Application Security News and Articles


The ROI of Investing in Cybersecurity

The need for investing in cybersecurity now, so that a breach doesn’t become an organization’s funding case, needs to be clear for all stakeholders  Digital transformation drives business operations, and dedicating funds towards ...

AI-generated voices in robocalls now illegal

The FCC has revealed the unanimous adoption of a Declaratory Ruling that recognizes calls made with AI-generated voices are “artificial” under the Telephone Consumer Protection Act (TCPA). The ruling, which takes effect immediately, makes ...

Action1 platform update improves patching workflows

Action1 announced its latest release and the introduction of a new guiding concept for its business. The latest feature update contains multiple enhancements to the Action1 platform, empowering customers to bring their patching efforts ‘down to ...

Top Secrets Management Tools for 2024

Let's walk through nine of the top secrets management solutions for 2024. The post Top Secrets Management Tools for 2024 appeared first on Security Boulevard.

Hiring for Tech Managers jobs? Should Tech Managers Be Developers First?

In the bustling tech landscape, leadership roles hold immense power to shape project trajectories and team dynamics. But when it comes to hiring tech managers,...Read More The post Hiring for Tech Managers jobs? Should Tech Managers Be Developers ...

February 2024 Patch Tuesday forecast: Zero days are back and a new server too

January 2024 Patch Tuesday is behind us. A relatively light release from Microsoft with 39 CVEs addressed in Windows 10, 35 in Windows 11, and surprisingly no zero-day vulnerabilities from Microsoft to start the new year. January’s release was ...

Why we fall for fake news and how can we change that?

Have you ever been swept away by an enticing headline and didn’t bother to probe the news in-depth? You might have shared an eye-catching news story or engaged with a compelling post, only to realize later that what appeared to be truth ...

New infosec products of the week: February 9, 2024

Here’s a look at the most interesting products from the past week, featuring releases from Cisco, Metomic, OPSWAT, Qualys, and Varonis. Varonis MDDR helps organizations prevent data breaches Varonis introduced Varonis Managed Data Detection and ...

Key strategies for ISO 27001 compliance adoption

In this Help Net Security interview, Robin Long, founder of Kiowa Security, shares insights on how best to approach the implementation of the ISO/IEC 27001 information security standard. Long advises organizations to establish a detailed project ...

Cybersecurity teams recognized as key enablers of business goals

97% of office workers across the UK and US trust their cybersecurity team’s ability to prevent or minimize damage from cyberattacks, according to CybSafe. The study examining attitudes towards cybersecurity teams within organizations has ...

IoT Testing: Best Practices And Challenges in 2024

According to Transforma Insights, the wide form of Internet of Things (IoT) devices in use globally is expected to nearly double from 15.1 billion to 29 billion in 2030. These gadgets are available in a wide variety of bureaucracies, along with ...

How companies are misjudging their data privacy preparedness

In this Help Net Security video, Karen Schuler, Global Privacy & Data Protection Chair at BDO, discusses overconfidence in data privacy and data protection practices. There is an apparent disconnect between tech CFOs’ confidence and ...

How AI is revolutionizing identity fraud

Nearly half of businesses reported a growth in synthetic identity fraud, while biometric spoofs and counterfeit ID fraud attempts also increased, according to AuthenticID. Consumers and businesses alike are facing new challenges in today’s ...

Bringing Composability to Firewalls with Runtime Protection Rules | Impart Security

Runtime Protection Rules are one of the most powerful features in Impart’s API security platform. We’ve taken all the lessons learned from decades of experience in the firewall space and created a solution that works for modern security ...

USENIX Security ’23 – Not All Data are Created Equal: Data and Pointer Prioritization for Scalable Protection Against Data-Oriented Attacks

Authors/Presenters: Salman Ahmed, Hans Liljestrand, Hani Jamjoom, Matthew Hicks, N. Asokan, Danfeng (Daphne) Yao Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong ...

Volt Typhoon: SafeBreach Coverage for US-CERT Alert (AA24-038A)

People’s Republic of China (PRC)-affiliated threat actors seek to execute disruptive or destructive attacks by positioning themselves on IT networks belonging to critical infrastructure entities. The post Volt Typhoon: SafeBreach Coverage for ...

2024 Annual State of Email Security Report: What to Expect

The Cofense 2024 Annual State of Email Security Report sheds light on emerging trends in the cybersecurity threat landscape, highlighting areas of concern and indicating where your security team should focus in the coming year. The data that ...

UPDATE: Ivanti Connect Secure Zero-Day Now Under Mass Exploitation

We’ve recently posted information about the Ivanti zero-day situation. We now have confirmation that the Ivanti Connect Secure zero-day is being exploited on a large scale. Here’s what you need to know.   Tell me more about the Ivanti ...

New Web API V2

We are modernizing our Web API. In this post, Aurélien Poscia explains how and why. The post New Web API V2 appeared first on Security Boulevard.

Guide to Combating Ransomware and Data Extortions at Schools and Higher Education Institutions (Part 1)

Ransomware is a type of malicious software that encrypts your files, rendering them inaccessible and... The post Guide to Combating Ransomware and Data Extortions at Schools and Higher Education Institutions (Part 1) appeared first on Security ...