Press release
New Kusari Research Finds Security Teams Stuck in Reactive AppSec as Software Supply Chain Accountability Tightens

As compliance frameworks like the EU Cyber Resilience Act, NIST SSDF, and US federal software supply chain mandates tighten, this report reveals most teams remain trapped in reactive security models that surface risk too late and fail to integrate into de
RIDGEFIELD, Conn. - February 18, 2026 - Kusari [https://www.kusari.dev/], a leading innovator in software supply chain security and SBOM management, today released Application Security in Practice , a new research report based on a survey of software developers and security professionals. The report examines how organizations manage application security and software supply chain risk as regulatory pressure increases, AI-driven development expands, and dependency complexity grows.
The findings reveal a widening gap between how software is built and how security is enforced. As compliance frameworks tighten, most teams remain trapped in reactive security models that surface risk too late and fail to integrate into developer workflows.
"Most teams are not failing because they lack effort or tools. They are failing because visibility, ownership, and integration have not kept pace with modern software development. Organizations that succeed treat security as a continuous, workflow-native capability rather than a periodic compliance exercise." - Tim Miller, Co-Founder and CEO of Kusari
Key Findings
*
Transitive dependency blind spots persist. Only 28 percent of respondents have strong visibility into transitive dependencies, leaving organizations exposed to hidden risk from inherited code.
*
Legacy systems drive the most exposure. 59 percent cite legacy systems as their top software supply chain risk, rising to 84 percent in healthcare.
*
Reactive security consumes developer time. Nearly half spend five or more hours weekly on security incidents, pulling capacity from development.
*
Frequent checks reduce vulnerabilities. Teams assessing security on every pull request report 40 percent fewer monthly vulnerabilities than those checking only at release.
*
AI adoption outpaces AI security trust. 85 percent use AI coding assistants, but just 9 percent consider AI-driven security analysis essential.
*
Tooling integration remains a barrier. 38 percent cite difficulty integrating security tools into developer workflows.
*
Fragmented ownership weakens accountability. Split ownership between security and development teams creates longer review cycles and higher risk.
High-performing teams consolidate tools, embed security checks into CI/CD pipelines, and adopt shared ownership models. The full report is available at https://www.kusari.dev/report.
About Kusari
Kusari delivers end-to-end software supply chain security, helping organizations understand and secure what they build. Founded by cybersecurity experts with deep experience in regulated industries, Kusari delivers actionable insights that help teams build secure software without friction. Powered by comprehensive SBOM analysis, Kusari provides a unified, highly accurate view of direct and transitive dependencies, vulnerabilities, and license risks across open source, AI-generated, and third-party code, enabling teams to pinpoint issues, prioritize fixes, and stay compliant, all with automated, developer-friendly workflows. Backed by J2 Ventures, Glasswing Ventures, and Unusual Ventures, Kusari is active in the open source security ecosystem, including several CNCF and OpenSSF initiatives.
Media Contact
Company Name: Kusari
Contact Person: Jennifer Pospishek
Email:Send Email [https://www.abnewswire.com/email_contact_us.php?pr=new-kusari-research-finds-security-teams-stuck-in-reactive-appsec-as-software-supply-chain-accountability-tightens]
Phone: 408.839.2054
Country: United States
Website: http://www.kusari.dev
Legal Disclaimer: Information contained on this page is provided by an independent third-party content provider. ABNewswire makes no warranties or responsibility or liability for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this article. If you are affiliated with this article or have any complaints or copyright issues related to this article and would like it to be removed, please contact retract@swscontact.com
This release was published on openPR.
Permanent link to this press release:
Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.
You can edit or delete your press release New Kusari Research Finds Security Teams Stuck in Reactive AppSec as Software Supply Chain Accountability Tightens here
News-ID: 4395853 • Views: …
More Releases from ABNewswire
Smart Learning Market Revenue Analysis, Growth Factors, Regional Opportunities, …
Smart Learning Market by Hardware (Interactive Displays, Interactive Dashboards, Smart Boards), Software (LMS, LCMS, Student Information System, Classroom Management, Language Learning, Adaptive Learning Platform), Learning Type (Synchronous, Asynchronous), End User (K-12, Higher Education, Enterprise, Government), Region - Global Forecast to 2030.
The Smart Learning Market [https://www.marketsandmarkets.com/Market-Reports/smart-digital-education-market-571.html?utm_source=abnewswire.com&utm_medium=referral&utm_campaign=smartdigitaleducationmarket] is expected to expand at a compound annual growth rate (CAGR) of 17.2% from USD 80.69 billion in 2025 to USD 178.62 billion by 2030.…
KSA IoT Market Rising Demand, Future Scope, Top Business Strategy, Growth Factor …
KSA IoT Market by Hardware (Modules/Sensors, Security Hardware), Connectivity (Cellular, LPWAN, Satellite), Software (IoT Platforms, Application Software, Analytics Software, Security & Safety Software) - Forecast to 2031.
The KSA IoT market [https://www.marketsandmarkets.com/Market-Reports/ksa-iot-market-224699674.html?utm_source=abnewswire.com&utm_medium=referral&utm_campaign=ksaiotmarket] is predicted to grow at a compound annual growth rate (CAGR) of 7.2% from USD 3.06 billion in 2026 to USD 4.33 billion by 2031, according to the report "KSA IoT Market by Hardware (Modules/Sensors, Security Hardware), Connectivity (Cellular,…
Free Course Teaches Interior Designers to Build Custom Lighting Compositions
One-hour course walks designers through five BROKIS configurators collection by collection, eliminating specification delays and client revisions
LONDON, UK - BROKIS at EDC has released a free one-hour YouTube course teaching interior designers how to specify bespoke lighting compositions using BROKIS configurators. The course addresses a recurring problem in residential lighting specification: designers staring at blank canvases, waiting days for supplier responses, and presenting compositions that clients have seen before.
"How to…
Prince Health Offers Advanced Hyperbaric Oxygen Therapy in The Woodlands Texas f …
Prince Health in The Woodlands, TX, introduces the Houston area's largest multi-person Hyperbaric Oxygen Therapy (HBOT) chamber. This spacious, state-of-the-art facility eliminates claustrophobia, offering non-invasive, cellular-level healing. The new HBOT services provide holistic, drug-free relief for patients recovering from Long COVID, chronic pain, physical trauma, and neurological conditions, accelerating tissue repair and reducing systemic inflammation.
THE WOODLANDS, TX - Prince Health [https://princehealth.org/], a leading integrative wellness clinic, is redefining holistic recovery…
More Releases for Kusari
Kusari Brings Enterprise-Grade AI Code Review & Dependency Management to CNCF an …
Kusari Inspector is now free to all CNCF and OpenSSF projects, delivering AI-powered dependency, license and security intelligence right in developer pull requests.
RIDGEFIELD, Conn. & AMSTERDAM - March 23, 2026 - Kusari [https://www.kusari.dev/] (KUBECON EU Stand #1141), a leading innovator in software supply chain security, today announced partnerships with the Cloud Native Computing Foundation (CNCF) and the Open Source Security Foundation (OpenSSF) to make Kusari Inspector available free of charge…