Application Security News and Articles


Azure Password Self-Service Management Solutions: Which is Best?

It goes without saying that password management is essential to online security, whether for a personal social media account or a company website.Often the traditional methods of password management fall short of what is necessary today – ...

Password Fatigue: How To Avoid It

Many employees at all kinds of businesses can suffer from password fatigue. It is a very real problem, which can be a struggle to deal with, and often it goes unnoticed.In this article, we will aim to provide a comprehensive analysis of what it ...

Revolutionizing Phishing Defense: Hunting for Phishing

Enterprises spent over $2 billion in hard dollars on phishing prevention in 2023. In addition, they spent at least 10x that amount in lost productivity due to employee time spent completing periodic phishing awareness training. Such investments ...

Response to CISA Advisory (AA24-057A): SVR Cyber Actors Adapt Tactics for Initial Cloud Access

AttackIQ recommends that customers take the following testing actions in alignment to the recently published CISA Advisory (AA24-057A) which details recent Tactics, Techniques, and Procedures (TTPs) exhibited by the Russian Foreign Intelligence ...

Randall Munroe’s XKCD ‘Orbital Argument’

via the comic artistry and dry wit of Randall Munroe, creator of XKCD Permalink The post Randall Munroe’s XKCD ‘Orbital Argument’ appeared first on Security Boulevard.

Google and Yahoo’s New Email Requirements and Recommendations

This month Google and Yahoo introduced crucial changes to their email delivery requirements. For senders... The post Google and Yahoo’s New Email Requirements and Recommendations appeared first on Entrust Blog. The post Google and Yahoo’s New ...

Retail Cybersecurity: The Importance of Compliance and Risk Management

Retail Cybersecurity A Shift in Retail IT Security What’s at Stake? The Role of FireMon in Retail Cybersecurity Why Choose FireMon? FireMon: Built for Compliance Reporting Real-Time Compliance Management at Scale Advanced Asset Discovery In ...

5 mistakes beginners make during app recon

Learn about the five mistakes beginners make during their app recon that limit their ability to find vulns during their API security testing. The post 5 mistakes beginners make during app recon appeared first on Dana Epp's Blog. The post 5 ...

Enhancing API Security with JWT Core Detections | Impart Security

Security teams, we hear you. Today we release a few well-chosen JWT-based detections into our core ruleset for more effective API security. Some of the core detections available to our customers are: • JWT Algorithm Detections By flagging and ...

SpinSPM for Salesforce identifies misconfigurations within SaaS applications

Spin.AI released SpinSPM for Salesforce. This SaaS Security Posture Management (SSPM) solution allows security professionals and IT administrators to proactively secure Salesforce environments. With complete configuration visibility, ongoing ...

USENIX Security ’23 – Synchronization Storage Channels (S2C): Timer-less Cache Side-Channel Attacks on the Apple M1 via Hardware Synchronization Instructions

Authors/Presenters: Jiyong Yu, Aishani Dutta, Trent Jaeger, David Kohlbrenner, Christopher W. Fletcher Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong commitment to ...

How Zero Trust Data Detection & Response is Changing the Game

The post How Zero Trust Data Detection & Response is Changing the Game appeared first on Votiro. The post How Zero Trust Data Detection & Response is Changing the Game appeared first on Security Boulevard.

PKI Solutions introduces new version of PKI Spotlight

PKI Solutions introduced a new version of PKI Spotlight, a real-time monitoring and alerting system that provides live status, availability, configuration, and security of PKI environments (Microsoft PKI and others) and hardware security modules ...

Akamai extends its segmentation solution to hybrid cloud environments

Akamai announced that it is extending its segmentation solution, Akamai Guardicore Segmentation, to hybrid cloud environments. Extending Akamai Guardicore Segmentation to the cloud helps reduce attack surfaces and helps contain attacks targeting ...

Risk Management Strategy in an Economic Downturn: How to Take a Holistic Approach to GRC

Economic uncertainty has been a hot topic for all businesses lately. The good news: the US economy might have avoided a recession, and rising interest rates haven’t slowed economic growth. However, bad times always arrive sooner or later, and a ...

VIAVI enhances Observer Sentry’s exposure and vulnerability analysis

VIAVI Solutions announced the addition of traffic analysis capabilities to its Observer Sentry Software-as-a-Service-based threat exposure management solution. With traffic visibility, Observer Sentry goes beyond identifying unintended and ...

AU10TIX KYB solution validates info against global registries and jurisdictions

AU10TIX launched an Know Your Business (KYB) solution that enables companies to know exactly who they are doing business with and avoid potential financial and reputational losses. By combining KYB with Know Your Customer (KYC) processes, the ...

Sonar Reaffirms Strength of its Information Security Management Systems by Earning The Latest ISO Certification, ISO27001:2022

As part of our continuously advancing and improving security practice, we are pleased to announce that Sonar and its products are now certified to the latest version of the ISO72001 standard. The post Sonar Reaffirms Strength of its Information ...

White House: Use memory-safe programming languages to protect the nation

The White House is asking the technical community to switch to using memory-safe programming languages – such as Rust, Python, Swift, C#, Java, and Go – to prevent memory corruption vulnerabilities from entering the digital ecosystem. ...

AgileBlue Sapphire AI streamlines SecOps and SOAR processes

AgileBlue announced the availability of Sapphire AI in its Cerulean XDR|SOAR platform. The advanced AI system reinforces the company’s commitment to customer excellence, serving as the first line of defense against a cyberattack. With ...