ETFOptimize | High-performance ETF-based Investment Strategies

Quantitative strategies, Wall Street-caliber research, and insightful market analysis since 1998.


ETFOptimize | HOME
Close Window

Sonatype Supports Secure Development in Rust

Fulton, Md., March 27, 2025 (GLOBE NEWSWIRE) -- Sonatype®, the end-to-end software supply chain security company, announced today its expanded support for software development in Rust via the Cargo registry to the entire Sonatype product suite. With the addition of Cargo support, Rust developers can leverage Sonatype’s tools to identify and mitigate potential vulnerabilities, block malicious open source from entering software development, and enforce security policies.

Predicted to become a top ten TIOBE coding language in 2025, Rust is designed for building efficient, reliable applications that prioritize security and memory safety, making it a programming language of choice for critical infrastructure and federal systems software. Sonatype now provides Rust developers with:

  • Enhanced Security: Developers can now automatically detect and remediate vulnerabilities within Rust packages and dependencies, reducing the risk of supply chain attacks and blocking malicious Rust packages.
  • Compliance Assurance: Ensure Rust components comply with organizational policies and regulatory requirements, giving developers peace of mind in meeting security and legal obligations.
  • Ongoing Monitoring: Continuous monitoring of Rust dependencies to quickly address newly discovered vulnerabilities without interrupting the software development lifecycle.
  • Component Delivery: Cargo support in Sonatype Nexus Repository speeds up delivery and ensures continuous open source component delivery, even during outages. 
  • Comprehensive Insights: Gain visibility into open source Rust components being used across teams, and enforce security gates that align with best practices for secure software development.

"As Rust continues to gain momentum in the open source community, we are excited to extend our security and compliance capabilities to support its developers," said Brian Fox, Co-founder and CTO of Sonatype. "Our goal is to empower organizations to innovate confidently, knowing that their software supply chains are safeguarded. With Cargo support, Rust developers can now benefit from the same rigorous security and governance practices that thousands of organizations rely on for other popular programming languages."

With the addition of Cargo support, Sonatype reaffirms its commitment to offering comprehensive, next-generation open source management and security solutions that meet the evolving needs of the development community. Organizations that depend on Sonatype’s platform can now easily integrate Rust into their development pipelines, leveraging advanced security and governance features to ensure a resilient and compliant software infrastructure.

“Rust addresses critical challenges in software development, offering memory safety and concurrency without sacrificing performance,” said Joel Marcey, Director of Technology at The Rust Foundation. “Providing an opportunity for organizations small and large to build with Rust is an important step in furthering mainstream adoption for secure software development via memory-safe languages.” 

For more information on Sonatype’s products, visit https://www.sonatype.com/products/language-support/rust.

About Sonatype 
Sonatype is the software supply chain security company. We provide the world’s best end-to-end software supply chain security solution, combining the only proactive protection against malicious open source, the only enterprise grade SBOM management and the leading open source dependency management platform. This empowers enterprises to create and maintain secure, quality, and innovative software at scale. As founders of Nexus Repository and stewards of Maven Central, the world’s largest repository of Java open-source software, we are software pioneers and our open source expertise is unmatched. We empower innovation with an unparalleled commitment to build faster, safer software and harness AI and data intelligence to mitigate risk, maximize efficiencies, and drive powerful software development. More than 2,000 organizations, including 70% of the Fortune 100 and 15 million software developers, rely on Sonatype to optimize their software supply chains. To learn more about Sonatype, please visit www.sonatype.com.


Megan Schmidt
Sonatype
megan.schmidt@sonatype.com

Recent Quotes

View More
Symbol Price Change (%)
AMZN  229.67
+3.39 (1.50%)
AAPL  276.97
+1.05 (0.38%)
AMD  206.13
-8.92 (-4.15%)
BAC  52.48
+0.55 (1.06%)
GOOG  323.64
+5.17 (1.62%)
META  636.22
+23.17 (3.78%)
MSFT  476.99
+2.99 (0.63%)
NVDA  177.82
-4.73 (-2.59%)
ORCL  197.03
-3.25 (-1.62%)
TSLA  419.40
+1.62 (0.39%)
Stock Quote API & Stock News API supplied by www.cloudquote.io
Quotes delayed at least 20 minutes.
By accessing this page, you agree to the Privacy Policy and Terms Of Service.


 

IntelligentValue Home
Close Window

DISCLAIMER

All content herein is issued solely for informational purposes and is not to be construed as an offer to sell or the solicitation of an offer to buy, nor should it be interpreted as a recommendation to buy, hold or sell (short or otherwise) any security.  All opinions, analyses, and information included herein are based on sources believed to be reliable, but no representation or warranty of any kind, expressed or implied, is made including but not limited to any representation or warranty concerning accuracy, completeness, correctness, timeliness or appropriateness. We undertake no obligation to update such opinions, analysis or information. You should independently verify all information contained on this website. Some information is based on analysis of past performance or hypothetical performance results, which have inherent limitations. We make no representation that any particular equity or strategy will or is likely to achieve profits or losses similar to those shown. Shareholders, employees, writers, contractors, and affiliates associated with ETFOptimize.com may have ownership positions in the securities that are mentioned. If you are not sure if ETFs, algorithmic investing, or a particular investment is right for you, you are urged to consult with a Registered Investment Advisor (RIA). Neither this website nor anyone associated with producing its content are Registered Investment Advisors, and no attempt is made herein to substitute for personalized, professional investment advice. Neither ETFOptimize.com, Global Alpha Investments, Inc., nor its employees, service providers, associates, or affiliates are responsible for any investment losses you may incur as a result of using the information provided herein. Remember that past investment returns may not be indicative of future returns.

Copyright © 1998-2017 ETFOptimize.com, a publication of Optimized Investments, Inc. All rights reserved.