UPDATED 08:00 EDT / APRIL 30 2024

SECURITY

Synopsys enhances its Polaris Platform with new AI security assistant

Electronic design automation company Synopsys Inc. today announced the launch of a new artificial intelligence-powered application security assistant that provides AI-augmented vulnerability summaries and code fixes.

Called Polaris Assist and offered as part of the Synopsys Polaris Software Integrity Platform, the new AI assistant combines large language model technology with Synopsys’ application security knowledge and intelligence. It provides security and development teams with easily understood summaries of detected vulnerabilities, AI-generated code fix recommendations and other insights to help build secure software faster.

At its launch, the new service provides two new AI-enabled capabilities. The first, Polaris AI Issue Summaries, is designed to make it easier for developers to interpret and act on static analysis results, with AI used to generate concise and actional summaries of coding weaknesses and vulnerabilities. The summaries also include the potential risks of each vulnerability and contextual guidance on how to remediate the code at hand.

The second capability, Polaris AI Fix Suggestions, helps developers reduce the time required to remediate security vulnerabilities by recommending AI-generated code fixes that can be easily reviewed, applied and adapted directly into their code.

“Polaris Assist boosts security and developer productivity, allowing them to more easily understand and remediate security vulnerabilities in their code,” explained Jason Schmitt, general manager of the Synopsys Software Integrity Group. “Our goal with Polaris Assist is to automate repetitive or time-consuming AppSec activities so our customers can spend less time dealing with security issues and more time innovating.”

Schmitt added that the “AI-powered vulnerability summaries and code fix suggestions are compelling use cases that address real pain points many organizations are feeling today, but they also validate the immense opportunity generative AI presents for the field of application security moving forward.”

Synopsys was last in the news on April 9 when it announced the availability of Black Duck Supply Chain Edition, a software composition analysis offering that allows organizations to mitigate upstream risks in supply chain attacks. The service is designed to enable development and security teams to track dependencies across the entire application lifecycle to identify and resolve security vulnerabilities, malicious packages and license violations and conflicts.

Photo: Wikimedia Commons

A message from John Furrier, co-founder of SiliconANGLE:

Your vote of support is important to us and it helps us keep the content FREE.

One click below supports our mission to provide free, deep, and relevant content.  

Join our community on YouTube

Join the community that includes more than 15,000 #CubeAlumni experts, including Amazon.com CEO Andy Jassy, Dell Technologies founder and CEO Michael Dell, Intel CEO Pat Gelsinger, and many more luminaries and experts.

“TheCUBE is an important partner to the industry. You guys really are a part of our events and we really appreciate you coming and I know people appreciate the content you create as well” – Andy Jassy

THANK YOU