Topic: security

Amazon’s s2n TLS implementation, the AllSeen Alliance Superconnector, and Zephyr Mobile—SD Times news digest: June 30, 2015

Amazon has introduced s2n, a new open-source implementation of the TLS encryption protocol. The s2n implementation, short for “signal to noise,” is a library designed to be small, fast and simple. s2n avoids implementing rarely used TLS options and extensions, and it contains little more than 6,000 lines of code. Amazon plans to integrate s2n … continue reading

Guest View: Testing conveyer: Why do you need to ‘polish’ software?

No matter how genius a new application is, it is still required to go through testers’ hands. And despite the important role testers play, they remain in the shadows. When developers become aware of the variety of tests their software must endure, it often forces them to rethink the way they develop their software—in a … continue reading

Spark Summit: Apache Spark news from Databricks, MapR and more

Databricks has announced the general availability of its cloud-hosted data platform, formerly known as Databricks Cloud. Less than a week after announcing the release of Apache Spark 1.4, Databricks debuted its cloud platform at Spark Summit, which has support for R-language notebooks; version-control and source-code change tracking from within Databricks; private notebook permissions management; and … continue reading

Hadoop Summit: Cascading 3.0, DgSecure 5.0 and MapR’s Azure integration

Data application infrastructure provider Concurrent has announced general availability of Cascading 3.0. The latest version of the enterprise Hadoop application development and deployment platform improves portability across programming languages such as Java, Scala and SQL, and across Hadoop distributions such as Cloudera, Hortonworks, MapR. And it now has native support for compute fabrics like Apache … continue reading

Visual Studio Code 0.3.0, Magic Leap’s SDK, and the Project System Extensibility SDK—SD Times news digest: June 3, 2015

Microsoft has released version 0.3.0 of Visual Studio Code, its cross-platform code editing tool announced at Build. Visual Studio Code 0.3.0 includes new features and updates to keybinding, the command line, multi-cursor, comment actions, wrapping controls, debugging and more. There is also expanded language support for Rust, JavaScript semantics and syntax, TypeScript 1.5, and smarter … continue reading

Alive coding extension for Visual Studio, problems with Google’s self-driving cars, and Verizon buys AOL for $4.4 billion—SD Times news digest: May 12, 2015

Code Connect, a Microsoft developer tooling startup, has announced Alive, a live coding extension for Visual Studio 2013 and 2015. It provides immediate code feedback to developers with an immediate watch window directly inline with the code, accessible during design without launching the application. The extension currently supports only C# and .NET framework 4.5, as … continue reading

Twistlock takes on enterprise Docker container security

A startup aims to reinforce enterprise Docker with a new virtual container security suite. Twistlock, a startup based in Tel Aviv and San Francisco that recently emerged from stealth mode, today announced the Twistlock enterprise security suite for containers. The end-to-end solution includes an open-source containerized application framework for developers as well as an enterprise … continue reading

RASP: A new approach to protection

In most organizations today, the most precious assets (if not the most precious asset) are their applications (and the data they handle). Yet those same organizations protect their applications only from the outside. “Imagine a person who leaves his house always surrounded by bodyguards, because he cannot protect himself. He doesn’t have the skills or … continue reading

From the Editors: Where’s the incentive to defeat hackers?

After reporting out this month’s feature on software security, it strikes us that there appear to be parallels between companies selling security solutions and those selling pharmaceuticals. Those who take to conspiracy theories have argued for years that the pharmaceutical companies have no incentive to eliminate, say, cancer, because they would lose the massive profits … continue reading

Stop fighting yesterday’s software security wars!

In its 2015 report, the Open Web Application Security Project (OWASP) identified SQL injection and cross-site scripting among its Top 10 software vulnerabilities. Again. If it feels as if you’ve been reading this same story for the last decade, it’s because you have. So why is it that we can build intelligent robots, fling unmanned … continue reading

RSA conference highlights changing threats

Software developers still reeling from the constant security failures throughout the open-source stack in 2014 can take at least some comfort from the proceedings at this year’s RSA Conference in San Francisco. Most of the solutions, talks and products discussed at the show are not focused on the developer-induced security flaws that caused such a … continue reading

Nokia’s buys Alcatel-Lucent for $16.6 billion, MIT’s Picture programming language, and Talend adds Apache Spark to Big Data Sandbox—SD Times news digest: April 15, 2015

Nokia has announced it is joining forces with Alcatel-Lucent in an effort to become an innovation leader and provider of technology and services for the IP connected world. The combined company would focus on providing connectivity for people, such as with the Internet of Things. “I am proud that the joined forces of Nokia and … continue reading

DMCA.com Protection Status