Application Security News and Articles
As one of the keys to implementing least-privilege access, microsegmentation is an essential element in the Zero Trust toolbox.
The post The Role of Microsegmentation in Zero Trust Security appeared first on Ericom Software.
The post The Role of ...
Breaches of corporate IT networks now happen all the time, every day, to just about every type of organization under the sun. They are a top worry for any compliance officer, and figuring out better ways to prevent them or recover from them is ...
As AI models become more sophisticated, the potential for misuse or unintended consequences grows, emphasizing the need for robust oversight and a proactive approach to governance.
The post The AI Paradox: Balancing Generative AI Adoption With ...
Car parts giant AutoZone says nearly 185,000 individuals were impacted by a data breach caused by the MOVEit hack.
The post 185,000 Individuals Impacted by MOVEit Hack at Car Parts Giant AutoZone appeared first on SecurityWeek.
CVE-2023-4966, aka “Citrix Bleed”, has been exploited by LockBit 3.0 affiliates to breach Boeing’s parts and distribution business, and “other trusted third parties have observed similar activity impacting their ...
Broadcom has announced it has cleared all regulatory hurdles and plans to complete its $69 billion acquisition of VMware. The company announced it planned to move ahead with the deal after China joined the list of countries that had given a ...
Canonical announced chiselled Ubuntu containers which come with Canonical’s security maintenance and support commitment. Chiselled Ubuntu containers are ultra-small OCI images that deliver only the application and its runtime dependencies, and ...
Researchers have tested the fingerprint sensors used for Windows Hello on three popular laptops and managed to bypass them.
The post Windows Hello Fingerprint Authentication Bypassed on Popular Laptops appeared first on SecurityWeek.
San Francisco-based OpenAI has reached an agreement in principle for Sam Altman to return to OpenAI as CEO with a new initial board.
The post Sam Altman is Back as OpenAI CEO Just Days After Being Removed, Along With a New Board appeared first on ...
Organizations experience 30% more ransomware attacks during the holiday season, with a 70% average increase in attempted ransomware attacks in November and December compared with January and February. Many factors converge to make defending ...
Microsoft invites researchers to new bug bounty program focused on vulnerabilities in its Defender products.
The post Microsoft Offers Up to $20,000 for Vulnerabilities in Defender Products appeared first on SecurityWeek.
CyberArk has expanded passwordless authentication capabilities with new passkeys support. Now, CyberArk Identity customers can accelerate passwordless adoption and reduce cybersecurity risk by enabling the use of passkeys to easily access apps ...
When too much subjectivity is mixed into risk assessment, it can produce a risk picture that is not an accurate representation of reality.
The post Humans Are Notoriously Bad at Assessing Risk appeared first on SecurityWeek.
Cybercriminals hacked into the Kansas court system, stole sensitive data and threatened to post it on the dark web in a ransomware attack that has hobbled access to records.
The post Kansas Officials Blame 5-Week Disruption of Court System on ...
Microsoft has announced a new bug bounty program aimed at unearthing vulnerabilities in Defender-related products and services, and is offering participants the possibility to earn up to $20,000 for the most critical bugs. The Microsoft Defender ...
ENow releases its App Governance Accelerator software to help organizations get control and remain in control of their Microsoft Entra ID apps. This product enables companies to understand their current security posture, define actionable areas ...
Administrators are urged to patch the recent CitrixBleed NetScaler vulnerability as LockBit starts exploiting it.
The post Citrix, Gov Agencies Issue Fresh Warnings on CitrixBleed Vulnerability appeared first on SecurityWeek.
Coincover has joined forces with Utila, an enterprise-grade crypto operations platform. This strategic partnership brings together Coincover’s renowned protection solutions and Utila’s secure, non-custodial wallet infrastructure. The Utila ...
Earlier in the month I had the chance to attend OneCon, SentinelOne’s first ever customer conference in Boca Raton, Florida. This event was a pleasure to be at, not least as the Florida weather in November is considerably better than what ...
We are thrilled to introduce another powerful way to add software supply chain security to your security strategy. Beginning November 20, ReversingLabs software supply chain security will be available directly through AWS Marketplace, improving ...