From Detection to Enforcement: Automating OSS License Compliance
Open-source software (OSS) is the backbone of modern application development. It accelerates innovation, reduces costs, and enables teams to deliver...
Open-source software (OSS) is the backbone of modern application development. It accelerates innovation, reduces costs, and enables teams to deliver...
According to the 2025 State of Cloud Security Report, 85% of organizations have plaintext secrets embedded in their source code...
According to the Orca 2025 State of Cloud Security Report, 70% of organizations now use Kubernetes (K8s) in their cloud...
As cloud-native development accelerates, security teams are under increasing pressure to keep up. According to the Enterprise Strategy Group’s Modernizing...
More than a third of cloud security teams say software is released without testing, according to a recent report by...
According to the Orca Research Pod, attackers routinely scan public code repositories for secrets and can discover and exploit them...
According to a recent World Economic Forum’s Global Cybersecurity Outlook 2025 report, software supply chain vulnerabilities are the leading cybersecurity...
We’re excited to introduce the Orca Bitbucket App, a seamless and native integration that enables security teams to automatically scan...
Last month, Semgrep announced significant changes to its open-source (OSS) projects for static application security testing (SAST). These changes include...