Security Journey Blog
Here you’ll find the latest news, information, and trends in application security and compliance, plus tips and strategies for writing safer code and building a security culture.
Stay Up-to-Date on all Security Journey news and events.
Featured Articles
Security Journey Unveils Developer Manifesto as the Foundation for a Reimagined Platform in the Age of AI
The manifesto guides a developer-first platform experience with hands-on AI/LLM security training, GitHub-driven risk...
5 Types of Data You Should NEVER Share with AI
Prompt Injection Attacks in LLMs: What Developers Need To Know In 2026
A Guide to Third-Party Dependency Security for Developers
Third-party dependencies are now one of the largest sources of risk in modern software development. More than 80% of modern applications rely on third-party code, and while this might look normal,...
The Security Risks of AI-Generated Code and How To Manage Them
The Top Cybersecurity Threats in 2026 and How To Mitigate Them
In 2026, cybersecurity is entering uncharted territories. The threats are becoming more complex, evolving faster than many security teams can even notice and respond to. Bad actors are changing their...
Secure Coding Checklist [Guide in 2026]
Modern software teams ship features faster than ever, but security risks move just as quickly. Developers juggle deadlines, complex architectures, and pressure to deliver, while attackers look for...
How to Ensure Developers Use AI Assistants Securely - And Why Post-Training Surveys Are the Key
AI coding assistants like Copilot, Claude, and ChatGPT are transforming software development. According to recent surveys, over 90% of developers are already using these tools to write code, debug,...
Secure Vibe Coding: Ship Fast Without the Security Risks
"Vibe coding" is here to stay.
Vibe coding has changed how developers work. AI tools can now suggest functions, scaffold entire services, and generate code for everything from a login system to...
Software developers: Prime cyber targets and a rising risk vector for CISOs
THIS ARTICLE ORIGINALLY APPEARED ON CSOONLINE.COM
From technical compromise to AI-driven attacks, cyber criminals increasingly see software developers as prime targets, creating systemic risks CISOs...
Adaptive Training – The New Model for Developer Training in the Age of AI
Software development has entered an era defined by unprecedented speed. AI assisted coding delivers output at volumes and velocity that were unimaginable only a few years ago. As development...
Just-In-Time Training - Quick Fixes at the Cost of Workflow and Retention
Just-in-time training promises something every engineering leader wants: guidance delivered at the exact moment a developer needs it.If a static analysis tool flags a SQL Injection, a JIT module pops...
Tapping Other Fields to Approach Security Differently
Reflections on my Security Champions Podcast episode featuring John Benninghoff