Lineaje Unveils Generative AI Solution BOMBots - Industry Today - Leader in Manufacturing & Industry News

Industry’s Media Platform of Choice
Champion Your Brand in Front of Decision Makers and Extend Your Reach Get Featured in the SPOTLIGHT

 

August 8, 2023 Lineaje Unveils Generative AI Solution BOMBots

BOMBots, powered by Lineaje AI, remediate common pain points in the software supply chain, leading to lower costs and increased productivity.

SARATOGA, Calif./BusinessWire/ – Lineaje, a leader in software supply chain security management, today unveiled BOMBots. These AI-based automation bots analyze deep software bill of materials (SBOMs) to deliver optimized recommendations and remediations across the entire supply chain. Using BOMBots, organizations dramatically reduce software maintenance investments and achieve a better security posture. BOMBots leverage Lineaje AI to create “intelligent recommendations,” enabling developers and security analysts to make better decisions – resulting in software that is more secure and delivered with efficiency.  With these recommendations, software producers can reduce effort spent on software maintenance by up to 40% and cut software upgrade costs by the same amount.

The BOMBots generative AI tool acts like a “co-pilot,” enhancing a user’s ability to find, understand, and mitigate specific software security and maintenance issues through a specialized, comprehensive analysis by Lineaje AI. Using an intelligent chatbot feature, integrated with their SBOM, teams can engage via a human-like conversation for a comprehensive resolution of a complex issue. The resolution is adapted to an organization’s specific situation and requirement, enabling software maintainers and security professionals to mitigate software issues more efficiently.

Open source and third-party dependencies now make up more than 70% of all software. While this has accelerated innovation, it has also complicated software maintenance dramatically. Software developers are overloaded with maintenance tasks that are not tied to code they built or understand. BOMBots deliver industry-first workflows of discovery, recommendations, and automated remediation through the entirety of the software supply chain built inside the organization and all open-source dependencies.

“Today’s developers often utilize already existing software code for faster development and innovation. At the same time, their security counterparts are challenged keeping up with a higher volume and speed of releases while combatting rapidly evolving threats. As a result, we’re seeing organizations succumb to the financial and reputational damages of software supply chain attacks. The cybersecurity industry needs solutions that quickly identify and remediate flaws in the software supply chain and mitigate risk,” said Melinda Marks, Senior Analyst, Enterprise Strategy Group. “BOMBots help developers and security teams work efficiently to remediate security issues using generative AI technologies to provide accurate recommendations for remediation without disrupting workflows.” 

Fortifying Software Supply Chains with Accuracy  

​Regardless of company size, BOMBots alleviate compounded pain points associated with software maintenance. Key BOMBots available in this release include:

  • Compatibility BOMBot: Fixing vulnerabilities, resolving security issues, and taking advantage of new features frequently means that software components must be upgraded to newer versions — which may or may not be compatible with the other software components. The Compatibility BOMBot evaluates thousands of components in an SBOM and creates a compatibility matrix aligned with an organization’s goals to tune the recommendations from “least effort” to “most secure.” This enables organizations to eliminate as much as 25% of effort through the “compatibility dividend.”
  • Maintainability BOMBot: Software components, including open-source dependencies, frequently age badly. The Maintainability BOMBot identifies dependencies that are risky and no longer maintained. It remediates by driving developers to fix that issue in the dependency themselves or choose a better alternative.
  • Vulnerability BOMBot: 95% of vulnerabilities now come from the software supply chain. Unfortunately, many vulnerability prioritization approaches today focus on security urgency and not executability by developers. The Vulnerability BOMBot considers both executability and security parameters in its prioritizations, separating out all vulnerabilities into fixable by the organization’s developers or by dependency organizations. It then works together with the Compatibility and Maintainability BOMBots to figure out the most optimal recommendation. The Vulnerability BOMBot can distinguish between independent patching and upgrades, as well as implications of major and minor versions. It then automates execution through the software supply chain to save up to 20% in effort.

“Organizations already know that SBOMs are critical tools for software compliance. The next logical step for those who know ‘what’s in their software’ is to use that knowledge to improve it. Lineaje AI is leveraging SBOM data to directly optimize software maintenance and security. Our BOMBots offering will allow organizations to move beyond compliance to optimize their software maintenance. We expect that our BOMBots will help companies reduce software maintenance investments by up to 30% in the short term” said Javed Hasan, CEO & Co-Founder, Lineaje Inc.

In addition to BOMBots, Lineaje AI delivers key enhancements to its flagship products SBOM360 and SBOM360 Hub, including a Supply Chain Learnbot to aid in self education on software supply chain topics and legislation like Executive Order 14028, an InsightBot to answer questions about data and its implications for the user, and a Classical Automation Bot, which enables auto-creation of Jira stories for developers with detailed remediation instructions and code.

To learn more about how Lineaje is applying AI to software supply chain security, visit [link to BOMBots page] or visit us in Startup City at Black Hat, Aug. 5-10, 2023, at SC601 for a free demo.

About Lineaje  
Lineaje provides Continuous Software Supply Chain Security Management to companies that build or use software. Destructive supply chain attacks, undetectable by existing cybersecurity tools, are growing rapidly, impacting thousands of companies through a single compromise. Lineaje secures companies from these attacks. Lineaje SBOM360 allows companies to centrally manage their entire software supply chain, which consists of applications they build or buy, thereby allowing them to govern SBOMs at an enterprise-wide level. SBOM360 also enables compliance with US Executive order 14028 and other international regulations that control the procurement of third-party software by federal agencies, defense departments and other government organizations. 
Does your organization know ‘what’s in its software?’ Find out at https://www.lineaje.com/

Media Contact 
Fabienne Dawson 
Fabienne_dawson@lineaje.com  

Touchdown PR 
Alyssa Pallotti 
lineaje@touchdownpr.com

 

Subscribe to Industry Today

Read Our Current Issue

Made To Stay: Attracting Gen Z Into Manufacturing

Most Recent EpisodeAn Ambition To Be a Great Leader

Listen Now

A childhood in Kansas, college in California where she met her early mentor, Leigh Lytle spent 15 years in the Federal Reserve Banking System and is now the 1st woman President & CEO of the Equipment Leasing & Finance Association. Join us to hear about her ambition to be a great leader.