Blog
The Finite State Blog

Practical insights and articles from our SMEs to help product security teams cut triage noise, fix what matters faster, and deliver audit-ready proof to customers and regulators.

66 results

3D render of a black indoor security camera with a horizontal scan line across its midsection. Above the line, the housing is solid matte black; below, it's translucent, exposing a circuit board lit in teal with one distinct orange chip at its center. Dark background with soft teal reflections.
Software Supply Chain Security

A 20-Year-Old IoT Vulnerability Is Still Shipping in a 2026 Home Camera

A software flaw first disclosed in 2002 was still shipping inside a home security camera in 2026, sitting in plain sight because no one along the supp...

Larry Pesce
Larry PesceJULY 21, 2026
The Best SBOM Generation Tools Compared (& How to Pick the Right One)
SBOM Management

The 4 Best SBOM Generation Tools Compared (Updated for 2026)

Discover how SBOMs enhance software supply chain security, explore top SBOM generators, and find the right tool for your organization's needs.

Finite State Team
Finite State TeamMAY 10, 2026
What is software supply chain security? - A Definition
Software Supply Chain Security

What Is Software Supply Chain Security? A 2026 Guide

What is Software Supply Chain Security? Explore the rise of software supply chain attacks and discover the pivotal factors driving these breaches.

Larry Pesce
Larry PesceMARCH 27, 2026
Source Code vs. Binary Analysis: How Dual-Layer Security Protects Software Supply Chains
Software Supply Chain SecurityProduct Security

Binary Analysis vs Source Code Analysis: Why Software Supply Chain Security Needs Both

One security scan method creates blind spots. Learn why combining source code & binary analysis is key to closing software supply chain security gaps.

Larry Pesce
Larry PesceMARCH 15, 2026
What is a Software Supply Chain Attack? - A Definition
Product Security

What Is Software Supply Chain Security? A Practical Guide

Learn how to protect your organization from software supply chain attacks by understanding their anatomy, risks, and effective mitigation strategies.

Larry Pesce
Larry PesceMARCH 2, 2026
SBOMs: The Accurate Guide to Software Supply Chain Security
SBOM Management

SBOMs and Software Supply Chain Security: A Practical Guide

Learn how SBOMs enhance software supply chain security, ensure compliance, & protect against 3rd-party vulnerabilities.

Finite State Team
Finite State TeamFEBRUARY 4, 2026
The In-Depth Guide to Shift-Left Testing
Product Security

The In-Depth Guide to Shift-Left Testing

Explore shift-left testing: a proactive approach to integrating security early in development, reducing costs, and enhancing software quality.

Larry Pesce
Larry PesceDECEMBER 5, 2025
Korea Introduces Mandatory SBOM Submissions: What It Means for Product Security
Compliance & Regulations

Korea Introduces Mandatory SBOM Submissions: What It Means for Product Security

South Korea joins the U.S., EU, and Japan in mandating SBOMs by 2027—advancing global software transparency and supply chain security. Discover what i...

Finite State Team
Finite State TeamNOVEMBER 7, 2025
Finite State - Unifying SBOM, Vulnerability, and Compliance Workflows
Product Security

The Key to Unifying SBOM, Vulnerability, & Compliance Workflows

Discover how Finite State’s platform delivers a single risk picture across your software supply chain & eliminates engineering, security & compliance ...

Mike Hatherall
Mike HatherallOCTOBER 27, 2025
Enhance Software Security with Static Application Security Testing: A Comprehensive Guide
Product Security

Enhance Software Security with Static Application Security Testing: A Comprehensive Guide

Unlock the power of SAST to secure your software development process. Learn about effective tools, benefits, and best practices for a safer codebase.

Finite State Team
Finite State TeamSEPTEMBER 27, 2025
Black Duck vs Finite State: A technical comparison for product security teams
Software Composition AnalysisProduct Updates

Black Duck vs Finite State: What’s the Best Software Composition Analysis (SCA) Tool?

Discover the key differences between Black Duck & Finite State in this comprehensive comparison to help you choose the best software security solution...

Finite State Team
Finite State TeamAUGUST 19, 2025
Software Supply Chain Security Metrics: What to Measure & Why
Software Supply Chain Security

Software Supply Chain Security Metrics: What to Measure & Why

Discover essential software supply chain security metrics that drive visibility, compliance, and proactive risk management across connected devices.

Ali Siddiqui
Ali SiddiquiJUNE 27, 2025
Finite StateFinite State

Finite State is the Product Security Automation Platform that functions as an autonomous Product Security OS: design → verify → prove, grounded in what you ship.

Platform

Platform Overview
Ground Truth Inventory
Exploitability-Based Prioritization
Design-Time Architecture Security
Automated Evidence-Backed Compliance

Solutions

Device Manufacturers
Automotive
Medical Devices
Energy & Utilities
Government
Industrial

Resources

Blog
Resource Library
Webinars & Videos
Events
Documentation

Company

About Us
CareersHIRING
Press & News
Contact Sales
Media Inquiries
X

© 2026 Finite State. All rights reserved.

Privacy PolicyTerms of UseCustomer Terms and Conditions
Finite StateFinite State
Finite StateFinite State
Get a DemoGet a Demo