Application Security News and Articles


Cargo Security, Subversive Crime, and Insider Risk

This Article Cargo Security, Subversive Crime, and Insider Risk was first published on Signpost Six. | https://www.signpostsix.com/ Introduction to Cargo Security In today’s globalised world, cargo security is not just a term; it’s the ...

Seller Impersonation Fraud: A Crisis of Identity in High-Value Real Estate Transactions

Back in March of 1950, the FBI added Willie “The Actor” Sutton to their list... The post Seller Impersonation Fraud: A Crisis of Identity in High-Value Real Estate Transactions appeared first on Entrust Blog. The post Seller Impersonation ...

8 Different Types of Bot Attacks That Every Business Should Know About

Learn about the eight most common types of bot attacks threatening your business today. The post 8 Different Types of Bot Attacks That Every Business Should Know About appeared first on Security Boulevard.

Hacking Microsoft and Wix with Keyboard Shortcuts

Browser vendors continuously tweak and refine browser functionalities to improve security. Implementing same-site cookies is a prime example of vendors’ efforts to mitigate Cross-Site Request Forgery (CSRF) attacks. However, not all security ...

Watching the Furby Fly (an article resurrected)

[You’ll probably see advertisements inserted by WordPress into this article. I don’t choose them or approve them – in fact, I don’t normally see them – but they’re the price I pay for not being able to afford (at present) to pay for ...

Streamlining the Alert Creation Process with Notification Templates | Impart Security

We're pumped to “impart” more great news: We’ve just launched Notification Templates, a composable, templated notification framework that allows security engineering teams to design thoughtful security notifications for a wide variety of ...

USENIX Security ’23 – *Distinguished Paper Award Winner* – Tight Auditing of Differentially Private Machine Learning

Authors/Presenters: Milad Nasr, Jamie Hayes, Thomas Steinke, Borja Balle, Florian Tramèr, Matthew Jagielski, Nicholas Carlini, Andreas Terzis Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, ...

FTC Warns AI Companies About Changing Policies to Leverage User Data

The Federal Trade Commission is warning AI companies against secretly changing their security and privacy policies in hopes of leveraging the data they collect from customers to feed models they use to develop their products and services. ...

The Rise of Product-Led DCIM Tools

Product-led growth (PLG) is a business methodology that prioritizes the product throughout the user acquisition, expansion, and retention process. By harnessing the capabilities of the product, it delivers immediate value and fosters adoption and ...

Identity Governance Has a Permission Problem

Identity's role as the new security perimeter in the cloud is driving a new set of governance requirements and making permissions tricky. The post Identity Governance Has a Permission Problem appeared first on Security Boulevard.

BigID unveils access intelligence capabilities for security, risk, and AI compliance

BigID announced new access governance controls that enable organizations to easily improve security posture, mitigate insider risk, achieve zero trust security, and accelerate AI compliance. BigID is pioneering access governance and controls for ...

NICE Actimize introduces generative AI-based solutions designed to fight financial crime

NICE Actimize announces three advanced generative AI-based solutions designed to fight financial crime and allow organizations to significantly reduce the manual and labor-intensive tasks currently employed in financial crime investigations and ...

Eureka Security Extends DSPM Reach to File Sharing Services

Eureka Security extended the reach of its DSPM platform to protect documents such as spreadsheets stored in file-sharing services. The post Eureka Security Extends DSPM Reach to File Sharing Services appeared first on Security Boulevard.

IGAaaS Vs. On-Premises IGA Solutions: A Comparative Analysis

Organizations have a choice between two primary approaches: IGA-as-a-service (IGAaaS) and traditional on-premises IGA solutions. The post IGAaaS Vs. On-Premises IGA Solutions: A Comparative Analysis appeared first on Security Boulevard.

Mitek MiControl empowers financial institutions to detect check fraud

Mitek introduced MiControl, a comprehensive fraud management console that works with Mitek’s Check Fraud Defender. MiControl detects check fraud, reduces losses and further increases consumers’ online security. With its advanced ...

Streamlining DevOps: How to Integrate OX with GitLab for Enhanced Security

We’re thrilled to announce that The OX Active ASPM platform is now fully integrated with GitLab. With this integration, users no longer have to choose between rapid deployment or security in their software development. GitLab’s comprehensive ...

Bank of America, Integris Health experience data breaches

Data breaches are a massive problem for just about everyone around the world. While you may see reports about data breaches primarily affecting U.S. citizens, just about every country has their share of cyberattacks. For example, a data breach ...

Infoblox SOC Insights reduces critical security operations challenges

Infoblox announced an AI-driven security operations solution, SOC Insights, that boosts its DNS Detection and Response solution, BloxOne Threat Defense. SOC Insights empowers security analysts to jump-start investigations that truly matter and ...

Battery maker Varta halts production after cyberattack

German battery manufacturer Varta was forced to shut down its IT systems and stop production as a result of a cyberattack. The Varta cyberattack The cyberattack occurred on Monday night and affected five of the company’s production plants ...

Bitwarden adds event logs and self-hosting capabilities to its Passwordless.dev toolkit

Bitwarden strengthened its Passwordless.dev enterprise plan with event logs and self-hosting options. These features empower organizations with greater transparency when moving to passwordless authentication and enable developers to build ...