Keep up to date with the latest Black Duck news and subscribe to email alerts.
New Polaris Platform capabilities empower teams to close security testing gaps, withstand the flood of supply chain vulnerabilities, and automate remediation pipelines
BURLINGTON, Mass., June 16, 2026 /PRNewswire/ -- Black Duck®, the leader in AI-powered application security, today announced significant feature enhancements to its Black Duck Polaris™ Platform, engineered to empower organizations to stay ahead of exploits generated by hackers using sophisticated AI models such as Claude Mythos, as well as the flood of vulnerability disclosures and patches expected as open source maintainers scramble to use AI to find and fix vulnerabilities in commonly used supply chain components.
The latest Black Duck innovations equip security teams to detect, prioritize, and remediate vulnerabilities faster than ever before by addressing three core pillars of Mythos readiness: eliminating AST gaps that are easy targets for AI, equipping teams for the AI vulnerability flood, and leveraging AI to minimize the mean time to remediate (MTTR) security risks. Together, these capabilities enable teams to transform their current manual remediation practices into a fast-paced and highly automated VulnOps model, essential to defend against AI-speed cyberattacks.
This urgency is reflected in real-world usage, with Polaris scan volumes increasing more than 100% in the first five months of 2026 as organizations accelerate security testing to keep pace with AI-driven threats.
"The window between vulnerability discovery and exploitation has collapsed, turning software risk into an immediate and potentially existential business risk," said Dipto Chakravarty, Chief Product & Technology Officer at Black Duck. "Black Duck is redefining the application security operating model, enabling organizations to reliably and continuously identify and reduce risk in real time to protect critical assets, maintain resilience, and keep pace with adversaries that move at AI speed."
Closing Visibility Gaps and Enforcing Security at Scale
AI models like Claude Mythos enable attackers to chain together multiple application vulnerabilities into sophisticated exploits in a matter of minutes. Even vulnerabilities considered low severity when viewed in isolation can lead to exploit when chained with other security defects. New capabilities in Polaris help teams eliminate the gaps and inconsistencies in their application security testing, triage, and remediation to prevent vulnerabilities from going undetected:
Equipping Teams for the AI Supply Chain Vulnerability Flood
As software component vendors and open-source maintainers scramble to test and patch their products using AI, teams building software with these supply chain components must be prepared for a flood of new vulnerability disclosures, which are expected to top 50,000 in 2026 and could rise to nearly 200,000 by 2028. Several new capabilities in Polaris help teams ensure they have the visibility and rapid response capabilities needed to survive:
Streamlining Developer and Security Analyst Workflows with AI
While AI models like Mythos empower skilled security analysts to detect novel vulnerabilities, most security and development teams face the immediate challenge of defending against a wave of AI-powered attacks. Polaris brings AI-enabled AppSec to their DevOps workflows today, with the ability to integrate Black Duck Signal™ agentic AppSec capabilities alongside the deterministic, scalable, compliance-ready analysis of Polaris fAST Static, SCA, and Dynamic:
Together, these capabilities help security and development teams ensure that all the software they deliver is thoroughly tested, they can process the flood of AI-driven vulnerabilities and patches, and their vulnerability triage and remediation is able to stay ahead of hackers using AI to target security defects.
To learn more about the Black Duck Polaris Platform, visit our website, read our detailed blog post, and register for the upcoming webinar.
About Black Duck
Black Duck® meets the board-level risks of modern software with True Scale Application Security, ensuring uncompromised trust in software for the regulated, AI-powered world. Only Black Duck solutions free organizations from tradeoffs between speed, accuracy, and compliance at scale while eliminating security, regulatory, and licensing risks. Whether in the cloud or on premises, Black Duck is the only choice for securing mission-critical software everywhere code happens. With Black Duck, security leaders can make smarter decisions and unleash business innovation with confidence. Learn more at www.blackduck.com.
SOURCE Black Duck Software