Application Security News and Articles


New infosec products of the week: December 1, 2023

Here’s a look at the most interesting products from the past week, featuring releases from Amazon, Datadog, Entrust, Fortanix, GitHub, Nitrokey, and Paladin Cloud. Amazon One Enterprise palm-based identity service improves security of physical ...

Bridging the gap between cloud vs on-premise security

With the proliferation of SaaS applications, remote work and shadow IT, organizations feel obliged to embrace cloud-based cybersecurity. And rightly so, because the corporate resources, traffic, and threats are no longer confined within the ...

Key drivers of software security for financial services

Nearly 72% of applications in the financial services sector contain security flaws, according to Veracode. Despite the alarming figure, this rate of software vulnerability was the lowest of all industries analyzed and has improved since last ...

Unhappy network professionals juggling more with less

97% of US-based CIOs expressed serious concerns about at least one cybersecurity threat, according to Opengear. Failing to have the correct human oversight over the network can open up opportunities for cybercriminals to find vulnerabilities in ...

Prepare, Prevent, and Response: A Comprehensive Ransomware Protection Guide

Rampant Ransomware Attacks On November 8, 2023, U.S. Eastern Time, ICBC Financial Services (FS), the U.S. arm of China’s largest bank, fell victim to a ransomware attack, disrupting certain systems. Reports indicate that the attack, linked to a ...

Malicious Use of QR Codes on the Rise Through Quishing Attacks

Quick Response codes – aka QR Codes – were first used in 1994 by a Japanese company called Denso Wave to primarily track parts in the automotive manufacturing process. The QR code’s design allowed it to store more information than the ...

Application Security Posture Management (ASPM) and Healthcare

Like many other industries, Healthcare has undergone significant digital transformation over the past decade. From the passage of the Health Information Technology for Economic and Clinical Health Act (HITECH Act) of 2009 which mandated the ...

DEF CON 31 – Maxime Clementz’ ‘Defeating VPN Always On’

Many thanks to DEF CON 31 for publishing their terrific DefCon Conference 31 presenters content. Originating from the conference events at Caesars Forum, Flamingo, Harrah’s and Linq in Las Vegas, Nevada; via the organizations YouTube channel. ...

Navigating the Path to Continuous PCI Compliance and Security Validation with Breach and Attack Simulation

You've gone through the process of purchasing a new security tool. Is your organizations safer than it was yesterday? Find out. The post Navigating the Path to Continuous PCI Compliance and Security Validation with Breach and Attack Simulation ...

Holiday Season Cyberattacks: What to Watch Out For

The festive cheer of mid-November and December often extends to opportunistic threat actors who use this time of year to catch companies and people off guard. The holiday season usually sees an increase in several types of cyber threats, and ...

Trend Micro Adds AI Tool While Extending CNAPP Reach

Trend Micro's generative AI tool, Trend Companion, leverages natural language to reduce toil by bringing context to alerts and reducing incident investigation times. The post Trend Micro Adds AI Tool While Extending CNAPP Reach appeared first on ...

Flexible Edge from Banyan Security: A Game-Changer in Secure Connectivity

With Flexible Edge, the answer to deployment-related questions is simply, "Yes." Speed, flexibility, and security with simplified pricing and deployment. The post Flexible Edge from Banyan Security: A Game-Changer in Secure Connectivity first ...

Online Gaming Platforms Should Power-Up Protection This Holiday

In the exciting land of online gaming, the holiday season brings not only festive entertainment but also a surge in bot attacks and fraud. As players eagerly immerse themselves in virtual worlds, the looming presence of holiday bots poses a ...

Feature Highlight: The Obsidian App Kit

Security teams are responsible for protecting sensitive business data as it spreads across a complex network of SaaS applications. Managing vast amounts of data stored in these applications has become increasingly difficult. While organizations ...

Randall Munroe’s XKCD ‘Decay Modes’

via the comic artistry and dry wit of Randall Munroe, creator of XKCD! Permalink The post Randall Munroe’s XKCD ‘Decay Modes’ appeared first on Security Boulevard.

CISA: Threat Groups are Targeting Unitroncis PLCs in Water Systems

The United States’ top cybersecurity agency is warning that hackers are targeting a particular tool used by water and wastewater system operators around the country, noting an attack the day after Thanksgiving on a water utility in ...

Overcoming Cloud Security Challenges: The Power of Cloud-Native AI-Driven Solutions

PwC's survey findings are similar to what we found in our State of Cloud Security Report, released September 2023. The report reveals significant cloud security concerns, gaps in capabilities and skills, over-reliance on legacy tools, and a need ...

Flow Security unveils GenAI DLP module to prevent data leaks in real-time

Flow Security announced its extension to GenAI Security with the launch of a new GenAI DLP module. The widespread use of Generative AI, while leading to advancements across the enterprise and fueling exceptional innovation, has led to increasing ...

Black Basta Extortion Group Racks Up $107 Million in Ransom Payments

Anyone who wonders why the threat of ransomware continues to grow need only to take a look at Black Basta, the prolific extortion gang that last year likely rose from the ashes of the high-profile Russian group Conti. Black Basta has raked in at ...

Secure IT onboarding and offboarding checklists

Ensuring the security of an organization’s data, assets, and secrets has become more important than ever. This is especially true when it comes to the onboarding and offboarding of employees, where potential security vulnerabilities can arise. ...