carried out a live, multi-stage intrusion against the AI platform.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 24, 2026
July 24, 2026

Technology Decisions: AI generated code found to produce predictable weaknesses

AI-generated code introduces an average of 15 confirmed vulnerabilities per codebase, research published by Secure Code Warrior indicates.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 23, 2026
July 23, 2026

Forbes: OpenAI’s Hugging Face Breach Shows Frontier AI Guardrails Are Failing

Frontier AI is facing a PR crisis. After Hugging Face released a blog post on July 16 claiming an autonomous agent had breached its internal environment, OpenAI posted on July 21 that the incident occurred when GPT 5.6 Sol and a “pre-release model” escaped a controlled testing environment.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 22, 2026
July 22, 2026

In AI Today: Secure Code Warrior research reveals AI-generated code introduces an average of 15 vulnerabilities per codebase

Secure Code Warrior research reveals AI-generated code introduces an average of 15 vulnerabilities per codebase.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 21, 2026
July 21, 2026

VMBlog: Secure Code Warrior Research Reveals AI-Generated Code Introduces an Average of 15 Vulnerabilities Per Codebase

Secure Code Warrior introduced the SCW AI Trust Index, a living benchmark for AI coding security that grows with every new model, helping organizations understand and govern the security risks introduced by AI-generated code. Built on a methodology created with RMIT University, Australia, then extended by Secure Code Warrior, the research presents comprehensive benchmarks on how often leading LLMs produce insecure code, with material implications for every enterprise scaling AI-assisted development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 21, 2026
July 21, 2026

Dark Reading: Choose Wisely: AI-Generated Coding Risk Varies, A Lot

AI-generated code introduces 15 vulnerabilities on average per codebase, but the actual risk depends on framework pairing more than the model used.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
July 21, 2026
July 21, 2026

Secure Code Warrior Research Reveals AI-Generated Code Introduces an Average of 15 Vulnerabilities Per Codebase

New SCW AI Trust Index shows AI-generated coding risk is not random, it's predictable by model and framework, giving security leaders the data to safely scale AI-assisted development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 16, 2026
July 16, 2026

ITWire: Eight Industry Executives Comment on Worldwide AI Appreciation Day

The challenges with AI implementation, constant updates, and the race for industry dominance are coming thick and fast, and security professionals are among the most affected by its vast risk profile.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 16, 2026
July 16, 2026

Cyber Daily: The industry speaks – part 3: AI Appreciation Day 2026

The Australian government has said AI is very much in the country’s future national interest – but where does it stand today? Here’s what the industry’s best and brightest have to say about artificial intelligence and its role in the modern enterprise.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 13, 2026
July 13, 2026

ITWire: Agentic AI Era Demands Overhaul of Governance Frameworks

The emergence of agentic AI marks a structural shift in software development, introducing systems that not only accelerate production cycles but also perform autonomous reasoning and action beyond direct human control.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 2, 2026
July 2, 2026

SecurityWeek: How to Conduct a Successful Audit of AI-Driven Software Development

As AI-generated code becomes commonplace, CISOs need new audit strategies to measure developer practices, govern AI tool usage, and identify software risks before they reach production.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 1, 2026
July 1, 2026

SD Times: Platform Engineering & Developer Experience: Making Engineers Faster Without Making Them Reckless: SD Times 100

This category has taken on new urgency in 2026 for a reason that’s specific to this moment: AI coding tools and agents are dramatically increasing how much code gets written and how often it needs to be deployed, tested, and provisioned for. Platform engineering is the layer that determines whether that increased velocity translates into shipped value or into chaos.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
April 10, 2026
April 10, 2026

SD Times: AI-Assisted Development Multiplies Human Error: What’s Your AI Governance and Risk Management Strategy?

According to a recent report from Gartner, the rampant use of shadow AI and rogue automation is further fueling the proliferation of AI vulnerabilities. Gartner notes that 32% of IT workers using generative AI tools at work say they keep them hidden from cybersecurity teams. Combined with low-code/no-code platforms and vibe coding practices, the AI copilots are greatly expanding the enterprise attack surface.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 31, 2026
March 31, 2026

Cybersecurity Tribe: What Separates Real AI Governance From Policy Theater

For this article, we asked a central question for security and risk leaders: "What differentiates a policy that genuinely mitigates enterprise risk from one that exists primarily to demonstrate that the organization has acknowledged AI risk?"

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 31, 2026
March 31, 2026

ISMG: AI Coding Tools Raise Hidden Security Risks

Secure Code Warrior's Pieter Danhieux on Managing AI-Driven Development Risks

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 30, 2026
March 30, 2026

ITWire: Decoding AI Coding “Personalities” Critical to Managing Development Risk

As generative AI cements its place in enterprise software development, a familiar discipline is taking on new urgency: risk management.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 24, 2026
March 24, 2026

In AI Today: Secure Code Warrior launches Trust Agent: AI to enable safe, scalable AI-driven development

Secure Code Warrior have today announced SCW Trust Agent: AI, the industry’s first governance solution designed to make Artificial Intelligence (AI) influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 23, 2026
March 23, 2026

DEVOPSdigest: 25 Years of the Agile Manifesto, and the End of the Road for AppSec?

Even as we restructure the SDLC around the most impactful elements of the Agile methodology with careful, DevSecOps-centric security considerations, is this the end of the road for AppSec as we know it?

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 23, 2026
March 23, 2026

Cyber Defense Magazine: Global InfoSec Awards 2026 Secure Code Warrior Wins Outstanding Achievement in Cybersecurity Risk Management and Compliance Excellence

Global InfoSec Awards 2026 Secure Code Warrior Wins Outstanding Achievement in Cybersecurity Risk Management and Compliance Excellence

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 19, 2026
March 19, 2026

ITWire: Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

New AI Software Governance solution makes AI-generated code visible at commit, enforces policy before production, and connects real development behavior to measurable risk reduction.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 19, 2026
March 19, 2026

DevOps.com: Secure Code Warrior AI Agent Applies Policies to AI Generated Code

Secure Code Warrior (SCW) this week added an artificial intelligence (AI) agent that both identifies code generated by an AI coding tool and automatically applies the appropriate governance policies.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 18, 2026
March 18, 2026

SecurityBrief UK: Secure Code Warrior unveils AI tool to govern code risk

Secure Code Warrior has launched SCW Trust Agent: AI, a software governance product that tracks the use of AI coding tools in development and links that usage to software risk when developers commit code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

2026 Globee® Awards for Cybersecurity: Secure Code Warrior Wins Gold Globee for Software Development Cybersecurity Solutions (Best Of)

2026 Globee® Awards for Cybersecurity: Secure Code Warrior Wins Gold Globee for Software Development Cybersecurity Solutions (Best Of)

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

DEVOPSdigest: Secure Code Warrior Releases Trust Agent

Secure Code Warrior announced SCW Trust Agent: AI, a governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

TalkDev: Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

Secure Code Warrior today announced SCW Trust Agent: AI, the industry’s first governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk. For the first time, organizations can trace which AI models influenced specific commits, correlate that influence to vulnerability exposure, and take corrective action before insecure code reaches production.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

Help Net Security: SCW Trust Agent: AI tracks AI influence in code to reduce software risk

Secure Code Warrior has announced SCW Trust Agent: AI, a governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit, enabling enterprises to scale AI coding tools with measurable control over software risk. Organizations can trace which AI models influenced specific commits, correlate that influence with vulnerability exposure, and take corrective action before insecure code reaches production.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
March 17, 2026
March 17, 2026

Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

New AI Software Governance solution makes AI-generated code visible at commit, enforces policy before production, and connects real development behavior to measurable risk reduction.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 13, 2026
March 13, 2026

Security Boulevard: Threat Modeling with AI: A Developer-Driven Boon for Enterprise Security

Developers have long struggled to truly claim a seat at the table in traditional threat modeling programs, but with the right skills, they have the opportunity to wield AI responsibly to seriously cut risk and rework in their codebase.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 9, 2026
March 9, 2026

The AI Journal: Understanding LLM Coding Personalities Is Now Key to Developer Risk Management

AI-generated code may be “made by machine”, but taking a cookie-cutter approach to securing that code would fall well short of mitigating the vulnerabilities LLMs can introduce. Organizations need to establish precise security reviews, with human developers anchoring the process to implement effective security controls while also managing the specific coding temperament of each LLM used. AI-generated code must undergo the same personalized risk assessments as code written by human developers.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 2, 2026
March 2, 2026

SecurityBrief: The security challenges in AI-assisted software development

s artificial intelligence (AI) tools become more widely used in the software development process, their impact on security is becoming clearer. According to recent research, nearly 70% of organisations have discovered vulnerabilities caused by AI tools while one in five have experienced a serious incident as a result of those vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 2, 2026
March 2, 2026

KBI Media: Eliminating the Technical Debt Caused by AI-Assisted Software Development

According to research company Forrester[1], the tech debt for 75% of organisations will increase to a moderate or high level during this year, due to the rapid expansion of AI usage across a range of areas including software development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 20, 2026
February 20, 2026

Forbes: Security Self-Governance: Addressing The Regulatory Gap In AI-Assisted Software Development

While it’s early into 2026, we’re seeing new research that reveals the extent of cyber risks caused by artificial intelligence (AI)-assisted software development: Nearly 7 in 10 organizations have discovered vulnerabilities introduced by AI-generated code, and 1 in 5 have suffered a serious incident tied directly to the vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 19, 2026
February 19, 2026

ITWire: Why AI Is Dulling Cybersecurity’s Most Important Edge

Artificial intelligence (AI) has rapidly become indispensable to modern software development. From large language models that generate code on demand to agentic systems that automate entire workflows, AI tools promise dramatic gains in productivity and efficiency.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 12, 2026
February 12, 2026

SecurityWeek: How to Eliminate the Technical Debt of Insecure AI-Assisted Software Development

Developers must view AI as a collaborator to be closely monitored, rather than an autonomous entity to be unleashed. Without such a mindset, crippling tech debt is inevitable.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 9, 2026
February 9, 2026

CSO Online: Software developers: Prime cyber targets and a rising risk vector for CISOs

From technical compromise to AI-driven attacks, cyber criminals increasingly see software developers as prime targets, creating systemic risks CISOs must address.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 30, 2026
January 30, 2026

SMBtech: Tech Industry Leaders React To Data Privacy Week 2026

It’s Online Privacy Week, a time of year where individuals and organisations are all reminded to check their digital footprint(s). Some might say that’s a futile gesture at a time where major social media and marketing players know absolutely everything about you and are cheerfully selling all that data to anyone who’ll buy it; when Microsoft is performing every trick in the book to get Windows users to put all their data in the cloud where it’s available for government agencies to snoop upon without letting you know; when a personal computer crisis means many people will be moved on to dumb-client computing landscape where everything from data storage to major processing tasks will be taking place in the cloud; and when people think that clicking ‘Accept’ on website pop-ups does something that meaningfully protects them. But, what do the experts say?

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 29, 2026
January 29, 2026

Security brief: AI heightens data privacy risks & reshapes digital trust

Technology and data specialists have warned that artificial intelligence and weak data governance are sharpening privacy risks for organisations, as businesses mark World Data Privacy Day.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 27, 2026
January 27, 2026

ITWire: Data Privacy Week 2026

“Data Privacy Week" presents a great reminder for organisations to reassess their customer privacy policies and prioritise transparent data collection in their marketing strategies.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 27, 2026
January 27, 2026

Dynamic Business: Data Protection Day 2026: Five experts on the privacy risks threatening your business

Five leading cybersecurity experts warn AI is being integrated faster than security policies can manage the risk, creating urgent privacy gaps for SMEs ahead of Data Protection Day on 28 January.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 22, 2026
January 22, 2026

Information Security Buzz: OWASP Top 10 2025: New Enemies, Old Foes, and an Approach to Vulnerability Remediation That Must Evolve

The OWASP Foundation has been a guiding light for security professionals and enthusiasts alike, providing critical, practical advice on the most insidious software vulnerabilities across a plethora of categories and platforms. It has been the first major update since 2021 to the flagship OWASP Top 10 Web Vulnerabilities, and in that time, the industry has been rocked by a stampede of AI technology, tools, and code, each creating a dichotomy of security efficiency and risk for both cybersecurity and software engineering professionals.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 22, 2026
January 22, 2026

DEVOPSdigest: What Software Developers Need to Know About Secure Coding and AI Red Flags

The bottom line: AI tools are not safe for enterprise use unless the code output is reviewed and implemented by a security-proficient human. 30% of security experts admit that they don't trust(link is external) the accuracy of code generated by AI itself. That's why security leaders must prioritize the education and upskilling of developer teams, to ensure they have the necessary skills and capabilities to mitigate AI-assisted code vulnerabilities as early as possible. This will lead to the cultivation of a "security first" team culture and safer AI use.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 15, 2026
January 15, 2026

Stack Overflow: If you're a Zoomer, this one's for you: Everything Gen Z needs to know about the 2025 tech landscape

Here's the lowdown on all the tech from 2025 that you, dear Zoomer, should know about.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 15, 2026
January 15, 2026

SC Media: CISOs can’t wait for the EU AI Act to take shape

CISOs hoping for the EU Artificial Intelligence Act to offer a solid framework for AI governance may be a little confused or disappointed by recent updates surrounding the implementation of AI restrictions.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 14, 2026
January 14, 2026

SecurityBrief: Agentic AI double agents expose dangerous security gaps

An alleged nation-state attacker used Claude Code and a range of tools in the developer ecosystem to almost autonomously target specific companies with benign open-source hacking tools at scale. Of the more than thirty attacks, several were successful, and proved that AI agents could indeed execute large-scale, malicious tasks with little to no human intervention.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 14, 2026
January 14, 2026

DEVOPSdigest: 2026 DevSecOps Predictions

DEVOPSdigest's Prediction Series continues with 2026 DevSecOps Predictions — Industry experts offer predictions on how DevSecOps will evolve and impact the industry in 2026.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 12, 2026
January 12, 2026

ITWire: OWASP Names Latest Top 10 Application Vulnerabilities

The Open Worldwide Application Security Project (OWASP) has unveiled its latest top 10 vulnerabilities list, and it contains some surprising insights into important vulnerability classes.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 24, 2025
December 24, 2025

Channel Insider: Cybersecurity Experts Predict AI, Nation-State Threats in 2026

Cybersecurity experts outline 2026 predictions, from AI-driven attacks and quantum risk to nation-state threats, OT security gaps, and automation pressures.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 15, 2025
December 15, 2025

Security Journal UK: The rise of AI coding tools and the skills gap they expose

Pieter Danhieux, Co-founder and CEO of Secure Code Warrior warns that while AI coding tools promise speed and efficiency, they also introduce new risks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 15, 2025
December 15, 2025

ITWire: Predictions on State of AI in 2026

2026 is shaping up to be the year AI evolves from instrument to partner, transforming how we work, create and solve problems.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 15, 2025
December 15, 2025

Fortune: AI coding tools exploded in 2025. The first security exploits show what could go wrong

While a breach of the tools hasn’t so far caused a wide-scale attack, there have been a few exploits and near-misses, and cyberthreat researchers have discovered critical vulnerabilities in several popular tools that make clear what could go horribly wrong.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 10, 2025
December 10, 2025

SMBtech: Australian Tech Industry Leaders Make Their Predictions for 2026

It’s that time of year where the technology industry predictions start rolling-in. Here’s what you can (apparently) expect in 2026.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 9, 2025
December 9, 2025

Technology Decisions: The importance of effective security when deploying AI tools

The concern is straightforward: development teams may place undue confidence in AI tools that are not equipped to interpret the nuanced context in which many security vulnerabilities arise. Large language models, for instance, can struggle to understand an application’s authentication or authorisation architecture, increasing the likelihood of missing critical safeguards.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 8, 2025
December 8, 2025

ITWire: Five Steps to Improve the Security of AI Developed Code

Industry guidance on managing the risks of AI-generated code increasingly points to the same conclusion: effective safeguards rely on close collaboration between humans and machines, with developers remaining firmly in the loop.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 1, 2025
December 1, 2025

SecurityBrief Australia: Agentic AI to transform APJ businesses & security by 2026

Agentic artificial intelligence (AI) is set to reshape the enterprise landscape in the Asia-Pacific and Japan (APJ) region in 2026, according to industry executives. Organisations are expected to embrace increasingly autonomous software agents, raising both productivity and new categories of risk across business domains.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 1, 2025
December 1, 2025

SC Magazine UK: Why Firms Can’t Ignore Agentic AI

How big a threat does agentic AI pose to businesses currently? And what should security leaders be doing to address the risk?

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 25, 2025
November 25, 2025

VMBlog: Cybersecurity Predictions: What AI will (and won't) do for us in 2026

My co-founder and CTO, Matias Madou, Ph.D., and I consulted our crystal ball (or should that be our NVIDIA GPUs?), and this is what we believe 2026 has in store for us from an AI security perspective.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 21, 2025
November 21, 2025

SD Times: Pumping the Brakes on Agentic AI Adoption in Software Development

An alleged nation-state attacker used Claude Code and a range of tools in the developer ecosystem, namely Model Context Protocol (MCP) systems, to almost autonomously target specific companies with benign open-source hacking tools at scale. Of the over thirty attacks, several were successful, and proved that AI agents could indeed execute large-scale, malicious tasks with little to no human intervention. Maybe it’s time we went a little slower, stopped to reflect on what is at stake here, and how best to defend ourselves.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 20, 2025
November 20, 2025

AIthority: Building Secure and Ethical AI Practices in Software Development

AI is now a key piece of modern software development. More than four out of five developers use AI coding tools daily or weekly – with many relying on multiple tools in parallel. Teams must understand where automation ends, and where accountability begins.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 18, 2025
November 18, 2025

SC Media: Secure Coding as Critical Thinking Instead of Vulnspotting – Matias Madou – ASW #357

Secure code should be grounded more in concepts like secure by default and secure by design than by “spot the vuln” thinking. Matias Madou shares his experience in secure coding training and the importance of teaching critical thinking. He also discusses why critical thinking is so closely related to threat modeling and how LLMs can be a tool for helping developers get beyond the superficial advice of, “Think like an attacker.”

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 17, 2025
November 17, 2025

Forbes: How CISOs Can Increase Their Influence In AI-Obsessed Boardrooms

Organizations are at an inflection point driven by the explosive adoption of AI, which promises significant changes in how businesses operate. That leaves CISOs on unsteady ground. As the gatekeepers of their organization’s data and access, they must ensure the security of the enterprise. However, the prospects of a headlong charge into wide-ranging, and possibly unchecked, use of AI could create a flood of security issues that many CISOs, under their current organizational structures, aren’t equipped to handle.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 14, 2025
November 14, 2025

Security Boulevard: Security Degradation in AI-Generated Code: A Threat Vector CISOs Can’t Ignore

Security leaders and developers alike are already acutely aware that AI coding assistants and agentic agents can introduce vulnerabilities into the code they generate. A recent study unveiled another critical concern to keep them up at night — LLMs used for making iterative code improvements may introduce new vulnerabilities over time, even when explicitly asked to make code more secure.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 13, 2025
November 13, 2025

Information Week: Make your own mandate: How CISOs can implement GenAI governance

Government bodies are trying to develop rules and regulations for safe AI use, but enterprises can't afford to wait. They need to address the risks now.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 12, 2025
November 12, 2025

CFOtech Australia: How women can continue to foster fulfilling high-tech careers in the AI age

In the sphere of cybersecurity in general and application security in particular, human oversight remains an absolute 'must' to harness the benefits of AI productivity.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 11, 2025
November 11, 2025

Tanium: Vibe coding may be unstoppable—but here’s how to rein in the risks

Like the meteoric rise of ChatGPT, vibe coding is all anybody can talk about this year. In fact, it just became a word in the dictionary. But beware the boom: These new AI coding tools offer speed, savings—and astounding vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 11, 2025
November 11, 2025

[PODCAST] Stack Overflow: AI code means more critical thinking, not less

Ryan is joined by Secure Code Warrior’s co-founder and CTO Matias Madou to discuss the implications of LLMs’ variability on code security, the future of developer training as AI coding assistants become more popular, and the importance of critical thinking—especially for junior developers—in the age of AI.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 9, 2025
November 9, 2025

Cybersecurity Insiders: Use It or Lose It: Overreliance on AI Diminishes Critical Cybersecurity Thinking Skills

Software developers reap a host of benefits from making use of artificial intelligence assistants, whether in the form of Large Language Model (LLM) code creators or agentic AI agents. But recent reports, highlighted by a new study at MIT, warn that heavy use of AI can result in a loss of critical thinking skills among users.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 3, 2025
November 3, 2025

Security Week: How Software Development Teams Can Securely and Ethically Deploy AI Tools

To deploy AI tools securely and ethically, teams must balance innovation with accountability—establishing strong governance, upskilling developers, and enforcing rigorous code reviews.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 3, 2025
November 3, 2025

Dark Reading: AI Developed Code: 5 Critical Security Checkpoints for Human Oversight

To write secure code with LLMs developers must have the skills to use AI as a collaborative assistant rather than an autonomous tool, Madou argues.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 23, 2025
October 23, 2025

Techstrong.tv: Secure Code Warrior in the Age of AI with Pieter Danhieux

Secure Code Warrior’s Chief Executive Officer, Chairman, and Co-Founder Pieter Danhieux explains his transition from offensive cybersecurity to promoting secure software development. Founded in 2015, Secure Code Warrior aims to help developers build secure code from the start, a practice Danhieux and host Alan Shimel agree is more effective than fixing vulnerabilities later. The two also discuss the impact of AI on software development, noting that while AI increases coding speed and accessibility for more people, the security of AI-generated code still lags. They emphasize the growing need for developers to master secure coding practices amidst these technological advancements.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 20, 2025
October 20, 2025

SMBtech: Cybersecurity Awareness Month 2025: Australian Industry Reactions and Commentary

October is Australia’s Cybersecurity Awareness Month, the annual reminder for Aussies to stay vigilant online. This year’s theme, ‘Building our cyber safe culture’ once again highlights the importance of taking personal responsibility for staying secure in an increasingly digital world.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 16, 2025
October 16, 2025

SecurityBrief: SMEs urged to cut data & boost cyber defences as attacks rise

Cybersecurity Awareness Month has brought renewed attention to the increasing risks faced by organisations of all sizes, with a particular focus on the growing threat to small and medium-sized enterprises (SMEs) in Australia and the UK.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 14, 2025
October 14, 2025

ITBrief: Our biggest security risk isn’t our software - it’s our thinking

In the world of cybersecurity, we face creative and unconventional threats every day. But our greatest vulnerability isn't a flaw in our software, but a flaw in our collective thinking.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 10, 2025
October 10, 2025

KBI Media: Overcoming the Security Risks of Using AI In Software Development

Development teams face relentless pressure to deliver, yet they must continue to prioritise building secure, high-quality software. Leaders play a crucial role in reinforcing how a Secure by Design approach, supported by observability, benchmarking, and ongoing education, directly enhances code quality. By embedding these practices, organisations can close governance gaps and fully capture the benefits of AI-driven productivity and efficiency, while reducing the risk of security flaws or costly rework during the SDLC.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 1, 2025
October 1, 2025

In AI Today: The looming security challenges posed by Agentic AI

While agentic AI holds the promise of delivering significant business benefits, it also comes with significant caveats. The technology’s capabilities and autonomy present a potent enterprise threat vector beyond the realm of existing security concerns.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 25, 2025
September 25, 2025

Help Net Security: Secure Code Warrior gives CISOs visibility into developer AI tool usage

Secure Code Warrior has launched a beta program to expand the AI capabilities of its Trust Agent product. The new offering provides CISOs with security traceability, visibility, and governance over developers’ use of AI coding tools.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 25, 2025
September 25, 2025

Cyber Risk Leaders: Secure Code Warrior Launches AI Traceability

Secure Code Warrior have released a beta program for a major expansion of AI capabilities within its Trust Agent product. The upgrade, collectively referred to as Trust Agent: AI, leverages a combination of key signals, including AI coding tool usage, vulnerability data, code commit data and developer secure coding skills, to provide visibility into how AI development tools are impacting risk within the software development lifecycle (SDLC).

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 25, 2025
September 25, 2025

CSO Online: AI coding assistants amplify deeper cybersecurity risks

Although capable of reducing trivial mistakes, AI coding copilots leave enterprises at risk of increased insecure coding patterns, exposed secrets, and cloud misconfigurations, research reveals.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
September 24, 2025
September 24, 2025

Secure Code Warrior Launches Industry-First AI Traceability to Enable Secure Developers and Supercharge Safe Productivity

New capabilities in SCW Trust Agent provide visibility and control over LLM usage for security leaders and CISOs.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

ITOps Times: Secure Code Warrior announces new solution that provides visibility and governance for AI coding tools

Secure Code Warrior is trying to provide organizations with greater visibility and control over developers’ use of AI coding tools with the launch of its new solution, Trust Agent: AI.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

DevOps Digest: Secure Code Warrior Introduces AI Traceability

Secure Code Warrior announced the launch of a beta program for a major expansion of AI capabilities within its Trust Agent product.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

CyberWire: Business Briefing for 09.24.25

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

Betanews: AI is an even playing field -- how secure by design can tip the scale [Q&A]

Vibe coding is currently all the rage, with more than 97 percent of respondents to a survey earlier this year reporting having used AI coding tools at work. The adoption of these tools only continues to grow but it comes with a catch, attackers are also employing the same techniques. We spoke to Pieter Danhieux, co-founder and CEO of Secure Code Warrior, to discuss how vibe coding is redefining the software development landscape, how malicious actors are also leveraging this technology and the need for organizations to implement secure by design strategies from the outset.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 22, 2025
September 22, 2025

SD Times: Benchmarking AI-assisted developers (and their tools) for superior AI governance

If the tech stack lacks tools that oversee not only developer security proficiency, but also the trustworthiness of approved AI coding companions each developer uses, then it is likely that efforts to uplift the overall security program and the developers working within it will be short of the appropriate data insights to effect change.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 22, 2025
September 22, 2025

ITWire: The Benefits and Risks of Using AI Tools in Software Development

The process of software development is undergoing a period of expedited change. Thanks to massive advances in artificial intelligence (AI) technology, projects can be completed more rapidly and by people with little or no prior experience.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 10, 2025
September 10, 2025

LeadDev: Ethics are being forgotten as the AI race heats up

Is the tech industry capable of the change needed to curb ethical and environmental concerns?

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
September 9, 2025
September 9, 2025

Secure Code Warrior Expands Commitment to Secure by Design Best Practices with Free Secure Code Video Series for Developers

Launch of new 12-week video series on AI/LLM security empowers developers to safely adopt AI coding and mitigate emerging security risks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 9, 2025
September 9, 2025

CSO Online: When AI nukes your database: The dark side of vibe coding

As developers lean on Copilot and GhostWriter, experts warn of insecure defaults, hallucinated dependencies, and attacks that slip past traditional defenses.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 8, 2025
September 8, 2025

The AI Journal: Resilience and Developer Risk Management: Two Pillars of Success in the Era of Secure by Design and AI Coding

Change is afoot in cybersecurity governance, and it couldn’t come at a more transformative time for security leaders worldwide. The White House issued a recent Executive Order (EO) designed to “reprioritize cybersecurity efforts to protect America”, and with it, reduce friction related to overzealous government oversight to focus on protecting critical digital assets and enhanced secure technology practices. Coupled with significant cuts to CISA, one could be forgiven for being apprehensive of the right approach going forward, especially in the wake of rapid AI technology progression and Secure by Design initiatives.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 5, 2025
September 5, 2025

SecurityWeek: How to Close the AI Governance Gap in Software Development

Widespread adoption of AI coding tools accelerates development—but also introduces critical vulnerabilities that demand stronger governance and oversight.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 3, 2025
September 3, 2025

teiss: When regulations aren’t enough

Pieter Danhieux at Secure Code Warrior explains why “Secure by Design” has emerged as mission critical for software development

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 2, 2025
September 2, 2025

Information Age: Vibe coding is a hot skill – and security experts are worried

GenAI tools are building insecure apps faster than ever.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 26, 2025
August 26, 2025

CXFocus Magazine: Going above and beyond in 2026

Today’s customers are an exacting lot with little tolerance for suppliers that fail to meet their ever-increasing expectations. Almost 94 per cent of Australian consumers stopped purchasing from at least one company after a negative experience, according to CPM’s 2025 The State of Customer Experience in Australia Report.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
July 21, 2026
July 21, 2026

Which AI Model Codes Most Securely?

See how 16 leading AI models actually code, scored across 11 real-world frameworks and 1,760 codebases — the framework matters as much as the model.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
July 7, 2026
July 7, 2026

Citizen AI by Secure Code Warrior

AI risk doesn't stop at engineering. Get the one-pager on Citizen AI — build AI literacy and safe habits across your whole workforce.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 23, 2026
June 23, 2026

Understand how AI is transforming software development—and how security must evolve with it.

From AI autocomplete to autonomous agents—explore how software development is evolving and what it means for security, governance, and your team.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
June 9, 2026
June 9, 2026

SCW named in new Agentic Coding Security category

Gartner named SCW twice in the 2026 Hype Cycle for Secure Software Engineering. Here's why it matters for AI-driven development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
May 15, 2026
May 15, 2026

SCW Learning Content for KnowBe4

Secure Code Warrior content available through KnowBe4 helps technical teams build secure coding and AI governance awareness through structured learning covering OWASP Top 10 risks, AI-assisted development, and modern secure coding practices.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
May 13, 2026
May 13, 2026

Secure AI-driven development with KnowBe4 + Secure Code Warrior

Secure Code Warrior joins KnowBe4 to bring hands-on secure coding training into security awareness programs — covering OWASP, AI development, and 10 languages.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
April 1, 2026
April 1, 2026

Trust Agent:AI - Secure and scale AI-Drive development

AI is writing code. Who’s governing it? With up to 50% of AI-generated code containing security weaknesses, managing AI risk is critical. Discover how SCW's Trust Agent: AI provides the real-time visibility, proactive governance, and targeted upskilling needed to scale AI-driven development securely.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 23, 2026
March 23, 2026

The Power of OpenText Application Security + Secure Code Warrior

OpenText Application Security and Secure Code Warrior combine vulnerability detection with AI Software Governance and developer capability. Together, they help organizations reduce risk, strengthen secure coding practices, and confidently adopt AI-driven development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 19, 2026
March 19, 2026

Secure Code Warrior corporate overview

Secure Code Warrior is an AI Software Governance platform designed to enable organizations to safely adopt AI-driven development by bridging the gap between development velocity and enterprise security. The platform addresses the "Visibility Gap," where security teams often lack insights into shadow AI coding tools and the origins of production code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
March 11, 2026
March 11, 2026

Secure code training topics & content

Our industry-leading content is always evolving to fit the ever changing software development landscape with your role in mind. Topics covering everything from AI to XQuery Injection, offered for a variety of roles from Architects and Engineers to Product Managers and QA. Get a sneak peek of what our content catalog has to offer by topic and role.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
January 20, 2026
January 20, 2026

Cyber Resilience Act (CRA) Aligned Learning Pathways

SCW supports Cyber Resilience Act (CRA) readiness with CRA-aligned Quests and conceptual learning collections that help development teams build the Secure by Design, SDLC, and secure coding skills aligned with the CRA’s secure development principles.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
December 23, 2025
December 23, 2025

OWASP Top 10 2025 eBook

Want to dominate the OWASP Top 10? Download the No-BS Guide to Defending Your Applications Against the OWASP Top 10:2025

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
September 24, 2025
September 24, 2025

Trust Agent: AI by Secure Code Warrior

This one-pager introduces SCW Trust Agent: AI, a new set of capabilities that provide deep observability and governance over AI coding tools. Learn how our solution uniquely correlates AI tool usage with developer skills to help you manage risk, optimize your SDLC, and ensure every line of AI-generated code is secure.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 9, 2025
July 9, 2025

AI Coding Assistants: A Guide to Security-Safe Navigation for the Next Generation of Developers

Large language models deliver irresistible advantages in speed and productivity, but they also introduce undeniable risks to the enterprise. Traditional security guardrails aren’t enough to control the deluge. Developers require precise, verified security skills to identify and prevent security flaws at the outset of the software development lifecycle.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
April 28, 2025
April 28, 2025

Secure by Design: Defining Best Practices, Enabling Developers and Benchmarking Preventative Security Outcomes

In this research paper, Secure Code Warrior co-founders, Pieter Danhieux and Dr. Matias Madou, Ph.D., along with expert contributors, Chris Inglis, Former US National Cyber Director (now Strategic Advisor to Paladin Capital Group), and Devin Lynch, Senior Director, Paladin Global Institute, will reveal key findings from over twenty in-depth interviews with enterprise security leaders including CISOs, a VP of Application Security, and software security professionals.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
April 16, 2025
April 16, 2025

Turn Awareness Into Action This Cyber Awareness Month

This October, turn awareness into action. Make Cyber Awareness Month memorable for your developers with a high-impact, high-participation experience—led by Secure Code Warrior's Professional Services team.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
April 2, 2025
April 2, 2025

Professional Services - Accelerate with expertise

Secure Code Warrior’s Program Strategy Services (PSS) team helps you build, enhance, and optimize your secure coding program. Whether you're starting fresh or refining your approach, our experts provide tailored guidance.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 19, 2025
March 19, 2025

Quests: Industry leading learning to keep developers ahead of the game mitigating risk.

Quests is a learning platform that helps developers mitigate software security risks by enhancing their secure coding skills. With curated learning paths, hands-on challenges, and interactive activities, it empowers developers to identify and prevent vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
October 15, 2024
October 15, 2024

Benchmarking Security Skills: Streamlining Secure-by-Design in the Enterprise

The Secure-by-Design movement is the future of secure software development. Learn about the key elements companies need to keep in mind when they think about a Secure-by-Design initiative.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
August 15, 2024
August 15, 2024

Trust Agent in action

SCW Trust Agent gives you the tools you need to deliver secure code faster, ensuring developers have the knowledge and skills to implement security best practices in the specific programming language of their code commits.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
July 23, 2024
July 23, 2024

Trust Agent by Secure Code Warrior

Are you confident that every line of code committed is backed by a developer with the necessary secure coding skills? Many organizations face this critical gap, leading to preventable vulnerabilities and reduced development velocity. SCW Trust Agent offers unparalleled visibility across your code repositories, analyzing commits directly against developer security proficiency. With policy gates, Trust Agent enables you to apply governance at the commit level, with policies to ensure code contributors have the secure code knowledge you require for your business-critical applications. Download our one-pager today to learn how SCW Trust Agent can help you strengthen your security posture, optimize your development lifecycle, and significantly reduce vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
June 28, 2024
June 28, 2024

SCW Trust Score - The best way to build, measure, and optimize your security program

Learn more about Secure Code Warrior Trust Score, the best way to build, measure and optimize your security program.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
April 26, 2024
April 26, 2024

Trust Score by Secure Code Warrior

Discover SCW Trust Score, an industry-first benchmark to help measure your security program's effectiveness. Benchmark against industry peers, optimize your security posture, and drive data-driven decisions for enhanced software security.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
April 26, 2024
April 26, 2024

Preparing for PCI-DSS 4.0 Compliance

Evaluate your software security infrastructure to support PCI-DSS requirements

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
April 5, 2024
April 5, 2024

The ultimate guide to security trends in financial services

Financial services institutions face an array of challenges that hinge on their ability to make efficient, effective use of technology in a fast-evolving financial world. Organizations are operating in a time of rapid changes—both internally and across the industry—in a highly competitive, cloud-based business environment. In pursuing their ongoing digital transformations, for example, organizations are working to get around the organizational friction that hinders investments into new technologies, such as artificial intelligence, that could accelerate payment processes and other procedures.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Report
downloads
March 24, 2024
March 24, 2024

Predicts 2024: Generative AI is reshaping software engineering

Explore how generative AI is revolutionizing software development across the SDLC, as highlighted in Gartner's report, advising Application Security leaders on the importance of scrutinizing AI-generated software.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
March 7, 2024
March 7, 2024

PCI DSS 4.0 Unraveled

This guide offers practical strategies to engage development teams in PCI DSS 4.0 compliance. It outlines the modern developer's requirements for compliance, strategies for security professionals and development managers to collaborate on developer-focused security programs, and step-by-step advice on effective training initiatives to mitigate vulnerabilities permanently.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
March 4, 2024
March 4, 2024

Developer security maturity quiz

Secure Code Warrior outlines three security maturity stages for developer teams: defining, adopting, and scaling. How security-savvy are your developers? Take our quiz to find out.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
February 22, 2024
February 22, 2024

Script Testing please ignore

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
February 1, 2024
February 1, 2024

ROI of Secure Code Learning

Explore the long-term ROI of secure coding education. Learn how investing in agile, proactive learning strategies enhances security and offers cost-effective protection against today's cyber threats.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 30, 2024
January 30, 2024

Why developers need security skills to effectively navigate AI development tools

The promise of artificial intelligence writing complex code at the touch of a button is intriguing, but the reality is that AI will need a lot of help from human developers to craft truly secure and reliable code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
January 29, 2024
January 29, 2024

Top 10 predictions for 2024

Check out what SCW experts are predicting in the world of cybersecurity and software security in 2024.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
November 30, 2023
November 30, 2023

Agile learning platforms: ROI of developer-driven security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
September 12, 2023
September 12, 2023

Forge your fortress: Six essential pillars of developer enablement in software security

In this white paper, security expert and Secure Code Warrior CTO & Co-Founder Matias Madou, Ph.D. will discuss:The six pillars you need to roll out effective security education and enablement for your development cohort. Lessons learned from ten executives implementing security programs at the enterprise level, and common pitfalls to avoid on your road to success.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
September 1, 2023
September 1, 2023

The Agile Learning Platform

Empower your development team with Secure Code Warrior, the agile learning platform designed to tackle the evolving challenges of application security. Stay ahead in the battle against security breaches and regulatory complexities with our industry-leading, up-to-date content, ensuring a proactive and engaging approach to secure code education.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
August 14, 2023
August 14, 2023

OWASP Top 10 API 2023: A tactical guide for smart developers

Explore the Latest in API Security. Dive into our 2023 OWASP Top 10 guide. Elevate your coding skills, tackle vulnerabilities, and stay agile in the ever-evolving world of API development. Download now for an insightful journey!

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
July 17, 2023
July 17, 2023

The secure code learning blueprint

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
December 13, 2022
December 13, 2022

Your handbook to developer-driven security and agile learning

Start shifting left with developer-driven security. This handbook will show you how to engage with developers to upskill and increase their security knowledge, as well as how to go about measuring impact to write more secure code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 28, 2022
July 28, 2022

Software is your colleague: A new perspective to strengthen access control and API security

APIs act like flawed humans; is treating them as such the key to better cybersecurity?

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
July 21, 2022
July 21, 2022

The secure code training blueprint

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
July 1, 2022
July 1, 2022

The developer security maturity matrix

Building security maturity in development teams can be approached in stages. Based on our experience with 400+ organizations, we've identified common practices and traits in three different stages of security maturity - defining, adopting, and scaling.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 1, 2022
July 1, 2022

The importance of security maturity in developer teams

By assessing and understanding a development team’s security maturity, organizations can formulate a plan with the right stakeholders, process, and technology to build and support the necessary skills and capabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
July 1, 2022
July 1, 2022

Development Team Security Maturity

Security maturity in development teams should be a continuous cycle of improvement with realistic goals along the way. As development teams increase their security maturity, they reduce the amount of rework and minimize risk, while also allowing automation to help create efficiency in the SDLC.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Report
downloads
June 30, 2022
June 30, 2022

Report: The state of developer driven security 2022

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 30, 2022
June 30, 2022

Whitepaper: The challenges (and opportunities) to improve software security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brief
downloads
June 20, 2022
June 20, 2022

Brief: A cohesive approach to developer-led security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
June 16, 2022
June 16, 2022

Security and privacy at Secure Code Warrior

Secure Code Warrior is committed to safeguarding our information assets, and those of our customers, against misuse, abuse or compromise. We adopt and foster a risk-based approach to managing information security, with the goal of consistently implementing appropriate risk management and mitigation measures to address the threat landscape posed to the security of the platform, customer data and information. As Secure Code Warrior continues to succeed as a major player providing services to our customers, we will continue to build security capabilities as part of our security and privacy programs. Read our whitepaper for more information.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brief
downloads
May 3, 2022
May 3, 2022

Shift left (and achieve compliance) with repeatable secure coding skills

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brief
downloads
May 3, 2022
May 3, 2022

Defining secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
February 17, 2022
February 17, 2022

Why you need more than scanning tools to create secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
February 14, 2022
February 14, 2022

Your guide to defense against the dark art of zero-day attacks

Zero-day attacks can be the stuff of nightmares, but when an organization commits to using all available tools in their security arsenal towards a preventative strategy, security professionals can sleep a little easier.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
January 14, 2022
January 14, 2022

A plan to upskill and engage your developers

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 13, 2022
January 13, 2022

The preventative, developer-driven approach to software security

Learn more about how security-aware developers represent a vast and largely untapped resource that can support cyber defenses by consistently standing against modern threats.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
November 11, 2021
November 11, 2021

Security and Privacy Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
October 19, 2021
October 19, 2021

Convince Your CISO/CTO Kit (for starting a demo)

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
September 24, 2021
September 24, 2021

OWASP Top 10 API: Strategies for Smart Developers

Download the practical guide to defeating common API security baddies in your code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
September 20, 2021
September 20, 2021

How to unify your security and development teams to stand together against security risk

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
August 4, 2021
August 4, 2021

How AppSec can reduce vulnerabilities and achieve compliance - leaving them free to tackle larger beasts

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
July 28, 2021
July 28, 2021

Buyers Checklist: Secure Development Learning Platforms

Buyer’s Checklist: Secure Development Learning Platforms is aimed at decision makers and technology buyers looking to evaluate secure development learning platforms.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

Shared Assessments SIG Lite Questionnaire

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

SCW Pen Test Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

SCW Cyber Insurance Certificate

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 4, 2021
June 4, 2021

Shifting from reaction to prevention: The changing face of software security 2021 - Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 3, 2021
June 3, 2021

Cybersecurity Executive Order: A deliberate approach to improve software security with developer skills

While this Executive Order for touches on many aspects of functional cybersecurity, it specifically outlines, for the first time, the impact of developers, and the need for them to have verified security skills and awareness.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 18, 2021
May 18, 2021

FSQS-NL Certificate

Secure Code Warrior is now FSQS-NL registered. This registration is an important milestone in our continuous efforts to being compliant with regulations within the financial industry.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 17, 2021
May 17, 2021

Platform Architecture Diagram

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 16, 2021
May 16, 2021

Information Security Policy

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 16, 2021
May 16, 2021

CAIQ Questionnaire

Secure Code Warrior has completed a publicly available Consensus Assessment Initiative Questionnaire (CAIQ), based on the results of our due diligence self-assessment.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
May 12, 2021
May 12, 2021

The DevSecOps Super Bowl: How security champions can support your team to victory against late-stage vulnerabilities

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
March 16, 2021
March 16, 2021

Executive Roundtable Whitepaper - Visma & Blue Prism

How has 2020 changed the way we look at software security, an executive roundtable with Visma.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
March 9, 2021
March 9, 2021

The women of mimmit koodaa movement dive into secure coding

Mimmit Koodaa (women who code in Finland) tell us about their secure coding experiences.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
March 9, 2021
March 9, 2021

Teams in a global financial institution go head-to-head in secure coding contest.

See how a global financial organization promoted the importance of securing their banking applications across the world. With fun interactive tournaments.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
February 15, 2021
February 15, 2021

Missions - Experience the impact of poor code in real-world simulations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
February 15, 2021
February 15, 2021

Courses - Build Secure Coding Skills and Competency

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
January 1, 2021
January 1, 2021

A Step-By-Step Guide to Tournaments

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

Your Battle Plan to Defeat the OWASP Top 10

The ten most common security vulnerabilities don’t stand a chance against secure development superheroes like you. This free eBook is your ultimate field guide to understanding each infamous entry in the OWASP Top 10 2021, gaining insight into how each bug operates.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Triumph with OWASP and Secure Code Warrior Tournaments - Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Tournaments - Build organizational awareness and developer engagement, making secure coding top of mind

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

The Infamous 8: Infrastructure as Code Vulnerabilities to Find and Fix

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

The Five-Step Road to DevSecOps Success: How AppSec Professionals Can Thrive in Their Dream Team

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

The Fastest and Easiest Way to Improve Your Software Security Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
January 1, 2021
January 1, 2021

The Creative CISO's Guide to Transforming Their Security Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Take the pain out of PCI-DSS Compliance Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

Introduction to Secure Code Warrior

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Empowering developers to write secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Empower developers to be the first line of defense and grow your organization's security posture

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Assessments - Benchmark the secure coding skills of your developers, and build your security posture.

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
January 1, 2021
January 1, 2021

AppSec Checklist

Download the AppSec checklist and see if you’re in need of a security lifeline.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

6 Critical Steps Before You Roll Out a Security Uplift Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

2019 AppSec Trend Report

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
December 1, 2019
December 1, 2019

ISO 27001 Compliance Certificate

Secure Code Warrior is ISO 27001:2013 certified

Learn More
No items found.
No items found.
This is some text inside of a div block.
No resources found. Try another search!