RapidFort Extends Supply Chain Security into Production Environments
Event summary
- RapidFort launched Runtime, a real-time security solution for live production environments, at Black Hat USA 2026.
- The platform continuously monitors deployed software, detects unauthorized changes, and tracks newly discovered CVEs.
- Runtime integrates with existing CI/CD pipelines without requiring code changes.
- Sisense's CISO Sangram Dash highlighted the tool's ability to generate precise Runtime Bills of Materials (RBOM) for real-time compliance verification.
The big picture
RapidFort's extension of software supply chain security into live production environments addresses a critical gap in real-time threat monitoring. As regulatory requirements like NIS2 and the EU Cyber Resilience Act tighten, the ability to continuously verify software integrity in production could become a compliance necessity. The tool's integration with existing CI/CD pipelines positions it as a potential standard for enterprises seeking to reduce vulnerability noise and enhance runtime security.
What we're watching
- Adoption Pace
- How quickly enterprises will integrate Runtime into their existing CI/CD pipelines without requiring code changes.
- Regulatory Alignment
- Whether RapidFort can sustain its alignment with evolving regulations like NIS2 and the EU Cyber Resilience Act.
- Competitive Differentiation
- The extent to which Runtime's BPF/ptrace technology will reduce false positives compared to static analysis tools.
Related topics
