Open source code is everywhere in the enterprise; it’s estimated that upwards of 90% of Fortune 500 companies have it in their software supply chains. But open source code is notoriously rife with vulnerabilities, and identifying and patching those bugs can be an endless battle for security teams.
IBM and Red Hat are betting that a new initiative, Project Lightwell, can help accelerate this process.
Announced today, the project will commit $5 billion and 20,000 IBM and Red Hat engineers to build a new ‘enterprise clearinghouse’ to accelerate discovery and remediation of vulnerabilities in open source software. The companies say the clearinghouse will serve as an AI-powered “security coordination layer,” giving enterprises the ability to integrate patches directly into their existing software supply chains.
Now in the design phase with a group of 11 financial partners, Project Lightwell will eventually be offered as a commercial subscription.
“The advancement in AI tools has broken the
A research project examining AI-driven recruitment hires across the US has revealed a systemic racial bias.
Researchers from Stanford University found a startling pattern of racial disparities when looking at the interview offers resulting from 4 million job applications submitted to 156 employers. The situation is aggravated by the “monoculture” in AI hiring software: More than 90% of US employers are screening job applicants with software, with 60% of Fortune 500 companies using the same tool, HireVue, the researchers found.
Applicants who applied to multiple companies using AI had all their applications rejected more often than would be expected if each company’s screening methods were independent. They calculated that Black and Asian candidates were rejected in greater numbers than baseline figures would suggest. According to the survey, 29,000 more Asians would have been interviewed if AI had not been deployed.
The researchers are concerned about the way in which AI is being used.
A new Quantus report says the crypto industry is not moving fast enough to prepare for quantum computers that could break today’s signature systems. The report warns that bitcoin, ethereum, and other major networks face a difficult migration problem because public keys live permanently on-chain. Google and IBM Advances Push Bitcoin Quantum Threat Closer Quantum […]
A newly discovered and so far unpatched critical vulnerability in the open source Gogs Git service not only demands immediate action from developers to secure their code, it also puts a spotlight on the potential issues in using self-hosted code platforms from small maintainers.
The hole is a critical argument injection vulnerability, discovered by a researcher at Rapid7, that allows any authenticated user to remotely execute code on a Gogs server by creating a pull request with a malicious branch name during a merge operation.
Rapid7 published an analysis of the vulnerability today, after the maintainer of Gogs did not respond to a request for status updates or to an offer to defer disclosure after it first reported the hole over two months ago.
“This is a serious vulnerability in software that isn’t commonly exposed to the public internet,” Ryan Emmons, staff security researcher at Rapid7, said in an email.
“Gogs is typically used in an internal capacity; the most likely threat mode
Project Lightwell establishes a trusted enterprise clearinghouse for open source software with a new AI-driven model for securing the software supply chain ARMONK, N.Y., May 28, 2026 — IBM and […]
The post IBM and Red Hat Commit $5B to AI-Powered Open Source Security Initiative appeared first on AIwire.
IBM's quantum investment could accelerate tech innovation, impacting cryptography, national security, and competitive dynamics in tech sectors.
The post IBM plans $10B investment for large-scale quantum computer by 2029 appeared first on Crypto Briefing.
IBM's quantum investment could accelerate tech innovation, impacting cryptography, national security, and competitive dynamics in tech sectors.
The post IBM plans $10B investment for large-scale quantum computer by 2029 appeared first on Crypto Briefing.
Europe's embrace of open-source tech could redefine its competitive edge, fostering transparency and innovation while attracting new investments.
The post Vitalik Buterin advocates for open source as Europe’s tech advantage appeared first on Crypto Briefing.