# Snyk's 2023 State of Open Source Security: Supply chain security, AI, and more

DevFeed: [Snyk's 2023 State of Open Source Security: Supply chain security, AI, and more](<https://devfeed.tech/articles/snyk-s-2023-state-of-open-source-security-supply-chain-security-ai-and-more-8171.md>)

Original publisher: [Read original article](<https://snyk.io/blog/snyk-state-of-open-source-security-2023/>)

Author: Simon Maple

Published: 2023-07-26T13:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [open-source-security](<https://devfeed.tech/topics/open-source-security.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [Security](<https://devfeed.tech/topics/security.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Application Security](<https://devfeed.tech/topics/application-security.md>)

Tags: [acquisition](<https://devfeed.tech/tags/acquisition.md>), [ai](<https://devfeed.tech/tags/ai.md>), [blog](<https://devfeed.tech/tags/blog.md>), [developer](<https://devfeed.tech/tags/developer.md>), [executive](<https://devfeed.tech/tags/executive.md>), [false-positives](<https://devfeed.tech/tags/false-positives.md>), [megawatt](<https://devfeed.tech/tags/megawatt.md>), [open-source-security](<https://devfeed.tech/tags/open-source-security.md>), [report](<https://devfeed.tech/tags/report.md>), [sca](<https://devfeed.tech/tags/sca.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk](<https://devfeed.tech/tags/snyk.md>), [snyk-open-source](<https://devfeed.tech/tags/snyk-open-source.md>), [software-composition-analysis](<https://devfeed.tech/tags/software-composition-analysis.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [supply-chain-security](<https://devfeed.tech/tags/supply-chain-security.md>)

## AI overview

Snyk's 2023 State of Open Source Security report examines whether open source software security is improving after Log4Shell. It highlights gaps in supply chain security practices, slow adoption of foundational tools such as SCA and SAST, and mixed results and opinions surrounding AI and automation, including increased false positives.

## Source excerpt

Read Snyk's 2023 State of Open Source Security report to learn why AI, false positives, and slow security tool adoption remain concerns but faster fixes and supply chain security progress are encouraging signs in open source security.