Zscaler highlights security trends challenging developers

Pile of keys illustrating the security trends and challenges posed to developers highlighted in Zscaler ThreatLabz's latest cybersecurity report for 2024.

Zscaler has released its annual ThreatLabz report, highlighting security challenges that should be on every developer's radar.

The 2024 Mobile, IoT, and OT Threat Report – covering June 2023 to May 2024 – highlights critical vulnerabilities in mobile applications, IoT devices, and operational technology (OT) systems that demand immediate attention from the development community.

One of the most alarming findings is the discovery of over 200 infected applications in...

Custom apps vs off-the-shelf apps: Which is better?

2024 is here and as we move into 2025 many businesses face critical decisions when choosing software solutions that can enhance their operations, streamline processes, and support growth. One such choice is between custom-built apps and off-the-shelf apps. Choosing a App development partner or hiring software developer and going solo is a difficult decision. The right decision can have a profound impact on efficiency, customer engagement, and long-term success.

This article delves...

Entry points threaten multiple open-source ecosystems

Sign illustrating how vulnerabilities with entry points can be exploited by hackers to threaten open-source packages of multiple programming ecosystems.

While current tools have improved at detecting common tactics for exploiting open-source packages, a feature remains largely overlooked: entry points.

Security researchers at Checkmarx uncovered how attackers can leverage entry points across multiple programming ecosystems, with a particular focus on PyPI, to trick victims into running malicious code. This method – while not allowing for immediate system compromise – offers a subtler approach for patient attackers to...

GitLab releases critical security patches amid vulnerability streak

Person applying a band aid illustrating DevOps platform GitLab issuing new critical security patches following a streak of vulnerabilities that could impact organisations and software developers.

GitLab has released a new round of critical security patches for its Community Edition (CE) and Enterprise Edition (EE) products. The company strongly recommends that all self-managed GitLab installations be upgraded immediately to one of the latest versions: 17.4.2, 17.3.5, or 17.2.9.

These patch releases address several critical and high-severity vulnerabilities, including a critical flaw that could allow attackers to run pipelines on arbitrary branches. This latest security...

Anthropic launches Message Batches API for Claude

Illustration by Anthropic AI depicting their Message Batches API for developers to take full advantage of the Claude large language model.

Anthropic has launched its Message Batches API, which offers developers a cost-effective solution for processing large volumes of Claude queries asynchronously. 

Through the Message Batches API, developers can now send batches of up to 10,000 queries. These batches are processed in less than 24 hours and come at a 50% reduction in cost compared to standard API calls—representing a significant advancement in handling non-time-sensitive tasks more efficiently.

The...

Open Source Pledge aims to fund software maintainers

Illustration of Sentry's Open Source pledge to support software maintainers.

Sentry has launched the Open Source Pledge—a programme designed to provide direct financial support to open-source software maintainers. The initiative stems from a long-standing aspiration to give back to the open-source community on behalf of every Sentry employee.

The concept of the Open Source Pledge emerged years ago with two primary objectives: to compensate maintainers directly and to establish a sustainable model that scales with Sentry’s growth.

David...

Low-code revolution: Mendix’s digital transformation masterstroke

Arjo van Oosten, Senior Vice President of Digital Transformation at Mendix, a Siemens business, discusses the low-code revolution and Mendix's role in enterprise digital transformation.

In the past businesses could afford to view digital transformation as a distant challenge, something they’d deal with only if they directly encountered it. But that’s no longer the case. Today, digital transformation is a driving force in the business landscape, continuously evolving and challenging...

PostgreSQL 17 delivers a leap forward for open-source databases

Person leaping illustrating the open-source database advancements in PostgreSQL 17 for developers.

The PostgreSQL Global Development Group has unveiled PostgreSQL 17, the latest iteration of what is widely-regarded as the world's most advanced open-source database. This release marks a significant milestone in the database's evolution, bringing substantial performance enhancements and new features that cater to both emerging and established data management needs.

PostgreSQL 17 builds upon its robust foundation, offering improved performance and scalability whilst adapting to...

GitHub begins offering data residency to EU developers

GitHub Octocat reading a newspaper after news that the company will offer data residency, starting with EU developers.

GitHub has announced that it will introduce data residency capabilities, beginning with EU developers on 29 October 2024. The new data residency feature for Enterprise Cloud will allow organisations to store their GitHub code and repository data in their preferred geographical region.

"We've heard for years from enterprises that being able to control where their data resides is critical for them," explained Jim Wang, VP of Engineering at GitHub. “With data residency,...

Oracle APEX tutorials: Insights and techniques from Vinish Kapoor

Oracle Application Express, commonly known as Oracle APEX, is a powerful low-code development platform that allows developers to create robust web applications quickly and efficiently. For those looking to dive into this technology or enhance their existing skills, finding quality tutorials can be a game-changer. This article will explore the world of Oracle APEX tutorials, with a special focus on the valuable resources provided by Vinish Kapoor at vinish.dev.

The importance of...