EntSun News

Popular on EntSun


Similar on EntSun

NetRise® Launches AI-Powered Cybersecurity Product To Detect Undisclosed Software Weaknesses Before They Become Exploited Vulnerabilities USA - English

EntSun News/11057263
SAN FRANCISCO, April 28, 2025 ~ NetRise, a leading company in software supply chain security, has announced the launch of their latest product, NetRise ZeroLens. This new addition to their platform aims to help companies manage organizational risk by providing a comprehensive software asset inventory and identifying potential vulnerabilities before they are exploited.

The NetRise platform is known for its unique approach to analyzing compiled code, known as binary composition analysis (BCA). This technique allows for the identification of vulnerabilities that may not be found through traditional methods such as vulnerability scanners or source code scans. With the addition of NetRise ZeroLens, the platform now also analyzes compiled code for weaknesses (CWEs) that have not yet been identified or exposed as vulnerabilities.

One of the key features of NetRise ZeroLens is its use of artificial intelligence (AI) to summarize the CWEs found and guide remediation based on the context of the code. This allows for a more efficient and effective approach to addressing potential vulnerabilities.

According to Thomas Pace, CEO of NetRise, this new product addresses a need in the cybersecurity market for proactive vulnerability identification. He states, "The cybersecurity market has been begging for proactive vulnerability identification instead of constantly operating in a reactive model. NetRise ZeroLens is proactive vulnerability identification at scale."

More on EntSun News
NetRise ZeroLens offers several benefits to organizations, including enhanced quantification of risk by identifying previously unknown weaknesses in binary software. It also enables ethical hackers and red team members to upload and analyze thousands of binaries concurrently, reducing the time required for manual analysis. Additionally, by identifying vulnerabilities before they are exploited, NetRise ZeroLens prioritizes remediation and mitigation workflows for device manufacturer product security teams.

Garrett Schumacher, Business Unit Director at Velentium Medical, highlights the importance of this product in ensuring security for medical devices that run on firmware. He states, "NetRise ZeroLens gives us the ability to test software that other static analysis tools don't handle well, for instance where no industry standard or insufficient rulesets for secure coding exist."

Not only does NetRise ZeroLens identify potential vulnerabilities found within compiled code, but it also provides AI-driven summaries of its findings to guide any necessary actions to mitigate the risk. Michael Scott, CTO of NetRise, explains, "NetRise ZeroLens provides researchers and developers specific guidance based on its findings. For example, if the tool finds a buffer overflow, the summary looks at the functions within the code, contextual usage, and can determine whether the input is user-supplied or static, informing and advising accordingly."

More on EntSun News
The launch of NetRise ZeroLens comes at a critical time as organizations continue to face threats from zero-day vulnerabilities. These are vulnerabilities in code that have no patch or fix available and can be exploited by threat actors in a "zero-day attack." The recent Log4j incident highlighted the impact of such vulnerabilities on global enterprises. Even two years after its discovery, 38% of organizations were still using vulnerable versions of the Log4j open-source library.

According to Pace, NetRise ZeroLens builds upon their founding vision by providing a comprehensive software asset inventory that goes beyond just identifying vulnerabilities. He states, "This enhanced context allows for better understanding of risk within the organization and proactive planning to mitigate that risk."

To learn more about NetRise ZeroLens and its capabilities, interested parties can request a meeting with their team at the RSA Conference 2025 or schedule a demo. Additionally, they can attend NetRise's events during RSAC 2025 in San Francisco or visit their website for more information about the product. With NetRise ZeroLens, organizations can take a proactive approach to managing software risk and protecting their assets from potential threats.
Filed Under: Business

Show All News | Report Violation

0 Comments

Latest on EntSun News