Report by Black Duck

BSIMM16

8 FINDINGSPublished Feb 4, 2025
View Original Report →

Key Findings

Automated verification of infrastructure security surged by more than 50%.

Black DuckBSIMM16·Feb 4, 2025
Infrastructure SecurityAutomationApplication Security

Teams using attack intelligence to track emerging AI vulnerabilities increased by 10%.

Black DuckBSIMM16·Feb 4, 2025
AI SecurityThreat IntelligenceApplication SecurityAI Vulnerabilities

Application of custom rules to automated code review tools to catch issues unique to AI-generated code increased by 10%.

Black DuckBSIMM16·Feb 4, 2025
AI SecurityCode ReviewDeveloper ToolsAI-Generated Code

Use of risk-ranking methods to determine where LLM-generated code is safe to deploy increased by 12%.

Black DuckBSIMM16·Feb 4, 2025
AI SecurityRisk ManagementApplication SecurityLLM-Generated Code

Streamlining of responsible vulnerability disclosure grew by more than 40%.

Black DuckBSIMM16·Feb 4, 2025
Vulnerability DisclosureRegulatory ComplianceApplication SecurityResponsible Vulnerability Disclosure

Organizations delivering expertise through open collaboration channels increased by 29%.

Black DuckBSIMM16·Feb 4, 2025
Collaboration

Establishment of standardized technology stacks rose by more than 40%.

Black DuckBSIMM16·Feb 4, 2025
Technology StackApplication Security

Nearly 30% more organizations now produce SBOMs to meet transparency requirements.

Black DuckBSIMM16·Feb 4, 2025
SBOMRegulatory Compliance