SlideShare a Scribd company logo
Open Source Insight:
AppSec for DevOps, Open Source vs Proprietary,
Malicious AIs & GDPR
By Fred Bals, Senior Content Strategist
Cybersecurity News This Week
Welcome to the March 2nd edition of Open Source Insight from Black Duck by
Synopsys! We look at places you’d never expect to find GDPR data, as well as
answers to your most-frequently-asked GDPR questions. Synopsys Principal
Scientist Sammy Migues explores why enterprises must have a software security
program while Black Duck Technology Evangelist, Tim Mackey, takes a look at
building application security into the heart of DevOps. Plus, a report that may give
you nightmares on the malicious possibilities of AI. All the cybersecurity and open
source security news fit to print lies ahead for your reading pleasure…
• Why You Need to Build AppSec into Your DevOps Process
• How to Decide If Open Source or Proprietary Software Solutions
Are Best for Your Business
• One in Eight Open Source Components Contain Flaws
• Why Do Enterprises Need a Software Security Program?
• The Malicious Use of Artificial Intelligence: Forecasting,
Prevention, and Mitigation
Open Source News Stories
• The Many Beating Hearts of UK Tech
• Tech Due Diligence: Helping PE Firms Invest with
Confidence
• Amazon's Alexa Takes Open-Source Route to Beat
Google Into Cars
• Here Are the Answers to the Most Frequently Asked
Questions About GDPR
• 10 Unexpected Places You May Find GDPR-Related Data
Open Source News Stories
Why You Need to Build AppSec into Your
DevOps Process
via Black Duck blog: Application development thrives on the use of open
source components, writes Black Duck Technology Evangelist, Tim Mackey.
Why? Quite simply, there are many benefits to using open source components,
including the ability to leverage skill sets and expertise of the open source
community, take advantage of the efforts of larger development teams, and
reduce costs. To use open source components safely and
responsibly, organizations need visibility into which open source
components they’re using, where those components originate, and understand
the associated security risk of each component.
How to Decide If Open Source or Proprietary Software
Solutions Are Best for Your Business
via TechRepublic: One of the advantages of open source - transparent,
customizable code which is accessible by anyone - can be turned into a
disadvantage. If the code contains vulnerabilities which can be exploited, malicious
individuals may be able to capitalize upon this. Without a proprietary vendor on the
hook for releasing updates, fixes may be slower to arrive (though to be fair a strong
developer community can develop solutions more readily as well).
One in Eight Open Source Components Contain Flaws
via InfoSecurity Magazine: The security problems associated with open source
components are nothing new. A study from Synopsys last year revealed that half
of the third-party components used in software applications are outdated and
possible insecure. Yet another report, this time from Black Duck’s Center for
Open Source Research and Innovation last year, claimed that over 60% of all
apps using open source components contain known software vulnerabilities.
Why Do Enterprises Need a Software
Security Program?
via InfoSecurity Magazine: In today’s complex, technology-dependent
enterprises, the answer to “Why?” is straightforward, writes Sammy Migues,
Principal Scientist at Synopsys. Enterprises cannot expect a collection of
independent activities—a pen test here, an hour of training there, some free
tools that may not work as advertised to consistently result in secure software.
via University of Oxford: This report surveys the
landscape of potential security threats from malicious
uses of artificial intelligence technologies, and
proposes ways to better forecast, prevent, and
mitigate these threats.
The Malicious Use of Artificial Intelligence:
Forecasting, Prevention, and Mitigation
via UKTN: The Northern Irish capital is emerging as a
growing cyber hub, as evidenced by a number of leading
companies establishing a presence there in the last few
years. In 2016 alone, three major US software firms –
Black Duck, Rapid 7 and Alert Logic – came to the city,
bringing with them more than 200 jobs.
The Many Beating Hearts of UK Tech
via Black Duck blog: In technology deals, one of the
biggest areas of focus for PE firms before final
acquisition is tech due diligence to help acquirers
understand the intellectual property they’re buying.
Savvy buyers will also put processes in place to
maintain the value of the assets acquired and to
ensure there are no issues with those assets when it’s
time to divest.
Tech Due Diligence: Helping PE Firms
Invest with Confidence
via Bloomberg Technology: Cars must use Automotive Grade Linux, an open-
source platform being developed by Toyota Motor Corp. and other auto
manufacturers and suppliers to underpin all software running in the vehicle. The
only cars currently on the system are Toyota’s new Camry and Sienna and the
Japanese version of the plug-in Prius, though the carmaker plans to expand that
list. AGL has been growing too, reaching 114 members currently, up from around
90 a year earlier. Amazon signed on last month.
Amazon's Alexa Takes Open-Source Route
to Beat Google Into Cars
Here Are the Answers to the Most Frequently Asked
Questions About GDPR
via Synopsys Software Integrity blog: GDPR will become fully enforceable
throughout the EU on May 25, 2018.
10 Unexpected Places You May Find GDPR-Related Data
via CMSWire: GDPR is months away and yet even well-prepared companies
are finding last minute surprises as they race to the finish line. Part of the
problem is that the regulation itself is so complex; another part is the surprising
range of data that fall under the regulation.
Open Source Insight: AppSec for DevOps, Open Source vs Proprietary, Malicious AIs & GDPR

More Related Content

What's hot (20)

PPTX
Open Source: The Legal & Security Implications for the Connected Car
Jerika Phelps
 
PPTX
Software Security Assurance for Devops
Jerika Phelps
 
PPTX
Keynote - Lou Shipley
Jerika Phelps
 
PPTX
Software Security Assurance for DevOps
Black Duck by Synopsys
 
PPTX
Welcome & The State of Open Source Security
Jerika Phelps
 
PDF
Buyer and Seller Perspectives on Open Source in Tech Contracts
Black Duck by Synopsys
 
PPT
The Case for Continuous Open Source Management
Black Duck by Synopsys
 
PPTX
Open Source Insight: Happy Birthday Open Source and Application Security for ...
Black Duck by Synopsys
 
PDF
Webinar–You've Got Your Open Source Audit Report–Now What?
Synopsys Software Integrity Group
 
PDF
Strategies to Reap the Benefits of Software Patents in an Open Source Softwar...
Black Duck by Synopsys
 
PDF
DevSecOps: The Open Source Way
Black Duck by Synopsys
 
PDF
Leveraging Black Duck Hub to Maximize Focus - Entersekt's approach to automat...
Jerika Phelps
 
PDF
Software Security Assurance for DevOps
Black Duck by Synopsys
 
PDF
Webinar–The 2019 Open Source Year in Review
Synopsys Software Integrity Group
 
PDF
Equifax, the FTC Act, and Vulnerability Scanning
Black Duck by Synopsys
 
PDF
The Intersection Between Open Source and Cybersecurity
Black Duck by Synopsys
 
PDF
Webinar–Why All Open Source Scans Aren't Created Equal
Synopsys Software Integrity Group
 
PDF
Shift Risk Left: Security Considerations When Migrating Apps to the Cloud
Black Duck by Synopsys
 
PPTX
Winning the Cage-Match: How to Successfully Navigate Open Source Software iss...
Black Duck by Synopsys
 
PDF
Webinar–Is Your Software Security Supply Chain a Security Blind Spot?
Synopsys Software Integrity Group
 
Open Source: The Legal & Security Implications for the Connected Car
Jerika Phelps
 
Software Security Assurance for Devops
Jerika Phelps
 
Keynote - Lou Shipley
Jerika Phelps
 
Software Security Assurance for DevOps
Black Duck by Synopsys
 
Welcome & The State of Open Source Security
Jerika Phelps
 
Buyer and Seller Perspectives on Open Source in Tech Contracts
Black Duck by Synopsys
 
The Case for Continuous Open Source Management
Black Duck by Synopsys
 
Open Source Insight: Happy Birthday Open Source and Application Security for ...
Black Duck by Synopsys
 
Webinar–You've Got Your Open Source Audit Report–Now What?
Synopsys Software Integrity Group
 
Strategies to Reap the Benefits of Software Patents in an Open Source Softwar...
Black Duck by Synopsys
 
DevSecOps: The Open Source Way
Black Duck by Synopsys
 
Leveraging Black Duck Hub to Maximize Focus - Entersekt's approach to automat...
Jerika Phelps
 
Software Security Assurance for DevOps
Black Duck by Synopsys
 
Webinar–The 2019 Open Source Year in Review
Synopsys Software Integrity Group
 
Equifax, the FTC Act, and Vulnerability Scanning
Black Duck by Synopsys
 
The Intersection Between Open Source and Cybersecurity
Black Duck by Synopsys
 
Webinar–Why All Open Source Scans Aren't Created Equal
Synopsys Software Integrity Group
 
Shift Risk Left: Security Considerations When Migrating Apps to the Cloud
Black Duck by Synopsys
 
Winning the Cage-Match: How to Successfully Navigate Open Source Software iss...
Black Duck by Synopsys
 
Webinar–Is Your Software Security Supply Chain a Security Blind Spot?
Synopsys Software Integrity Group
 

Similar to Open Source Insight: AppSec for DevOps, Open Source vs Proprietary, Malicious AIs & GDPR (20)

PPTX
Open Source Insight: Who Owns Linux? TRITON Attack, App Security Testing, Fut...
Black Duck by Synopsys
 
PPTX
Open Source Insight: IoT Security, Tech Due Diligence, and Software Security ...
Black Duck by Synopsys
 
PPTX
Open Source Insight: 2017 Top 10 IT Security Stories, Breaches, and Predictio...
Black Duck by Synopsys
 
PPTX
Open Source Insight: AI for Open Source Management, IoT Time Bombs, Ready for...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Paraskevidekatriaphobia, Web APIs, Jeep Hacking, More ...
Black Duck by Synopsys
 
PDF
GDPR and Open Source: Security by the Numbers
Black Duck by Synopsys
 
PDF
Open Source Insight: Struts in VMware, Law Firm Cybersecurity, Hospital Data ...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Amazon Servers Exposed Open Source & the Public Sector...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Big Data Breaches, Costly Cyberattacks, Vuln Detection f...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Hub Detect & DevOps, OSS for Cars & 1.8 M Voter Info Leaked
Black Duck by Synopsys
 
PDF
Using Third Party Components for Building an Application Might be More Danger...
Achim D. Brucker
 
PPTX
Open Source Insight: GDPR Best Practices, Struts RCE Vulns, SAST, DAST & Equ...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Security Breaches and Cryptocurrency Dominating News
Black Duck by Synopsys
 
PDF
Webinar–2019 Open Source Risk Analysis Report
Synopsys Software Integrity Group
 
PPTX
Open Source Insight: Hospital, Medical Devices, Banking, and Automotive Cyber...
Black Duck by Synopsys
 
PDF
Infosecurity Europe - Infographic
Synopsys Software Integrity Group
 
PPTX
Open Source Insight: Top Picks for Black Hat, GDPR & Open Source Webinar, ...
Black Duck by Synopsys
 
PPTX
September 13, 2016: Security in the Age of Open Source:
Black Duck by Synopsys
 
PPTX
Open Source Insight: NVD's New Look, Struts Vuln Ransomware & Google Open So...
Black Duck by Synopsys
 
PDF
White Paper: 7 Security Gaps in the Neglected 90% of your Applications
Sonatype
 
Open Source Insight: Who Owns Linux? TRITON Attack, App Security Testing, Fut...
Black Duck by Synopsys
 
Open Source Insight: IoT Security, Tech Due Diligence, and Software Security ...
Black Duck by Synopsys
 
Open Source Insight: 2017 Top 10 IT Security Stories, Breaches, and Predictio...
Black Duck by Synopsys
 
Open Source Insight: AI for Open Source Management, IoT Time Bombs, Ready for...
Black Duck by Synopsys
 
Open Source Insight: Paraskevidekatriaphobia, Web APIs, Jeep Hacking, More ...
Black Duck by Synopsys
 
GDPR and Open Source: Security by the Numbers
Black Duck by Synopsys
 
Open Source Insight: Struts in VMware, Law Firm Cybersecurity, Hospital Data ...
Black Duck by Synopsys
 
Open Source Insight: Amazon Servers Exposed Open Source & the Public Sector...
Black Duck by Synopsys
 
Open Source Insight: Big Data Breaches, Costly Cyberattacks, Vuln Detection f...
Black Duck by Synopsys
 
Open Source Insight: Hub Detect & DevOps, OSS for Cars & 1.8 M Voter Info Leaked
Black Duck by Synopsys
 
Using Third Party Components for Building an Application Might be More Danger...
Achim D. Brucker
 
Open Source Insight: GDPR Best Practices, Struts RCE Vulns, SAST, DAST & Equ...
Black Duck by Synopsys
 
Open Source Insight: Security Breaches and Cryptocurrency Dominating News
Black Duck by Synopsys
 
Webinar–2019 Open Source Risk Analysis Report
Synopsys Software Integrity Group
 
Open Source Insight: Hospital, Medical Devices, Banking, and Automotive Cyber...
Black Duck by Synopsys
 
Infosecurity Europe - Infographic
Synopsys Software Integrity Group
 
Open Source Insight: Top Picks for Black Hat, GDPR & Open Source Webinar, ...
Black Duck by Synopsys
 
September 13, 2016: Security in the Age of Open Source:
Black Duck by Synopsys
 
Open Source Insight: NVD's New Look, Struts Vuln Ransomware & Google Open So...
Black Duck by Synopsys
 
White Paper: 7 Security Gaps in the Neglected 90% of your Applications
Sonatype
 
Ad

More from Black Duck by Synopsys (16)

PDF
Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na...
Black Duck by Synopsys
 
PDF
FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen...
Black Duck by Synopsys
 
PDF
FLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck Hub
Black Duck by Synopsys
 
PDF
FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security...
Black Duck by Synopsys
 
PDF
FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an...
Black Duck by Synopsys
 
PDF
Open-Source- Sicherheits- und Risikoanalyse 2018
Black Duck by Synopsys
 
PDF
FLIGHT Amsterdam Presentation - Open Source, IP and Trade Secrets: An Impossi...
Black Duck by Synopsys
 
PDF
FLIGHT Amsterdam Presentation - Data Breaches and the Law: A Practical Guide
Black Duck by Synopsys
 
PDF
FLIGHT Amsterdam Presentation - Don’t Let Open Source Software Kill Your Deal
Black Duck by Synopsys
 
PDF
FLIGHT Amsterdam Presentation - Open Source License Management in the Black D...
Black Duck by Synopsys
 
PPT
FLIGHT Amsterdam Presentation - From Protex to Hub
Black Duck by Synopsys
 
PDF
Open Source Rookies and Community
Black Duck by Synopsys
 
PDF
20 Billion Reasons for IoT Security
Black Duck by Synopsys
 
PPTX
Open Source Insight: Banking and Open Source, 2018 CISO Report, GDPR Looming
Black Duck by Synopsys
 
PPTX
Open Source Insight: Meltdown, Spectre Security Flaws “Impact Everything”
Black Duck by Synopsys
 
PPTX
Making the Strategic Shift to Open Source at Fujitsu Network Communication
Black Duck by Synopsys
 
Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na...
Black Duck by Synopsys
 
FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen...
Black Duck by Synopsys
 
FLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck Hub
Black Duck by Synopsys
 
FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security...
Black Duck by Synopsys
 
FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an...
Black Duck by Synopsys
 
Open-Source- Sicherheits- und Risikoanalyse 2018
Black Duck by Synopsys
 
FLIGHT Amsterdam Presentation - Open Source, IP and Trade Secrets: An Impossi...
Black Duck by Synopsys
 
FLIGHT Amsterdam Presentation - Data Breaches and the Law: A Practical Guide
Black Duck by Synopsys
 
FLIGHT Amsterdam Presentation - Don’t Let Open Source Software Kill Your Deal
Black Duck by Synopsys
 
FLIGHT Amsterdam Presentation - Open Source License Management in the Black D...
Black Duck by Synopsys
 
FLIGHT Amsterdam Presentation - From Protex to Hub
Black Duck by Synopsys
 
Open Source Rookies and Community
Black Duck by Synopsys
 
20 Billion Reasons for IoT Security
Black Duck by Synopsys
 
Open Source Insight: Banking and Open Source, 2018 CISO Report, GDPR Looming
Black Duck by Synopsys
 
Open Source Insight: Meltdown, Spectre Security Flaws “Impact Everything”
Black Duck by Synopsys
 
Making the Strategic Shift to Open Source at Fujitsu Network Communication
Black Duck by Synopsys
 
Ad

Recently uploaded (20)

DOCX
Cryptography Quiz: test your knowledge of this important security concept.
Rajni Bhardwaj Grover
 
PDF
New from BookNet Canada for 2025: BNC BiblioShare - Tech Forum 2025
BookNet Canada
 
PDF
The 2025 InfraRed Report - Redpoint Ventures
Razin Mustafiz
 
PPTX
Designing_the_Future_AI_Driven_Product_Experiences_Across_Devices.pptx
presentifyai
 
PDF
“NPU IP Hardware Shaped Through Software and Use-case Analysis,” a Presentati...
Edge AI and Vision Alliance
 
PPTX
AUTOMATION AND ROBOTICS IN PHARMA INDUSTRY.pptx
sameeraaabegumm
 
PDF
Agentic AI lifecycle for Enterprise Hyper-Automation
Debmalya Biswas
 
PDF
Achieving Consistent and Reliable AI Code Generation - Medusa AI
medusaaico
 
PDF
Transforming Utility Networks: Large-scale Data Migrations with FME
Safe Software
 
PDF
Exolore The Essential AI Tools in 2025.pdf
Srinivasan M
 
PDF
Jak MŚP w Europie Środkowo-Wschodniej odnajdują się w świecie AI
dominikamizerska1
 
PDF
The Rise of AI and IoT in Mobile App Tech.pdf
IMG Global Infotech
 
PPTX
OpenID AuthZEN - Analyst Briefing July 2025
David Brossard
 
PDF
Transcript: Book industry state of the nation 2025 - Tech Forum 2025
BookNet Canada
 
PDF
Reverse Engineering of Security Products: Developing an Advanced Microsoft De...
nwbxhhcyjv
 
PDF
Staying Human in a Machine- Accelerated World
Catalin Jora
 
PPTX
Mastering ODC + Okta Configuration - Chennai OSUG
HathiMaryA
 
PDF
"AI Transformation: Directions and Challenges", Pavlo Shaternik
Fwdays
 
PPTX
"Autonomy of LLM Agents: Current State and Future Prospects", Oles` Petriv
Fwdays
 
PPTX
Future Tech Innovations 2025 – A TechLists Insight
TechLists
 
Cryptography Quiz: test your knowledge of this important security concept.
Rajni Bhardwaj Grover
 
New from BookNet Canada for 2025: BNC BiblioShare - Tech Forum 2025
BookNet Canada
 
The 2025 InfraRed Report - Redpoint Ventures
Razin Mustafiz
 
Designing_the_Future_AI_Driven_Product_Experiences_Across_Devices.pptx
presentifyai
 
“NPU IP Hardware Shaped Through Software and Use-case Analysis,” a Presentati...
Edge AI and Vision Alliance
 
AUTOMATION AND ROBOTICS IN PHARMA INDUSTRY.pptx
sameeraaabegumm
 
Agentic AI lifecycle for Enterprise Hyper-Automation
Debmalya Biswas
 
Achieving Consistent and Reliable AI Code Generation - Medusa AI
medusaaico
 
Transforming Utility Networks: Large-scale Data Migrations with FME
Safe Software
 
Exolore The Essential AI Tools in 2025.pdf
Srinivasan M
 
Jak MŚP w Europie Środkowo-Wschodniej odnajdują się w świecie AI
dominikamizerska1
 
The Rise of AI and IoT in Mobile App Tech.pdf
IMG Global Infotech
 
OpenID AuthZEN - Analyst Briefing July 2025
David Brossard
 
Transcript: Book industry state of the nation 2025 - Tech Forum 2025
BookNet Canada
 
Reverse Engineering of Security Products: Developing an Advanced Microsoft De...
nwbxhhcyjv
 
Staying Human in a Machine- Accelerated World
Catalin Jora
 
Mastering ODC + Okta Configuration - Chennai OSUG
HathiMaryA
 
"AI Transformation: Directions and Challenges", Pavlo Shaternik
Fwdays
 
"Autonomy of LLM Agents: Current State and Future Prospects", Oles` Petriv
Fwdays
 
Future Tech Innovations 2025 – A TechLists Insight
TechLists
 

Open Source Insight: AppSec for DevOps, Open Source vs Proprietary, Malicious AIs & GDPR

  • 1. Open Source Insight: AppSec for DevOps, Open Source vs Proprietary, Malicious AIs & GDPR By Fred Bals, Senior Content Strategist
  • 2. Cybersecurity News This Week Welcome to the March 2nd edition of Open Source Insight from Black Duck by Synopsys! We look at places you’d never expect to find GDPR data, as well as answers to your most-frequently-asked GDPR questions. Synopsys Principal Scientist Sammy Migues explores why enterprises must have a software security program while Black Duck Technology Evangelist, Tim Mackey, takes a look at building application security into the heart of DevOps. Plus, a report that may give you nightmares on the malicious possibilities of AI. All the cybersecurity and open source security news fit to print lies ahead for your reading pleasure…
  • 3. • Why You Need to Build AppSec into Your DevOps Process • How to Decide If Open Source or Proprietary Software Solutions Are Best for Your Business • One in Eight Open Source Components Contain Flaws • Why Do Enterprises Need a Software Security Program? • The Malicious Use of Artificial Intelligence: Forecasting, Prevention, and Mitigation Open Source News Stories
  • 4. • The Many Beating Hearts of UK Tech • Tech Due Diligence: Helping PE Firms Invest with Confidence • Amazon's Alexa Takes Open-Source Route to Beat Google Into Cars • Here Are the Answers to the Most Frequently Asked Questions About GDPR • 10 Unexpected Places You May Find GDPR-Related Data Open Source News Stories
  • 5. Why You Need to Build AppSec into Your DevOps Process via Black Duck blog: Application development thrives on the use of open source components, writes Black Duck Technology Evangelist, Tim Mackey. Why? Quite simply, there are many benefits to using open source components, including the ability to leverage skill sets and expertise of the open source community, take advantage of the efforts of larger development teams, and reduce costs. To use open source components safely and responsibly, organizations need visibility into which open source components they’re using, where those components originate, and understand the associated security risk of each component.
  • 6. How to Decide If Open Source or Proprietary Software Solutions Are Best for Your Business via TechRepublic: One of the advantages of open source - transparent, customizable code which is accessible by anyone - can be turned into a disadvantage. If the code contains vulnerabilities which can be exploited, malicious individuals may be able to capitalize upon this. Without a proprietary vendor on the hook for releasing updates, fixes may be slower to arrive (though to be fair a strong developer community can develop solutions more readily as well).
  • 7. One in Eight Open Source Components Contain Flaws via InfoSecurity Magazine: The security problems associated with open source components are nothing new. A study from Synopsys last year revealed that half of the third-party components used in software applications are outdated and possible insecure. Yet another report, this time from Black Duck’s Center for Open Source Research and Innovation last year, claimed that over 60% of all apps using open source components contain known software vulnerabilities.
  • 8. Why Do Enterprises Need a Software Security Program? via InfoSecurity Magazine: In today’s complex, technology-dependent enterprises, the answer to “Why?” is straightforward, writes Sammy Migues, Principal Scientist at Synopsys. Enterprises cannot expect a collection of independent activities—a pen test here, an hour of training there, some free tools that may not work as advertised to consistently result in secure software.
  • 9. via University of Oxford: This report surveys the landscape of potential security threats from malicious uses of artificial intelligence technologies, and proposes ways to better forecast, prevent, and mitigate these threats. The Malicious Use of Artificial Intelligence: Forecasting, Prevention, and Mitigation
  • 10. via UKTN: The Northern Irish capital is emerging as a growing cyber hub, as evidenced by a number of leading companies establishing a presence there in the last few years. In 2016 alone, three major US software firms – Black Duck, Rapid 7 and Alert Logic – came to the city, bringing with them more than 200 jobs. The Many Beating Hearts of UK Tech
  • 11. via Black Duck blog: In technology deals, one of the biggest areas of focus for PE firms before final acquisition is tech due diligence to help acquirers understand the intellectual property they’re buying. Savvy buyers will also put processes in place to maintain the value of the assets acquired and to ensure there are no issues with those assets when it’s time to divest. Tech Due Diligence: Helping PE Firms Invest with Confidence
  • 12. via Bloomberg Technology: Cars must use Automotive Grade Linux, an open- source platform being developed by Toyota Motor Corp. and other auto manufacturers and suppliers to underpin all software running in the vehicle. The only cars currently on the system are Toyota’s new Camry and Sienna and the Japanese version of the plug-in Prius, though the carmaker plans to expand that list. AGL has been growing too, reaching 114 members currently, up from around 90 a year earlier. Amazon signed on last month. Amazon's Alexa Takes Open-Source Route to Beat Google Into Cars
  • 13. Here Are the Answers to the Most Frequently Asked Questions About GDPR via Synopsys Software Integrity blog: GDPR will become fully enforceable throughout the EU on May 25, 2018.
  • 14. 10 Unexpected Places You May Find GDPR-Related Data via CMSWire: GDPR is months away and yet even well-prepared companies are finding last minute surprises as they race to the finish line. Part of the problem is that the regulation itself is so complex; another part is the surprising range of data that fall under the regulation.