1. https://appdevelopermagazine.com/security
  2. https://appdevelopermagazine.com/detect-hard-coded-secrets-with-new-capabilities-from-cycode/
8/10/2023 10:18:51 AM
Detect hard coded secrets with new capabilities from Cycode
Scanning,Detection,Hardcoded,Secrets,AppSec,ASPM,Azure,Security,Cycode
/Detect-hard-coded-secrets-with-new-capabilities-from-Cycode-App-Developer-Magazine_t24yp0qj.jpg
App Developer Magazine
Detect hard coded secrets with new capabilities from Cycode

Security

Detect hard coded secrets with new capabilities from Cycode


Thursday, August 10, 2023

Austin Harris Austin Harris

Cycode has announced the release of new capabilities for its security first, developer friendly AppSec & ASPM platform, including a new IDE plug in for VS Code, extended scanning capabilities, collaboration with Azure DevOps pipelines, and more.

Cycode announced the expansion of its hard-coded secrets detection in cloud-based workplaces, as well as a collaboration with Azure DevOps pipelines to ensure end-to-end supply chain integrity and a new IDE plug-in for seamless integration with VS Code.

Building upon its existing code-to-cloud coverage, Cycode now extends its secrets scanning capabilities to encompass Confluence, AWS S3 buckets, and Azure environments. This expansion empowers organizations to proactively identify and remediate hidden security risks by detecting hard-coded secrets across diverse platforms that go beyond code.

Cycode elevates its security first, developer-friendly AppSec & ASPM platform with new capabilities

"Hardcoded secrets are a ticking time bomb, but Cycode can help defuse it. The proliferation of tools and technologies that developers use increases the risk of hard-coded secrets, spanning from code repos to the entire supply chain. For example, secrets can be stored in Confluence, AWS S3 buckets, and Azure environments. By expanding its secrets scanning capabilities to include these tools and environments, Cycode helps organizations achieve full coverage and reduce the risk of data breaches. Security teams and developers need to collaborate to guarantee proper protection, and Cycode’s expanded secrets scanning capabilities can help them to do just that," said Ronen Slavin, co-founder and CTO of Cycode.

In addition to the expansion of cloud-based workspaces, Cycode’s Cimon, a free CI monitoring solution to secure CI/CD pipelines, now operates with Azure DevOps pipelines to enable SLSA (Supply Chain Levels for Software Artifacts) attestation generation. Organizations using Azure DevOps can now enhance their pipeline security by automatically generating SLSA attestations, ensuring end-to-end supply chain visibility and integrity.

Cimon’s robust capabilities combined with Azure DevOps empower development teams to build and deploy software with greater confidence, proactively addressing potential supply chain vulnerabilities and mitigating risks in today’s evolving threat landscape.

Another milestone in Cycode’s commitment to delivering a security-first, developer-friendly experience is the new IDE Plug-in for Visual Studio Code (VS Code). By seamlessly integrating with one of the most popular integrated development environments, Cycode empowers developers to identify and address security vulnerabilities directly within their coding environment.

With this plug-in, developers can establish robust security practices from the earliest stage of development by proactively detecting and remediating hard-coded secrets. The IDE plug-in for VS Code bridges the gap between security and development, enabling teams to build secure applications without compromising productivity and without context switching.






Subscribe to App Developer Magazine

Become a subscriber of App Developer Magazine for just $5.99 a month and take advantage of all these perks.

MEMBERS GET ACCESS TO

  • - Exclusive content from leaders in the industry
  • - Q&A articles from industry leaders
  • - Tips and tricks from the most successful developers weekly
  • - Monthly issues, including all 90+ back-issues since 2012
  • - Event discounts and early-bird signups
  • - Gain insight from top achievers in the app store
  • - Learn what tools to use, what SDK's to use, and more

    Subscribe here



Featured Stories


Tether QVAC SDK Powers AI Across Devices and Platforms
Tether QVAC SDK Powers AI Across Devices and Platforms Wednesday, April 22, 2026


APAC 5G expansion to fuel 347B mobile market by 2030
APAC 5G expansion to fuel 347B mobile market by 2030 Tuesday, April 21, 2026




How AI is causing app litter everywhere
How AI is causing app litter everywhere Tuesday, April 21, 2026


The App Economy Is Thriving
The App Economy Is Thriving Monday, April 20, 2026


NIKKE 3.5 anniversary update livestream coming soon
NIKKE 3.5 anniversary update livestream coming soon Friday, April 17, 2026


New AI tool targets early dementia detection
New AI tool targets early dementia detection Thursday, April 16, 2026


Jentic launch gives AI agents api access
Jentic launch gives AI agents api access Wednesday, April 15, 2026


Experts warn ai-generated health content risks misinterpretation without human oversight
Experts warn ai-generated health content risks misinterpretation without human oversight Wednesday, April 15, 2026


Ludo.ai Unveils API and MCP Beta to Power AI Game Asset Pipelines
Ludo.ai Unveils API and MCP Beta to Power AI Game Asset Pipelines Tuesday, April 14, 2026


AccuWeather Launches ChatGPT Integration for Live Weather Updates
AccuWeather Launches ChatGPT Integration for Live Weather Updates Tuesday, April 14, 2026


Stay Updated

Sign up for our newsletter for the headlines delivered to you

SuccessFull SignUp

Get More App News



/sites/themes/prod/assets/js/less.js"> ' ' %>