Application Security News and Articles


USENIX Security ’23 – Evading Provenance-Based ML Detectors With Adversarial System Action

Author/Presenters: Kunal Mukherjee, Joshua Wiedemeier, Tianhao Wang, James Wei, Feng Chen, Muhyun Kim, Murat Kantarcioglu, and Kangkook Jee Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and ...

Shadow SaaS from Business-Led IT Leads to IAM Technical Debt

As companies embrace business-led IT, understanding and mitigating the risks associated with shadow SaaS is crucial. The post Shadow SaaS from Business-Led IT Leads to IAM Technical Debt appeared first on Security Boulevard.

News alert: Reken raises $10M from Greycroft to protect against generative AI-enabled fraud

San Francisco, Calif., Jan. 31, 2024 – Reken, an AI & cybersecurity company, today announced the close of its $10M oversubscribed seed round, led by Greycroft and FPV Ventures. Other investors in the round include Firebolt Ventures, Fika ...

New Threat Intelligence Reveals Top 5 Threats to Mobile Devices

Mobile devices are facing a growing number of threats, particularly from bot attacks. The surge in mobile usage has led to an increase in cyberattacks that exploit vulnerabilities specific to mobile operating systems. These attacks use tactics ...

Daniel Stori’s ‘Help’

via the webcomic talent of the inimitable Daniel Stori at Turnoff.US. Permalink The post Daniel Stori’s ‘Help’ appeared first on Security Boulevard.

Russian Internet Outage: DNSSEC Oops or Ukraine Hack?

It was DNS. It’s always DNS: Government ministry denies hackers hacked its network infrastructure. The post Russian Internet Outage: DNSSEC Oops or Ukraine Hack? appeared first on Security Boulevard.

Tax Season is Upon Us, and So Are the Scammers

It’s still relatively early in the year, but bad actors are already targeting accounting and finance organizations as well as filers in the United States with tax-related scams. Researchers at cybersecurity company Proofpoint wrote in a report ...

Experian Fraud Protect enables automotive dealers to detect and prevent fraud

With more of the vehicle buying journey shifting online and vehicle prices remaining at elevated levels, fraudsters are targeting the automotive industry at an increasing rate. To address the rising threat, Experian launched Fraud Protect, a ...

Guardians of IoT: Addressing IoT security vulnerabilities in electric vehicles and charging stations

The rise of electric vehicles (EVs) and charging infrastructure necessitates robust security measures, especially in the context of IoT integration. Explore the vulnerabilities in EV systems and potential risks, proposing mitigation strategies ...

A zero-day vulnerability (and PoC) to blind defenses relying on Windows event logs

A zero-day vulnerability that, when triggered, could crash the Windows Event Log service on all supported (and some legacy) versions of Windows could spell trouble for enterprise defenders. Discovered by a security researcher named Florian and ...

Supply Chain Security and NIS2: What You Need to Know

The Network Information Systems Directive (NIS2) and its predecessor NIS focus on risk management for organizations. The EU states that the NIS is the first piece of EU-wide legislation on cybersecurity with the goal of achieving a high common ...

7 types of food delivery scams and how to stop them

Protect your business from fraud using these actionable tips to prevent common food delivery scams. The post 7 types of food delivery scams and how to stop them appeared first on Sift Blog. The post 7 types of food delivery scams and how to stop ...

Vade uses generative AI to enhance spear-phishing detection

Vade announced that it has pioneered a new method that improves the confidence of its spear-phishing detection engine. The enhancement, designed to combat advanced threats including those produced by generative AI, leverages threat samples ...

USENIX Security ’23 – Black-box Adversarial Example Attack Towards FCG Based Android Malware Detection Under Incomplete Feature Information

Author/Presenters: Heng Li, Zhang Cheng, Bang Wu, Liheng Yuan, Cuiying Gao, Wei Yuan, Xiapu Luo Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong commitment to Open ...

Testes de segurança DAST e SAST

Em um mundo cada vez mais conectado, a segurança dos aplicativos tornou-se uma preocupação que não podemos ignorar ❗Continue reading on Medium »

Kentik AI improves network monitoring and observability

Kentik launched Kentik AI to give any engineer, operator, architect, or developer the ability to troubleshoot complex networks. The company is simultaneously launching a modern and AI-assisted Network Monitoring System (Kentik NMS) to enable ...

A Recap of Cybersecurity in 2023 and What’s Ahead for 2024

With high-profile breaches in the news across the world and increasingly sophisticated threats, cybersecurity professionals face more challenges than ever before. The threat landscape now requires security teams to ensure that robust frameworks ...

The Crucial Role of CSPM Tools and Practices to Secure Cloud-Based IT Systems

The transition to the cloud brings an array of intricate security and compliance challenges that require meticulous management. The post The Crucial Role of CSPM Tools and Practices to Secure Cloud-Based IT Systems appeared first on Security ...

Jetico updates BCWipe Total WipeOut to meet the NIST hard drive wipe requirements

Jetico released an update of BCWipe Total WipeOut. Addressing concerns of meeting the NIST hard drive wipe requirements, the new version of the software allows users to erase hard drive data and follow the guidelines in a single click. The update ...

Introducing DIFFER, a new tool for testing and validating transformed programs

By Michael Brown We recently released a new differential testing tool, called DIFFER, for finding bugs and soundness violations in transformed programs. DIFFER combines elements from differential, regression, and fuzz testing to help users find ...