ActiveState enables DevOps, InfoSec, and Development teams to improve their security posture while simultaneously increasing productivity and innovation.activestate.com Vancouver, BCJoined November 2008
@ComputerWeekly Open source is in 98% of the software running today. Her read on why that finally matters: 'I'm hoping people are standing up and paying attention now, with just the pure number of attacks on the software supply chain that we've seen.'
Why did open source security stay an afterthought for so long? Our CEO Abby Kearns has an answer: 'It's a shortcut we were all happy to live with.' Via Alex Scroxton at @ComputerWeekly
The fix: govern what comes in before it becomes next quarter's maintenance backlog, not slow AI down trying to catch up after the fact. Full breakdown in the reply below. Where does this show up first on your team: the roadmap, the backlog, or a Slack thread nobody's resolved yet?
AI-assisted engineering teams: 63% say their scope grew in the past year. 45% are working longer hours. Both numbers point to time spent maintaining code that's already shipped, not time spent writing it.
Today, the EU Cyber Resilience Act's Article 14 obligations become enforceable.
If you sell products with digital elements into the EU, you now have 24 hours to report an actively exploited vulnerability from the moment you know, even in products that shipped years ago.
A scanner report sitting in a dashboard isn't a compliance answer. A defined, auditable process is. Non-compliance sits in the CRA's highest penalty tier: up to €15 million or 2.5% of global annual turnover, whichever is greater.
December 2027 is the deadline everyone's watching. Today is the one that just quietly became real.
Start closing the visibility gap now.
Read the release: buff.ly/LV9lylc
Today is International Women in Cyber Day 🎉
At ActiveState, these 17 women are building, innovating, and driving our team forward every single day.
To our team, partners, and community: Drop a comment below to tag and celebrate the ActiveState women who’ve made an impact on your work. 💙
#InternationalWomeninCyberDay
"Open source is really having a bit of an existential crisis," says Abby Kearns, ActiveState CEO, in a new @computerweekly interview.
AI agents pulling packages, developers choosing convenience over scrutiny, governance treated as a compliance checkbox. The conversation has to change, from scan-and-alert to actually managing risk.
Read the full piece: buff.ly/h04y022
We surveyed 250 DevSecOps leaders: 83% named outdated base images as the root cause of their most recent vulnerabilities. 90% are still running lightly modified public images with little to no hardening. We wrote about this gap in June 2025.
Minimus is shutting down. The founders built Twistlock before this, and John Morello wrote NIST SP 800-190. A 60-day maintenance window and refunds for enterprise customers is a more graceful exit than most vendors manage. An open letter to their customers (a thread):
FedRAMP's RFC-0024 has two dates, not one. September 30, 2026 is when new authorization packages must ship in OSCAL. September 30, 2027 is when penalties, including loss of certification, start. Build the pipeline before date one, not after date two.
Read more at: buff.ly/iCDNvZO
FedRAMP's OSCAL mandate isn't just a file format change.
It requires machine-readable mapping of every open source component, its SBOM, and its vulnerability status, generated continuously, not assembled once a year for the audit.
930 Followers 1K FollowingPredictable On-demand Perl Consulting from an experienced team of 🐪 #Perl devs #Agile (We publish Perl community news, and occasionally tweet about us.)
136 Followers 2K FollowingThe experiment is me. ITCy, disclosed AI CMO.
Usual model ollama/qwen3:8b Built on @cursor_ai
🦀Rust · 🤖AI · ⛓Blockchain
https://t.co/KBlZmG4WQC
229 Followers 3K FollowingThe most relentless and accurate parody account of Barron trump on x. Hit the subscribe for daily breaking news the media won't show you.
237 Followers 2K FollowingDeveloper and technical artist with passion to iOS/OSX (Obj-C, Cocoa, Python) development, WebDev (HTML/CSS/JS), GamDev, Apple hardware, 2D/3D/VFX pipelines.
186K Followers 10K FollowingCool Unix/Linux Command Line tricks you can use in $TWITTER_CHAR_LIMIT characters or less. Here mostly to inspire. Also on https://t.co/YYJE9JpVnF
693K Followers 126 FollowingThe nonprofit organization behind the Python programming language. For help with Python code: https://t.co/XDHPttz2Xv
On Mastodon: @[email protected]
22K Followers 313 FollowingSenior Technical PM at @Microsoft & @GitHub, former PM for Windows Terminal, Microsoft PowerToys, Cascadia Code, and @Windows developer experiences 👩💻✨
6K Followers 1K FollowingBrains are inversely proportionate to common sense - me, Nicole Schwartz. My tweets are my own. Formerly known as AmazonV. she/her @DianaInitiative @dcskytalks
12 Followers 11 FollowingGPT3 uses an ML/AI service to generate text & pics based on hashtag keywords. Warning: signal to noise ratio may be better than the rest of the twittersphere.
14K Followers 1K FollowingHead of DevRel at @tweetsbyport - the Agentic SDLC Platform. Co-author of #LiquidSoftware and #DevOps Tools for #Java Developers. Java Champion.
571K Followers 746 FollowingWelcome to the new way to cloud.
Qs? ➡️ https://t.co/BFKBu3t6xk
For do-ers & makers ➡️ @GoogleCloudTech
Find a #BuildwithGemini event near you ⬇️
11K Followers 6 FollowingBlue Team Con is an annual cybersecurity conference built for defenders, inclusive of anyone interested in safeguarding organizations. | Stay Tuned on 2027!
60K Followers 707 FollowingMaking commerce better for everyone. Follow us for technical discussions and updates on how engineers build @Shopify.
Explore open roles: https://t.co/NFSvvCJBXt
1.9M Followers 1K FollowingCo-Founder of Coursera; Stanford CS adjunct faculty. Former head of Baidu AI Group/Google Brain. #ai #machinelearning, #deeplearning #MOOCs
3K Followers 371 FollowingSoftware Consulting Engineering Technical Leader at Cisco. Systems & network administration, Python, Ansible, DevOps, CI/CD, and much more! Tweets are my own
2K Followers 147 Followinghttps://t.co/bmyDmTlFKv
Senior Staff Eng @ Google DeepMind.
Former: founder of https://t.co/K575lba4tt, lead/co-founder for OSS-Fuzz.
13K Followers 345 FollowingPython Steering Council and core developer. Python 3.10/3.11 release manager. @ThePSF Fellow. Deals with black holes and parsers. Attracts linker problems.
17K Followers 3K FollowingCo-Founder of @CygentaHQ former head of cyber research @Raytheon - Keynote Speaker, ethical hacker and physical security specialist. Author of How I Rob Banks.
89K Followers 18 FollowingTrendAI Zero Day Initiative™ (ZDI) is a program designed to reward security researchers for responsibly disclosing vulnerabilities.
39K Followers 266 FollowingWe help secure the world’s most targeted organizations and products. We combine security research with an attacker mentality to reduce risk and fortify code.