Skip Navigation

Press Releases

The latest scoop on Sonatype.

Sonatype’s Nexus Firewall Now Protects JFrog Artifactory

World’s First Application Security Solution that Universally Protects DevOps Pipelines from Vulnerable Open Source Components

Fulton, MD.  – February 28, 2019 –  Sonatype, the inventors of software supply chain management, announced today that Nexus Firewall is now available to JFrog customers to automatically stop vulnerable open source components from entering into Artifactory Repository Managers.  

Kenna Security and Sonatype Partner to Enhance Risk-Based Vulnerability Management with Open Source Intelligence

New relationship underscores the need for enterprises to manage open source risk as part of an integrated and comprehensive security program

SAN FRANCISCO, Calif. and FULTON, Md. – February 26, 2019 – Today, Sonatype, the leader in automated open source governance and Kenna Security, a leader in predictive cyber risk, announced a strategic partnership to enhance the risk-based vulnerability management strategies of modern enterprises with best-in-class intelligence on open source components.

Sonatype Adds End-to-End Security for PyPI Packages

Fulton, MD – February 6, 2019 -- Today, Sonatype, the leader in automated open source governance, released a new version of its Nexus Lifecycle product giving Python development teams a simple way to manage PyPI packages and eliminate potential security risk lurking within third-party dependencies.

Sonatype Selected by Equifax to Support Open Source Governance & Security

Fulton, MD – January 29, 2019 -- Sonatype, the leader in automated open source governance and application security, today announced that Equifax Inc. (NYSE: EFX) has selected Sonatype’s Nexus platform to intelligently manage and monitor the use of open source libraries across its application portfolio. The selection was made following a competitive review.