Security for Teams Using Open-Source Code. Designed for DevOps.

Joined September 2012
46 Photos and videos
Pinned Tweet
Want to know how to get to #DevSecOps in Three Easy Steps? We can help. sourceclear.com/blog/Three-E… via @sourceclear #AppSec

1
5
SourceClear retweeted
Later today @fariusdoo from @Veracode will be presenting our work at #ASE2019 2019.ase-conferences.org/det… Here is preview of our paper "The Dynamics of Software Composition Analysis" where we develop modular means of combining call graphs derived from both static & dynamic analysis
2
4
SourceClear retweeted
Understanding the challenges with Product commoditization in SCA - lambdasec.github.io/When-the…
1
4
Shifting Left to Get Security Right sourceclear.com/blog/Shiftin… via @sourceclear

Writing an OpenSource Usage Policy sourceclear.com/blog/Writing… via @sourceclear

Over 1,000 #CVE's have already been submitted in 2018. How many #vulnerabilities in #opensource have been found but not reported? @SourceClear knows! Sign up for a free trial today and find out what's lurking in your code. sourceclear.com | #AppSec #DevSecOps

1
1
Help! My Supply Chain is Exploding sourceclear.com/blog/Help-My… via @sourceclear

1
3
In today's SourceClear Executive Viewpoint, @alex__ethier explains how Policies can be an enabler for #DevSecOps pipelines. sourceclear.com/blog/Policie… via @sourceclear #AppSec #DevOps

1
4
Announcing Improved User Management with Enterprise Support sourceclear.com/blog/Announc… via @sourceclear

3
4
Mark @Curphey explains why Software Composition is Everything. What goes into your project absolutely determines the security outcomes. sourceclear.com/blog/Composi… via @sourceclear #DevSecOps

1
2
Making @sourceclear proud, our CSO Robert Wood( @HolyCyberBatman) talking at @AppSecCali about the benefits and drawbacks to using #honeypots. You might actually be making #hackers smarter if you use them incorrectly. x.com/mikeboya/status/958852…

1 Feb 2018
Awesome talk by @HolyCyberBatman - “Applied Deception Beyond the Honeypot” - very thought provoking #AppSecCali
1
Our CSO @HolyCyberBatman describes how to protect your #AppSec people form hitting the wall in this blog titled "Burnout Happens, Protect Your AppSec Assets" sourceclear.com/blog/Burnout… via @sourceclear #DevOps #DevSecOps

2
3
SourceClear retweeted
25 Jan 2018
Check out our integration with @sourceclear to identify the potential risks in your workflow ⚠️ bit.ly/2rXbds9
1
2
Our CEO Mark @curphey shares his thoughts on why Diversity and inclusion is the new normal and could be the key to unlocking success in information security. sourceclear.com/blog/Diversi…
1
4
Ever wanted/wondered how to run SourceClear on Windows? Here’s a simple solution using @Docker. sourceclear.com/blog/Running… via @sourceclear #AppSec #DevOps #DevSecOps

2
7
Finding outdated #opensource libraries is great, but knowing where vulnerable methods were used is better. SourceClear can help you with both. Sign up for a free trial today. sourceclear.com/ - #OpenSource #AppSec #DevSecOps

5
While finding known vulns with a CVE in #OpenSource is important, most vulns are not reported. SourceClear has 1000's of SVE vulns for subscribers only. Sign up for a free trial. Install the agent on your desktop and run a scan today! sourceclear.com - #AppSec #DevSecOps

3
4
Not all Software Composition Analysis is the same. Our CEO Mark Curphey (@curphey) discusses his thoughts on the right questions to ask when selecting your solution partner in #openSource security. sourceclear.com/blog/Not-all… via @sourceclear -- #AppSec #DevSecOps

Avoiding False Positives in #OpenSource Component Analysis sourceclear.com/blog/Avoidin… via @sourceclear #SCA #AppSec #DevOps #DevSecOps

1
Our CEO, Mark Curphey (@curphey) adds his 2018 #InfoSec predictions to the fray. It boils down to one thing "2018 Will be the Year of the Developer" sourceclear.com/blog/2018-Pr… #AppSec #DevOps #DevSecOps

1
3