Skip Navigation

Press Releases

Nearly 18,000 New Malicious Packages Discovered in Q1 According to Sonatype Open Source Malware Index

Malware targeting developers reaches 828,925 packages, with data exfiltration threats rising sharply

Sonatype Supports Secure Development in Rust

Future-proofs modern software development with memory-safe language support

Sonatype Unveils Industry-First AI Software Composition Analysis (SCA) to Power AI-Driven Innovation

Empowers organizations to securely integrate, manage and govern the use of open source AI/ML models

Open Source Malware Reaches More Than 778,500 Packages, According to Sonatype Researchers

New research examines growth in open source malware attacks, most prevalent against software developers at government and financial institutions

Sonatype Announces Integration with Buy with AWS, Offering Simplified Procurement for AWS Customers on Marketplace

Fulton, MD — December 5, 2024 — Sonatype®, the end-to-end software supply chain security platform, today announced its integration with Buy with AWS, ...

Sonatype and OpenText Partner to Provide Integrated Vulnerability Management Platform for Open Source and Custom Code

Bringing together best-in-class SCA, SAST, and DAST solutions to deliver holistic view of application security Fulton, Md. – November 20, 2024 – ...

Sonatype Named a Leader in Software Composition Analysis (SCA) Software Report by Independent Research Firm

Sonatype receives highest scores in both current offering and strategy categories among top SCA software vendors Fulton, Md. – November 13, 2024 – ...

Sonatype Announces 2024 Elevate Awards Winners

Recognized 9 global organizations pioneering software supply chain security Fulton, Md. – October 28, 2024 – Sonatype®, the end-to-end software ...

Sonatype’s 10th Annual State of the Software Supply Chain Report Reveals 156% Surge in Open Source Malware

A record-breaking year for open source consumption as downloads hit 6.6 trillion, amplifying software supply chain risk Fulton, Md. – October 10, ...

Sonatype Achieves AWS Security Competency Status

Fulton, Md. – October 1, 2024 – Sonatype, the end-to-end software supply chain security platform, today announced it has achieved Amazon Web Services ...

Sonatype Names Finalists for 2024 Elevate Awards

Global Organizations Recognized for Software Supply Chain Innovation and Impact

Sonatype Announces Keynote Speakers for 9th Annual All Day DevOps

Industry all-star panel to reveal 10th Annual State of the Software Supply Chain Report along with keynotes from AWS, SmartBear, Harvard, and more

Sonatype Launches End-to-End Software Supply Chain Security Platform Availability in AWS Marketplace

The company's enterprise SBOM solution, Sonatype SBOM Manager, joins Nexus Repository in AWS Marketplace to secure and streamline customers’ software ...

Sonatype SBOM Manager Prepares Enterprises for Rapid, Reliable Compliance at Scale

Industry’s first Enterprise SBOM Manager solution takes the uncertainty out of SBOM collection, monitoring, and compliance

Sonatype Announces Integration with ServiceNow to Streamline Software Composition Analysis

New collaboration enables ServiceNow customers to integrate Sonatype Lifecycle for faster, more efficient remediation of open source application ...

Sonatype Uncovers Millions of Previously Hidden Open Source Vulnerabilities Through Unique Shaded Vulnerability Detection System

Discovery underscores the importance of accuracy, prioritization, and effective recommendations so that developers can deliver essential innovations ...