AI-assisted development is increasing both the volume and velocity of code, while code verification capacity struggles to keep pace. Static analysis, software composition analysis, and infrastructure scanning automate much of the discovery process. But vulnerabilities like business logic often require an understanding of intent: does the implementation behave as the business expects?

Read the full article at Sonar →