Close Menu
Daily Guardian
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Lifestyle
  • Health
  • Sports
  • Technology
  • Climate
  • Auto
  • Travel
  • Web Stories
What's On

Whale sanctuary in Nova Scotia holds groundbreaking ceremony despite setbacks

June 19, 2026

Silk beverage class-action settlement approved with payments of $400-$300K

June 19, 2026

Dr. Austin Harris, MD Announces NAD+ IV Infusion Therapy Availability at NeuroRelief for Cellular Health and Cognitive Wellness Support in 2026

June 19, 2026

City of Vancouver warns about parking scams, and how to avoid them

June 19, 2026

‘We could all hear it,’ Canada World Cup coach says of ‘gruesome’ injury

June 19, 2026
Facebook X (Twitter) Instagram
Finance Pro
Facebook X (Twitter) Instagram
Daily Guardian
Subscribe
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Lifestyle
  • Health
  • Sports
  • Technology
  • Climate
  • Auto
  • Travel
  • Web Stories
Daily Guardian
Home » Apiiro Extends ASPM Platform with Supply Chain Visibility and Toxic Combination Detection
Press Release

Apiiro Extends ASPM Platform with Supply Chain Visibility and Toxic Combination Detection

By News RoomDecember 6, 20233 Mins Read
Apiiro Extends ASPM Platform with Supply Chain Visibility and Toxic Combination Detection
Share
Facebook Twitter LinkedIn Pinterest Email

NEW YORK, Dec. 06, 2023 (GLOBE NEWSWIRE) — Apiiro, a leading application security posture management (ASPM) solution, today announced the addition of integrated software supply chain security (SSCS) into its platform. Now, Apiiro’s ASPM is extended to natively provide source control manager (SCM) and CI/CD pipeline visibility, risk detection and assessment, and governance.

Apiiro’s ultra-connected and holistic approach to software supply chain security also uniquely enables the detection of chained risks—known as toxic combinations—across application and software supply chain components and unifies context across code, developer behavior, AppSec findings, and supply chain posture.

“We believe software supply chain security is a core component of ASPM and that the key to protecting modern applications is to provide end-to-end integrity across software, processes, and tools from code to runtime,” said Moti Gindi, Chief Product Officer at Apiiro. “Taking this connected approach enables our platform to bridge gaps left by siloed security testing tools and enable application security teams to more efficiently secure their development and delivery to the cloud.”

With the addition of SSCS, Apiiro enables application security teams to more efficiently secure their applications and software supply chains in a single, end-to-end solution with:

  • Complete Supply Chain Visibility: Provides complete and continuous visibility into all source code management (SCM) repositories and CI/CD pipelines, including shadow pipelines as part of Apiiro’s eXtended software bill of materials (XBOM). Insights include their configurations, connected plugins, dependencies, associated risks, and how they change over time.
  • Supply Chain Risk Assessment: Detects and assesses CI/CD and SCM risks such as missing or weak branch protection rules, abnormal commit behavior, risky admin or developers permissions, and weakly configured pipelines—all contextualized based on application and business risk and following CIS and SLSA best practices.
  • Toxic Combinations Detection: Connects supply chain security risks with other application security risks that, when combined, may present highly business-critical ‘toxic combinations’ that attackers seek out to gain unauthorized access to business-critical systems or sensitive data. An example of such a toxic combination is an exposed valid secret found in a branch that allows force push and is part of an application that handles PII data and is deployed to an internet-facing environment.
  • Risk-Based Remediation and Prevention: Enables policies and automation workflows to trigger remediations, processes such as agile threat models or penetration tests, and developer guardrails such as commenting on a pull/merge request or blocking a build. With Apiiro’s risk-based approach, AppSec teams can fine-tune the action based on the level of business risk to avoid surfacing noisy false positives or low-impact findings.

“Since introducing Apiiro’s Software Supply Chain Security at Paddle, we have been able to ensure pipelines are set up securely and have improved insights into the configuration of our source control repositories—a capability not provided by traditional AppSec tools,” said Colin Barr, Senior Engineering Manager of Application Security at Paddle. “This heightened visibility, coupled with Apiiro’s risk-based prioritization and policy engine, instills confidence in our capability to continually measure supply chain risk and assess against best practice moving forward.”

More Information
Read the blog to learn more and register for our upcoming live Apiiro SSCS + ASPM demo.

About Apiiro
Apiiro empowers application security and development teams from companies like Morgan Stanley, Rakuten, Colgate, and Paddle to unify their application risk visibility, prioritization, assessment, and remediation to save time triaging security findings and fixing real risks so they can deliver secure applications to the cloud. The company is backed by Greylock, Kleiner Perkins, and General Catalyst.

Media Contact
Adam LaGreca
Founder of 10KMedia
[email protected]

A photo accompanying this announcement is available at https://www.globenewswire.com/NewsRoom/AttachmentNg/0d62735b-cf6d-457f-93f5-1f64f8b96cb8

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Keep Reading

Dr. Austin Harris, MD Announces NAD+ IV Infusion Therapy Availability at NeuroRelief for Cellular Health and Cognitive Wellness Support in 2026

LuxuryShop Introduces Insights Into Evolving Craftsmanship Standards and Super Clone Watch Purchasing Trends

Gersan Elektrik Announces Application to Trade on the OTCQX Market in the United States

More Adults Are Turning to Better Sleep Hygiene in a Phone-Free Bedtime Environment

New England’s Top Marketing Executives Named at the 2026 BostonCMO ORBIE Awards

Playing For Change Unites Global Voices for Mother Earth with New Song Around The World, “Acontecer”

Comprehensive Healthcare opens Columbia Valley Center for Recovery, the Tri-Cities’ first inpatient behavioral health treatment and recovery facility

Cybersecurity Marketing Spend Benchmark Report 2026: Trust Emerges as the New Competitive Currency as Global Cybersecurity Market Eyes USD 375–400 Billion by 2030 | Vereigen Media

Gcore Helps Ucom Safeguard Public Live Broadcast Infrastructure During Armenia’s Parliamentary Elections

Editors Picks

Silk beverage class-action settlement approved with payments of $400-$300K

June 19, 2026

Dr. Austin Harris, MD Announces NAD+ IV Infusion Therapy Availability at NeuroRelief for Cellular Health and Cognitive Wellness Support in 2026

June 19, 2026

City of Vancouver warns about parking scams, and how to avoid them

June 19, 2026

‘We could all hear it,’ Canada World Cup coach says of ‘gruesome’ injury

June 19, 2026

Latest News

LuxuryShop Introduces Insights Into Evolving Craftsmanship Standards and Super Clone Watch Purchasing Trends

June 19, 2026

Russian cybercriminals tied to global fake computer update scam: RCMP

June 19, 2026

Hue’s wired wall modules bring non-smart lights into its ecosystem

June 19, 2026
Facebook X (Twitter) Pinterest TikTok Instagram
© 2026 Daily Guardian Canada. All Rights Reserved.
  • Privacy Policy
  • Terms
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.

Go to mobile version