Application Security News and Articles


Cybersecurity and the Law: Taking Proactive Steps Before Needing Legal Action

The post Cybersecurity and the Law: Taking Proactive Steps Before Needing Legal Action appeared first on Digital Defense. The post Cybersecurity and the Law: Taking Proactive Steps Before Needing Legal Action appeared first on Security Boulevard.

Breaking Bitlocker

It was only a matter of time before someone did this. Bitlocker is Microsoft’s technique for encrypting a desktop, laptop, or other MS Windows device. We encrypt the device to protect the contents if it is ever stolen. In theory, the only way ...

Critical Fortinet FortiOS flaw exploited in the wild (CVE-2024-21762)

Fortinet has patched critical remote code execution vulnerabilities in FortiOS (CVE-2024-21762, CVE-2024-23313), one of which is “potentially” being exploited in the wild. The exploitation-in-the-wild has been confirmed by CISA, by ...

Guide to Combating Ransomware and Data Extortions at Schools and Higher Education Institutions (Part 2)

What will your school do in the event of a ransomware attack? If you don’t... The post Guide to Combating Ransomware and Data Extortions at Schools and Higher Education Institutions (Part 2) appeared first on Security Boulevard.

Do Any HTTP Clients Not Support SNI?

In this blog post, we’ll share the results of an internal research project we conducted on our CDN customers focused on websites that are getting non-Server Name Indication (SNI) traffic.  The goal of our research was to answer the following ...

Randall Munroe’s XKCD ‘Banana Prices’

via the comic artistry and dry wit of Randall Munroe, creator of XKCD Permalink The post Randall Munroe’s XKCD ‘Banana Prices’ appeared first on Security Boulevard.

Simplifying Cybersecurity from Confusion to Clarity

Cybersecurity is a dynamic and fast-paced industry. Staying ahead of threats requires constant innovation and a keen understanding of the landscape’s evolving challenges. I recently spoke with Ric Smith, Chief Product and Technology Officer for ...

LogonBox VPN 2.4.6 – Now Available

Introduction LogonBox is pleased to announce the immediate availability of LogonBox VPN 2.4.6.This release includes further performance improvements to some database calls (via a system property), some improvements for reverse proxy handling and ...

LogonBox SSPR 2.4.6 – Now Available

Introduction LogonBox is pleased to announce the immediate availability of LogonBox SSPR 2.4.6.This release includes further performance improvements to some database calls (via a system property), some improvements for reverse proxy handling and ...

D3 Security Integrates Smart SOAR Platform with CrowdStrike to Accelerate Threat Response

VANCOUVER, British Columbia — 2/12/2024 — D3 Security, the leader in smart security orchestration, automation, and response (SOAR), today announced that its Smart SOAR software now integrates with the AI-native CrowdStrike Falcon® XDR ...

U.S. Authorities Shut Down Sites Selling the WarZone RAT

An FBI-led international operation this month seized several domains that were used to sell the notorious WarZone malware that BlackBerry researchers once described as “the Remote Access Trojan (RAT) of choice for aspiring miscreants on a ...

Applying Zero-Trust to Voice Networks and the 5G Core

Zero-trust architecture is rapidly becoming the go-to approach for security and IT leaders to secure voice, mobile and 5G networks and applications. The post Applying Zero-Trust to Voice Networks and the 5G Core appeared first on Security Boulevard.

A Valentine’s warning about heartbreak hackers

Ah, Valentine's Day—the time when love is in the air, and scam artists are ready to swoop in with their own version of a love story. Imagine this: you're swiping through a dating app, hoping to find the yin to your yang, only to find yourself ...

OneTrust platform enhancements accelerate AI adoption

OneTrust announced its newest platform features that make it easier for customers to govern their use of AI and accelerate AI innovation, ensure the responsible use of data across the entire data lifecycle, and achieve compliance program ...

CIS ESS Mobile offers visibility into blind spots on mobile devices

While most organizations focus cybersecurity efforts on fortifying their networks, the mobile devices connected to them often remain vulnerable. In addressing this gap, the Center for Internet Security (CIS) introduces CIS Endpoint Security ...

The Service Accounts Conundrum: What They Are and How to Secure Them

The definition of a 'service account' is vague, their use is unstructured and that makes securing them incredibly challenging. The post The Service Accounts Conundrum: What They Are and How to Secure Them appeared first on Security Boulevard.

Action1 Extends Automated Patching Capability to Groups of Endpoints

Action1 updated its patch management platform to make it possible to dynamically group endpoints and provide an audit trail capability. The post Action1 Extends Automated Patching Capability to Groups of Endpoints appeared first on Security ...

Meet Ai³, the First AI Assistant Created for Insider Risk Management

Our generative AI risk assistant for DTEX InTERCEPT fast-tracks effective insider investigations and decision making and helps to prevent data loss. The post Meet Ai³, the First AI Assistant Created for Insider Risk Management appeared first on ...

Bugcrowd raises $102 million to boost AI-powered crowdsourced security platform

Bugcrowd has secured $102 million in strategic growth funding to scale its AI-powered crowdsourced security platform offerings globally. Led by General Catalyst, with participation from longtime existing investors Rally Ventures and Costanoa ...

Visa extends its digital wallet capabilities to minimize the risk of fraud

Visa announced extended digital wallet capabilities within Visa Commercial Pay, a suite of B2B payment solutions built in partnership with Conferma Pay to revolutionize how businesses manage transactions globally. The innovation enables financial ...