News Feed Item

Black Duck Software Announces Next Generation OSS Logistics Solution to Manage and Optimize Open Source

Black Duck Software, the leading OSS Logistics solutions provider enabling the adoption and management of open source software (OSS), today announced the release of Black Duck ® Suite™ 7 software that helps companies maximize the benefits of open source while managing the associated operational, legal, and security risks.

Black Duck Suite 7 provides an end-to-end OSS Logistics solution for enterprises using open source at scale, including: choosing the right OSS code; approving it automatically with built-in policies and workflows; scanning the code for origins and licenses; tracking what has been used and where for ease of reuse and maintenance; securing against vulnerabilities; and confidently delivering products and code throughout the supply chain.

“Open source is now a strategic element of all software development, and properly managing its use is essential for increasing the quality, innovation, and time-to-market of software solutions,” said Lou Shipley, President and CEO, Black Duck Software. “Black Duck customers have the competitive advantage of an in-depth knowledge of their source code and can easily adapt to security risks, like the recent Heartbleed vulnerability. Through the Black Duck Suite, enterprises gain greater control and visibility into where and how open source is used throughout the development lifecycle, mitigating risks and fully maximizing the benefits OSS offers.”

New Interface, Reporting, and Security Capabilities

Black Duck offers customers unparalleled insight into their open source code through the industry’s most comprehensive database of open source projects, the Black Duck KnowledgeBase. A range of newly added Black Duck Suite capabilities leverages years of experience analyzing code and assisting customers with OSS logistics solutions:

  • Analysis templates save time and simplify the open source reporting process, codifying best practices in OSS logistics.
  • Security data from the National Vulnerabilities Database (NVD) Common Vulnerabilities and Exposures (CVE) now includes base scoring, impact scoring, and exploitability scoring, making it easy to assess the impact of security vulnerabilities.
  • New dashboard allows for quick access to basic and advanced search capabilities, including enhanced search supported by Apache Solr for indexing the Black Duck KnowledgeBase and customer data.
  • An updated, graphical user interface incorporates user defined tagging functionality and other features to increase the flexibility of the Black Duck OSS Logistics solution.
  • Additional portfolio views provide an overview of key data such as top components, top licenses, and top programming languages currently in use in a customer’s software data.

Expanded Integration Set

OSS Logistics, delivered through the Black Duck Suite, gives your organization systematic control over the software development process by integrating with existing Integrated Development Environments (IDEs), Build and Continuous Integration (CI) tools, and reporting and repository management systems. In addition to existing integrations with JFrog Artifactory repository manager, IBM’s Rational Team Concert application lifecycle management solution, Maven builds, and the Coverity Connect software testing dashboard, Black Duck Suite 7 includes four new integrations:

  • Jenkins CI: Component discovery and approval is now integrated with the continuous build process
  • SonarQube: Key open source metrics are now available through SonarQube dashboards
  • Eclipse IDE: Developers can now access open source component meta-data directly from within Eclipse
  • Nexus: Component discovery and approvals are now available through Nexus

Black Duck Suite 7 is currently shipping and can be deployed as an on-premise solution or through a software-as-a-service (SaaS).

About Black Duck Software

Black Duck provides the world’s only end-to-end platform for OSS Logistics, enabling enterprises of every size to optimize the opportunities and solve the logistical challenges that come with open source adoption, governance, and management. As part of the greater open source community, Black Duck connects developers to comprehensive OSS resources through The Black Duck Open Hub (formerly Ohloh), and to the latest commentary from industry experts through the Open Source Delivers blog. Black Duck also hosts the Open Source Think Tank, an international event where thought leaders collaborate on the future of open source. Black Duck is headquartered near Boston and has offices in San Mateo, London, Paris, Frankfurt, Hong Kong, Tokyo, Seoul, and Beijing. For more information about how to leverage open source to deliver faster innovation, greater creativity, and improved efficiency, visit www.blackducksoftware.com and follow the company at @black_duck_sw.

More Stories By Business Wire

Copyright © 2009 Business Wire. All rights reserved. Republication or redistribution of Business Wire content is expressly prohibited without the prior written consent of Business Wire. Business Wire shall not be liable for any errors or delays in the content, or for any actions taken in reliance thereon.

Latest Stories
DXWorldEXPO LLC announced today that ICOHOLDER named "Media Sponsor" of Miami Blockchain Event by FinTechEXPO. ICOHOLDER give you detailed information and help the community to invest in the trusty projects. Miami Blockchain Event by FinTechEXPO has opened its Call for Papers. The two-day event will present 20 top Blockchain experts. All speaking inquiries which covers the following information can be submitted by email to [email protected] Miami Blockchain Event by FinTechEXPO also offers s...
Poor data quality and analytics drive down business value. In fact, Gartner estimated that the average financial impact of poor data quality on organizations is $9.7 million per year. But bad data is much more than a cost center. By eroding trust in information, analytics and the business decisions based on these, it is a serious impediment to digital transformation.
As DevOps methodologies expand their reach across the enterprise, organizations face the daunting challenge of adapting related cloud strategies to ensure optimal alignment, from managing complexity to ensuring proper governance. How can culture, automation, legacy apps and even budget be reexamined to enable this ongoing shift within the modern software factory? In her Day 2 Keynote at @DevOpsSummit at 21st Cloud Expo, Aruna Ravichandran, VP, DevOps Solutions Marketing, CA Technologies, was jo...
Daniel Jones is CTO of EngineerBetter, helping enterprises deliver value faster. Previously he was an IT consultant, indie video games developer, head of web development in the finance sector, and an award-winning martial artist. Continuous Delivery makes it possible to exploit findings of cognitive psychology and neuroscience to increase the productivity and happiness of our teams.
Predicting the future has never been more challenging - not because of the lack of data but because of the flood of ungoverned and risk laden information. Microsoft states that 2.5 exabytes of data are created every day. Expectations and reliance on data are being pushed to the limits, as demands around hybrid options continue to grow.
The standardization of container runtimes and images has sparked the creation of an almost overwhelming number of new open source projects that build on and otherwise work with these specifications. Of course, there's Kubernetes, which orchestrates and manages collections of containers. It was one of the first and best-known examples of projects that make containers truly useful for production use. However, more recently, the container ecosystem has truly exploded. A service mesh like Istio addr...
Digital Transformation: Preparing Cloud & IoT Security for the Age of Artificial Intelligence. As automation and artificial intelligence (AI) power solution development and delivery, many businesses need to build backend cloud capabilities. Well-poised organizations, marketing smart devices with AI and BlockChain capabilities prepare to refine compliance and regulatory capabilities in 2018. Volumes of health, financial, technical and privacy data, along with tightening compliance requirements by...
As IoT continues to increase momentum, so does the associated risk. Secure Device Lifecycle Management (DLM) is ranked as one of the most important technology areas of IoT. Driving this trend is the realization that secure support for IoT devices provides companies the ability to deliver high-quality, reliable, secure offerings faster, create new revenue streams, and reduce support costs, all while building a competitive advantage in their markets. In this session, we will use customer use cases...
Business professionals no longer wonder if they'll migrate to the cloud; it's now a matter of when. The cloud environment has proved to be a major force in transitioning to an agile business model that enables quick decisions and fast implementation that solidify customer relationships. And when the cloud is combined with the power of cognitive computing, it drives innovation and transformation that achieves astounding competitive advantage.
Evan Kirstel is an internationally recognized thought leader and social media influencer in IoT (#1 in 2017), Cloud, Data Security (2016), Health Tech (#9 in 2017), Digital Health (#6 in 2016), B2B Marketing (#5 in 2015), AI, Smart Home, Digital (2017), IIoT (#1 in 2017) and Telecom/Wireless/5G. His connections are a "Who's Who" in these technologies, He is in the top 10 most mentioned/re-tweeted by CMOs and CIOs (2016) and have been recently named 5th most influential B2B marketeer in the US. H...
DevOpsSummit New York 2018, colocated with CloudEXPO | DXWorldEXPO New York 2018 will be held November 11-13, 2018, in New York City. Digital Transformation (DX) is a major focus with the introduction of DXWorldEXPO within the program. Successful transformation requires a laser focus on being data-driven and on using all the tools available that enable transformation if they plan to survive over the long term. A total of 88% of Fortune 500 companies from a generation ago are now out of bus...
DXWordEXPO New York 2018, colocated with CloudEXPO New York 2018 will be held November 11-13, 2018, in New York City and will bring together Cloud Computing, FinTech and Blockchain, Digital Transformation, Big Data, Internet of Things, DevOps, AI, Machine Learning and WebRTC to one location.
Cloud Expo | DXWorld Expo have announced the conference tracks for Cloud Expo 2018. Cloud Expo will be held June 5-7, 2018, at the Javits Center in New York City, and November 6-8, 2018, at the Santa Clara Convention Center, Santa Clara, CA. Digital Transformation (DX) is a major focus with the introduction of DX Expo within the program. Successful transformation requires a laser focus on being data-driven and on using all the tools available that enable transformation if they plan to survive ov...
DXWorldEXPO | CloudEXPO are the world's most influential, independent events where Cloud Computing was coined and where technology buyers and vendors meet to experience and discuss the big picture of Digital Transformation and all of the strategies, tactics, and tools they need to realize their goals. Sponsors of DXWorldEXPO | CloudEXPO benefit from unmatched branding, profile building and lead generation opportunities.
Dion Hinchcliffe is an internationally recognized digital expert, bestselling book author, frequent keynote speaker, analyst, futurist, and transformation expert based in Washington, DC. He is currently Chief Strategy Officer at the industry-leading digital strategy and online community solutions firm, 7Summits.