Application Security News and Articles


Safeguard your heart and personal info this cuffing season

You may be searching for your soulmate, a low-risk situationship (we don’t judge), or just a suitable date to the wedding you’re invited to next month. Whatever the reason, many of us are on the lookout for love this time of year.   The ...

USENIX Security ’23 – Guanhong Tao, Shengwei An, Siyuan Cheng, Guangyu Shen, Xiangyu Zhang – Hard-Label Black-Box Universal Adversarial Patch Attack

Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong commitment to Open Access. Originating from the conference’s events situated at the Anaheim Marriott; and via the ...

Randall Munroe’s XKCD ‘Like This One’

via the comic artistry and dry wit of Randall Munroe, creator of XKCD Permalink The post Randall Munroe’s XKCD ‘Like This One’ appeared first on Security Boulevard.

The Vital Role of SBOMs and the Pioneering Solutions of Tanium

The concept of protecting from risks originating from the Software Supply Chain (SSC) has emerged as a cornerstone for robust digital defense in an era with growing software supply chain attacks. A critical component to understand for protecting ...

Sift’s innovative journey: 40 patents and counting in the fight against evolving online fraud through AI, machine learning, and Workflows

Sift has been granted 40 patents by the United States Patent and Trademark Office, protecting digital businesses and their customers from evolving fraud. The post Sift’s innovative journey: 40 patents and counting in the fight against evolving ...

5 Free Online Brand Protection Software Tools: Pros and Cons

Online brand impersonation attacks threaten businesses large and small, but do brands really need to open their wallets to protect themselves? The answer might be more… The post 5 Free Online Brand Protection Software Tools: Pros and Cons ...

Joining My 5th Bot Mitigation Company – Why Kasada

Industry veteran, Arif Husain, joined Kasada as a Technical Director of Security Solutions after realizing Kasada was solving the bot problem in a "particularly exceptional way." The post Joining My 5th Bot Mitigation Company – Why Kasada ...

Akira ransomware attackers are wiping NAS and tape backups

“The Akira ransomware malware, which was first detected in Finland in June 2023, has been particularly active at the end of the year,” the Finnish National Cybersecurity Center (NCSC-FI) has shared on Wednesday. NCSC-FI has received ...

The State of Open Source Cloud-Native Security

As 2024 kicks off, here's where cloud-native supply chain security stands and what to expect in the immediate future. The post The State of Open Source Cloud-Native Security appeared first on Security Boulevard.

Critical GitLab flaw allows account takeover without user interaction, patch quickly! (CVE-2023-7028)

A critical vulnerability in GitLab CE/EE (CVE-2023-7028) can be easily exploited by attackers to reset GitLab user account passwords. While also vulnerable, users who have two-factor authentication enabled on their account are safe from account ...

Behavox Intelligent Archive simplifies operations for the unified tech stack

Behavox launched the Behavox Intelligent Archive. This new offering is WORM (Write Once, Read Many) compliant and seamlessly integrates with the Behavox surveillance product. Developed in partnership with Google Cloud, the Behavox Intelligent ...

HackerOne collaborates with Semgrep to streamline code review for modern development

HackerOne announced a partnership with code security solution, Semgrep, to combine Semgrep’s automated code security tools with expert support from HackerOne PullRequest code reviewers. Security teams can now analyze code through Semgrep ...

Three Tips To Use AI Securely at Work

How can developers use AI securely in their tooling and processes, software, and in general? Is AI a friend or foe? Read on to find out. The post Three Tips To Use AI Securely at Work appeared first on Security Boulevard.

Cloud Atlas Phishing Attacks: Russian Companies Beware

The landscape of cybersecurity threats 2024 presents unprecedented challenges, requiring a proactive and adaptive approach to safeguard digital ecosystems. This brings us to a recent cyber espionage incident. The famous hacker group identified as ...

Do More with Security Orchestration, Automation, and Response (SOAR)

Today, security operations center (SOC) teams face dual challenges of acquiring both the right caliber and quantity of staff. Many organizations are in the early stages of transitioning from a focus primarily on prevention to a greater emphasis ...

Preventing Domain Spam – How to Get Whitelisted Quickly?

Stop domain spam from hurting your email deliverability. Learn how to get whitelisted quickly, prevent blocklists, and protect your sender reputation. The post Preventing Domain Spam – How to Get Whitelisted Quickly? appeared first on Security ...

Cloud security predictions for 2024

As we reflect on the cybersecurity landscape and the trajectories of threat vectors, it’s evident that we’re on the cusp of a paradigm shift in cloud security. Businesses and cybersecurity professionals must stay abreast of these ...

Why is my SSL expiring every 3 months?

Digital certificates, used with the protocol ‘TLS’ (Transport Layer Security, previously known as ‘SSL’ or Secure Socket Layers) establish secure connections between your web server and the browsers visitors use to view your site. They ...

New infosec products of the week: January 12, 2024

Here’s a look at the most interesting products from the past week, featuring releases from Critical Start, Dasera, ID R&D, and SpecterOps. SpecterOps adds new Attack Paths to BloodHound Enterprise SpecterOps announced updates to BloodHound ...

Cyber budgets and the VC landscape in 2024

In this Help Net Security video, Marcus Bartram, General Partner at Telstra Ventures, discusses his 2024 cybersecurity predictions: The U.S. will be in a recession by Q4 2024, and tech companies will continue reducing their workforce. Still, VCs ...