Application Security News and Articles


Data Classification Software Features to Look Out For

What is data classification software and how will your company’s cybersecurity strategy benefit from its implementation? The post Data Classification Software Features to Look Out For appeared first on Security Boulevard.

How Cybersecurity for Law Firms has Changed

In this blog, Cavelo CEO James Mignacca and cybersecurity strategist Mark Sangster talk through cybersecurity obligations and best practices for law firms. The post How Cybersecurity for Law Firms has Changed appeared first on Security Boulevard.

Comic Agilé – Mikkel Noe-Nygaard, Luxshan Ratnaravi – #271 — Time Spent On

via the respected Software Engineering expertise of Mikkel Noe-Nygaard and the lauded Software Engineering / Enterprise Agile Coaching work of Luxshan Ratnaravi at Comic Agilé! Permalink The post Comic Agilé – Mikkel Noe-Nygaard, ...

Preparing for the Holiday Ransomware Storm

This article was originally published on Spiceworks. The holiday season is upon us. As we approach the end of 2023, it should be a time for festive cheer for all. Unfortunately for cybersecurity teams across the globe, their holidays are more ...

What is return fraud, and how can businesses fight it?

Understand how returns fraud and refund fraud can cost your business with these insights from Sift’s trust and safety team. The post What is return fraud, and how can businesses fight it? appeared first on Sift Blog. The post What is return ...

Threat modeling: the future of cybersecurity or another buzzword⎥Derek Fisher (author of The Application Security Handbook)

Threat modeling is the future of cybersecurity or just another buzzword? Discover the answer to this question and more in our latest podcast. The post Threat modeling: the future of cybersecurity or another buzzword⎥Derek Fisher (author of The ...

USENIX Security ’23 – Sophie Stephenson, Majed Almansoori, Pardis Emami-Naeini, Danny Yuxing Huang, Rahul Chatterjee ‘Abuse Vectors: A Framework For Conceptualizing IoT-Enabled Interpersonal Abuse’

Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong commitment to Open Access. Originating from the conference’s events situated at the Anaheim Marriott; and via the ...

Web Injection Campaign Targets 40 Banks, 50,000 Users

Dozens of banks around the word are in the crosshairs of a threat group using JavaScript web injections to steal users’ bank account credentials. The campaign, which the hackers have been preparing for since December 2022 and which emerged in ...

Building Core Capabilities to Modernize SecOps for Cloud

Additional characteristics of the cloud impact SecOps and can guide how we can expand our core capabilities to support program modernization. The post Building Core Capabilities to Modernize SecOps for Cloud appeared first on Security Boulevard.

10 best practices to secure your Spring Boot applications

Explore the top 10 Spring Boot security best practices from the Escape team to secure your Java web applications efficiently. The post 10 best practices to secure your Spring Boot applications appeared first on Security Boulevard.

Holiday Threats Surge as Christmas-Themed Scams Explode

As the winter holidays approach, malicious spammers have ramped up their efforts with a surge of Christmas-themed scams. The post Holiday Threats Surge as Christmas-Themed Scams Explode appeared first on Security Boulevard.

Catching OpenSSL misuse using CodeQL

By Damien Santiago I’ve created five CodeQL queries that catch potentially potent bugs in the OpenSSL libcrypto API, a widely adopted but often unforgiving API that can be misused to cause memory leaks, authentication bypasses, and other subtle ...

The Browser Grinch strikes again: A tale of Chrome security updates

‘Twas the season to be jolly, but lurking in the digital shadows was the Browser Grinch. Chrome’s recent zero-day vulnerability (CVE-2023-7024) crashed the holiday party, echoing the chaos of Microsoft’s 2018 emergency update. This is ...

Codenotary Adds Machine Learning Algorithms to SBOM Search Tool

Codenotary added machine learning algorithms to the search engine it provides for its Trustcenter platform for generating and managing SBOMs. The post Codenotary Adds Machine Learning Algorithms to SBOM Search Tool appeared first on Security ...

Best of 2023: Watching a Crypto Investment Scam WhatsApp Group

If your online accounts are like mine, almost every day I'm "force joined" to a new Telegram group where a crypto investment scammer tries to tell everyone how great their scam investment site is. This week, I started getting added to WhatsApp ...

AWS re:Invent 2023: Passwordless Authentication

At AWS re:Invent, Shira Rubinoff talks with Graeme Speak of BankVault Cybersecurity about passwordless authentication. The post AWS re:Invent 2023: Passwordless Authentication appeared first on Security Boulevard.

This year’s resolution: remove nosey apps from your device

Last year, a thoughtful friend gifted me a gimbal for my phone. A gimbal is a special handle with a gyroscopic motor that takes your mobile filming to the next…you know what, it’s not important. Here’s what upset me: After I downloaded the ...

Base Operations raises $9.1 million to boost global threat intelligence

Base Operations announced the successful close of a $9.1 million Series A led by Grotech Ventures and Spero Ventures with notable contributions from Vela Partners, Good Growth Capital, Mindset Ventures, Alliance Holdings, and Gaingels. The ...

How a Data Breach Affected 6.9 Million Users.

Personal data security and privacy are still major concerns in today’s connected digital world. An unsettling news broke recently, indicating that a massive data breach had affected an astounding 6.9 million individuals. Hackers were behind ...

5 Best Practices to Prepare for NIS2 Compliance

Organizations must always be aware of the constantly changing compliance landscape to protect their sensitive assets and avoid paying millions in fines. The rapid development of cyber threats fueled by the global pandemic and cyberwarfare have ...