• About
  • Subscribe
  • Contact
Wednesday, December 31, 2025
    Login
FutureIOT
  • Technology
    • Sensors and Instrumentation
    • Devices
    • Cloud and Platforms
    • Research and Development
    • Governance, Standards and Regulations
    • Application and Middleware
    • Security
    • Big Data and Analytics
    • AI and Machine Learning
  • Industry
    • Manufacturing
    • Transportation and Logistics
    • Retail and E-commerce
    • Banking and Financial Services
    • Government, Healthcare and Education
    • Industrial
  • Application
    • Smart Cities
    • Future Workplace
    • Commercial
    • Smart Home
    • Customer Engagement
  • Resources
  • Podchats
  • Videos
  • Events
No Result
View All Result
  • Technology
    • Sensors and Instrumentation
    • Devices
    • Cloud and Platforms
    • Research and Development
    • Governance, Standards and Regulations
    • Application and Middleware
    • Security
    • Big Data and Analytics
    • AI and Machine Learning
  • Industry
    • Manufacturing
    • Transportation and Logistics
    • Retail and E-commerce
    • Banking and Financial Services
    • Government, Healthcare and Education
    • Industrial
  • Application
    • Smart Cities
    • Future Workplace
    • Commercial
    • Smart Home
    • Customer Engagement
  • Resources
  • Podchats
  • Videos
  • Events
No Result
View All Result
FutureIOT
No Result
View All Result
Home Technology AI and Machine Learning

Bridging the security gap in AI-driven software supply chains

FutureIoT Editors by FutureIoT Editors
December 31, 2025
Photo by Tima Miroshnichenko: https://www.pexels.com/photo/close-up-photo-of-documents-on-a-clipboard-6169133/

Photo by Tima Miroshnichenko: https://www.pexels.com/photo/close-up-photo-of-documents-on-a-clipboard-6169133/

In the rapidly evolving landscape of software development, the integration of artificial intelligence (AI) has become commonplace.

A Black Duck report, Navigating Software Supply Chain Risk in a Rapid-Release World, highlights a concerning trend: while 95% of organisations are leveraging AI tools, a staggering 76% are exposing their software supply chains to significant risks due to inadequate security protocols for AI-generated code.

“We're in a new era of rapid software innovation, fueled by AI, but these findings reveal a critical challenge: security isn't keeping pace," said Jason Schmitt, CEO of Black Duck. This disparity raises alarms about the need for comprehensive strategies to protect software supply chains in Asia, where digital transformation is accelerating.

Despite the widespread adoption of AI in software development, only 24% of surveyed organisations have implemented thorough evaluations for intellectual property (IP), licensing, security, and quality of AI-generated code.

This oversight leaves a considerable gap in protection, opening the door to potential vulnerabilities. While 76% of respondents test for security risks, many fail to evaluate the integrity of the underlying code adequately.

One of the key findings of the report indicates that effective dependency management is crucial for preparedness against threats. Organisations adept at tracking and managing open-source dependencies are 85% more likely to secure their software compared to the overall average of 57%. This underscores the necessity for supply chain leaders to enhance their oversight and control over third-party software components.

Moreover, the report highlights the significance of validating Software Bills of Materials (SBOMs) from external suppliers. Respondents prioritising SBOM validation reported a marked increase in their capability to evaluate third-party software and respond to vulnerabilities rapidly. Specifically, 59% manage to address critical issues within a day, a stark contrast to those lacking such validation practices.

Automation also emerges as a vital component of efficient vulnerability remediation. Among organisations employing automatic continuous monitoring, 60% report resolving critical software vulnerabilities within one day. In contrast, only 45% of all respondents achieve similar outcomes, indicating that a lack of automated processes can hinder effective supply chain security.

For heads of supply chain operations and COOs in Asia, the message is clear: as AI adoption continues to rise, so too must the commitment to robust security frameworks. By prioritising AI-generated code security and enhancing dependency management, organisations can build resilient software supply chains capable of withstanding the evolving threat landscape.

Related:  Gartner: IoT and automation in top 8 supply chain tech trends in 2019
Tags: Black Ducksupply chain risks
FutureIoT Editors

FutureIoT Editors

No Result
View All Result

Recent Posts

  • Bridging the security gap in AI-driven software supply chains
  • Trellix NDR strengthens OT-IT security convergence
  • Johor Bahru Airport upgrades its air traffic radar system
  • From supply chains to robotaxis: What is coming in 2026 for Asian Markets
  • AI excitement in the workforce: tips for CHROs and COOs to consider

Categories

  • Agriculture
  • AI and Machine Learning
  • Application
  • Application and Middleware
  • Automotive
  • Banking and Financial Services
  • Big Data and Analytics
  • Blockchain
  • Case Studies
  • Change Healthcare
  • CHRO
  • Cloud and Platforms
  • Commercial
  • Construction
  • Consumer
  • Customer Engagement
  • Devices
  • ESG
  • Future Workplace
  • FutureCOO
  • Governance, Standards and Regulations
  • Government, Healthcare and Education
  • Hospitality and Tourism
  • Industrial
  • Industry
  • IT-OT integration
  • Manufacturing
  • Networking
  • Operations
  • Research and Development
  • Retail and E-commerce
  • Security
  • Sensors and Instrumentation
  • Smart Cities
  • smart contracts
  • Smart Home
  • Start-ups
  • Supply chain
  • Technology
  • Telecommunications
  • TIBCO
  • Transportation and Logistics
  • Videos
  • Whitepapers

About FutureIoT

Asia’s ONLY dedicated IoT publication

The race to harness the power of Internet of Things (IoT) is here. FutureIoT is dedicated to individuals, as well as public and private organizations looking to tap the potential of IoT to transform the way we live, work and do business. FutureIoT is the dedicated media that provides the single source of truth about IoT, the technology, its application and regulation, originating from Asia. << Read more >>

Quick Links

  • Subscribe
  • Contact
  • Privacy Policy
  • Cookie Policy
  • Terms of Use

Categories

Recent News

Photo by MART  PRODUCTION: https://www.pexels.com/photo/person-holding-black-dumbbells-8032759/

Trellix NDR strengthens OT-IT security convergence

December 30, 2025
Senai International Airport, Johor Bahru, Malaysia

Johor Bahru Airport upgrades its air traffic radar system

December 26, 2025
  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2022 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

[wpli_login_link]

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Technology
    • Sensors and Instrumentation
    • Devices
    • Cloud and Platforms
    • Research and Development
    • Governance, Standards and Regulations
    • Application and Middleware
    • Security
    • Big Data and Analytics
    • AI and Machine Learning
  • Industry
    • Manufacturing
    • Transportation and Logistics
    • Retail and E-commerce
    • Banking and Financial Services
    • Government, Healthcare and Education
    • Industrial
  • Application
    • Smart Cities
    • Future Workplace
    • Commercial
    • Smart Home
    • Customer Engagement
  • Resources
  • Podchats
  • Videos
  • Events
Login

Copyright © 2022 Cxociety Pte Ltd | Designed by Pixl

Subscribe