Zscaler highlights security trends challenging developers

Zscaler has released its annual ThreatLabz report, highlighting security challenges that should be on every developer’s radar. The 2024 Mobile, IoT, and OT Threat Report – covering June 2023 to May 2024 – highlights critical vulnerabilities in mobile applications, IoT devices, and operational technology (OT) systems that demand immediate attention from the development community. One… …

Custom Apps vs off the shelf Apps: which is better?

2024 is here and as we move into 2025 many businesses face critical decisions when choosing software solutions that can enhance their operations, streamline processes, and support growth. One such choice is between custom-built apps and off-the-shelf apps. Choosing a App development partner or hiring software developer and going solo is a difficult decision. The… …

Entry points threaten multiple open-source ecosystems

While current tools have improved at detecting common tactics for exploiting open-source packages, a feature remains largely overlooked: entry points. Security researchers at Checkmarx uncovered how attackers can leverage entry points across multiple programming ecosystems, with a particular focus on PyPI, to trick victims into running malicious code. This method – while not allowing for… …

GitLab releases critical security patches amid vulnerability streak

GitLab has released a new round of critical security patches for its Community Edition (CE) and Enterprise Edition (EE) products. The company strongly recommends that all self-managed GitLab installations be upgraded immediately to one of the latest versions: 17.4.2, 17.3.5, or 17.2.9. These patch releases address several critical and high-severity vulnerabilities, including a critical flaw… …

Anthropic launches Message Batches API for Claude

Anthropic has launched its Message Batches API, which offers developers a cost-effective solution for processing large volumes of Claude queries asynchronously.  Through the Message Batches API, developers can now send batches of up to 10,000 queries. These batches are processed in less than 24 hours and come at a 50% reduction in cost compared to… …

Open Source Pledge aims to fund software maintainers

Sentry has launched the Open Source Pledge—a programme designed to provide direct financial support to open-source software maintainers. The initiative stems from a long-standing aspiration to give back to the open-source community on behalf of every Sentry employee. The concept of the Open Source Pledge emerged years ago with two primary objectives: to compensate maintainers… …

Halo developers shelve own game development engine for Unreal

The developers behind the iconic Halo franchise have announced a shift in their approach to game development. 343 Industries, now rebranded as Halo Studios, will be abandoning their proprietary Slipspace Engine in favour of Unreal Engine 5 for all future Halo projects. This revelation came during the 2024 Halo World Championship, where fans were treated… …