Scribe Security raises $7M to protect software supply chain
Summary
The solution aims to provide transparency over the entire software development lifestyle in order to combat software supply chain attacks, which grew by more than 300% in 2021, as cybercriminals exploit open source vulnerabilities and code integrity issues to distribute malware or backdoor entry points to enterprise technology. “Just because a piece of software comes from a familiar company doesn’t mean it’s fully secured,” said Scribe cofounder and CEO Rubi Arbel in an interview. “Today’s software, including ones that are internally built, are often a black box in terms of security assurance of its components, artifacts, and the development process,” he said. This is becoming more important as organizations rely on a growing number of software solutions with externally developed code whose security offers little to no transparency for enterprises. However, as more enterprises and investors pay more attention to the threat of supply chain attacks, Scribe Security is aiming to differentiate itself from competitors by “continuously and consistently providing the software product’s security assurance level and trustworthiness,” Arbel said.