Application Security News and Articles


NIST CSF Adoption and Automation

As a gold standard for cybersecurity in the United States and the foundation for many new standards and regulations starting to emerge today, the National Institute of Standards and Technology’s (NIST CSF) Cybersecurity Framework is more ...

Don’t Let Email Cyberattacks ‘Sleigh’ Your Holiday Cheer: Stay Vigilant, Stay Safe

With the holiday season upon us, a wave of festive joy sweeps across, but lurking in the shadows are cybercriminals, ready to “sleigh” your holiday cheer. At BlackCloak, we’re witnessing an alarming growth in cyberattacks during the holiday ...

Silent, Yet Powerful Pandora hVNC, The Popular Cybercrime Tool That Flies Under the Radar

Pandora hVNC is a remote access trojan (RAT) that has been advertised on cybercrime forums since 2021. Surprisingly, it has received little attention from the cybersecurity community. Despite this, it remains a widely used tool and is favoured by ...

Unlocking MSP Profitability: Navigating the Hidden Costs and Trends in Cybersecurity

By Frank Picarello, Go-to-Market Advisor for Judy Security Let's talk about something crucial yet often overlooked in the IT world: Managed Service Providers, or MSPs. Managed Service Providers are the unsung heroes for small and medium ...

Why It’s Time to Evolve from Threat-centric to Compromise-centric Security

In his new blog, Martin Roesch explains why we all need to change our focus when we think about detections, and evolve from threat-centric to compromise-centric approaches. The post Why It’s Time to Evolve from Threat-centric to ...

Demo Video: Why UEFI Malware Is the Next Frontier of Endpoint Security

Two of the most common misunderstandings that we encounter when discussing how Eclypsium can help protect client PCs is that 1) an EDR solution can protect against all types of malware, and 2) built-in Windows security features are sufficient to ...

Daniel Stori’s ‘Docker Panacea’

via the webcomic talent of the inimitable Daniel Stori at Turnoff.US. Permalink The post Daniel Stori’s ‘Docker Panacea’ appeared first on Security Boulevard.

At a Glance: The Year in Cybersecurity 2023

In this post, we’ll take a look at some of the trends and news from 2023, and see what insights they could hold for the years ahead. The post At a Glance: The Year in Cybersecurity 2023 appeared first on Security Boulevard.

Taking a Proactive Approach to Mitigating Ransomware Part 2: Avoiding Vulnerabilities in SAP Applications

Taking a Proactive Approach to Mitigating Ransomware Part 2: Avoiding Vulnerabilities in SAP Applications ltabo Wed, 12/13/2023 - 17:25 In case you missed it, in the first part of this series we talked about the importance of hardening ...

Russia Hacks Ukraine, Ukraine Hacks Russia — Day#658

When will it end? Russia takes down Kyivstar cellular system, Ukraine destroys Russian tax system. The post Russia Hacks Ukraine, Ukraine Hacks Russia — Day#658 appeared first on Security Boulevard.

How to Manage S3 Permissions & Access

Amazon Web Services (AWS) S3, or Simple Storage Service, is a highly scalable object storage service that allows businesses to store and retrieve any amount of data. S3 permissions are the explicit rules within policies that determine who can ...

Visa Provisioning Intelligence predicts probability of token fraud

Visa launched Visa Provisioning Intelligence (VPI), an AI-based product designed to combat token fraud at its source. Available as a value-added service for clients, VPI uses machine learning to rate the likelihood of fraud for token provisioning ...

Cyber Risk Quantification Framework: A Beginner’s Guide

In an era dominated by interconnected systems and the ever-expanding digital landscape, cyber risk has transcended mere technical jargon to become a paramount concern for individuals, businesses, and governments alike. Large regulatory bodies ...

Artificial Intelligence and Cybersecurity: An easy approach

In our fast-paced digital world, staying safe online is a top priority. Let’s explore the dynamic duo of Artificial Intelligence (AI) and cybersecurity – your trusted allies in the battle against cyber threats. This blog simplifies the tech ...

DEF CON 31 – Dr. Bramwell Brizendine’s And Shiva Shashank Kusuma’s ‘Advanced ROP Framework Pushing ROP To Its Limits’

Many thanks to DEF CON 31 for publishing their terrific DefCon Conference 31 presenters content. Originating from the conference events at Caesars Forum, Flamingo, Harrah’s and Linq in Las Vegas, Nevada; via the organizations YouTube channel. ...

DNSFilter introduces new capability to filter generative AI

DNSFilter announced the expansion of its protective DNS software with a new Generative AI category. DNSFilter’s defense provides organizations of all sizes the ability to secure their network against harmful threats such as malware, botnet, ...

Common Sense Privacy protects consumer privacy with AI-powered software platform

Common Sense Privacy debuts software to help companies better assess and manage privacy regulatory risks. Building on foundational IP from Common Sense Media, the nation’s leading child advocacy nonprofit organization, the platform boasts the ...

Zscaler launches Business Insights for smarter SaaS management and office optimization

Zscaler has unveiled Business Insights, a new addition to its Business Analytics portfolio, which enables organizations to curtail SaaS sprawl and optimize office usage to improve workplace experience while saving money. Additionally, Zscaler ...

Stopping Lateral Movement Means Identifying the Small Hops That Take Attackers Far

Attackers are opting to use tools that allow them to make countless small hops designed specifically to avoid detection. The post Stopping Lateral Movement Means Identifying the Small Hops That Take Attackers Far appeared first on Security Boulevard.

FCC Warns Carriers to Protect Customers Against SIM Swaps

A month after issuing new rules to push back against SIM-swap and similar schemes, the Federal Communications Commission (FCC) is warning mobile phone service providers of their obligations to protect consumers against the growing threat. The ...