Application Security News and Articles


Palo Alto Networks to acquire Talon Cyber Security

Palo Alto Networks has entered into a definitive agreement to acquire Talon Cyber Security, a pioneer of Enterprise Browser technology. Talon’s Enterprise Browser provides a solution that, combined with Prisma SASE, will enable users to ...

Beyond Identity launches Okta Defense Kit to identify and prevent security vulnerabilities

Beyond Identity released the Okta Defense Kit, a duo of two preventative tools to help security and identity professionals identify and prevent security vulnerabilities, including those that contributed to recent breaches of the identity ...

API World 2023: Bringing together API, AI, and Secrets security

API World 2023 was all about sharing insights on best practices, accounting for all your assets, and the importance of AI and API cybersecurity in an API-driven world. The post API World 2023: Bringing together API, AI, and Secrets security ...

Domain of Thrones: Part II

Written by Nico Shyne & Josh Prager Introduction Part II In the first installment of “Domain of Thrones,” we meticulously explored an array of six distinctive domain persistence techniques: Credential Theft on the Domain Controller ...

MITRE partners with Microsoft to address generative AI security risks

MITRE and Microsoft have added a data-driven generative AI focus to MITRE ATLAS, a community knowledge base that security professionals, AI developers, and AI operators can use as they protect AI-enabled systems. This new framework update and ...

Authentication Systems Decoded: The Science Behind Securing Your Digital Identity

Cybersecurity is a continuous journey, but with solid authentication systems, this trip can be safer for everyone on board. The post Authentication Systems Decoded: The Science Behind Securing Your Digital Identity appeared first on Security ...

Palo Alto to Acquire Talon, Intensifying Competition in Cloud Data Security 

Technology powerhouse Palo Alto Networks is officially on a billion-dollar shopping spree in the cloud data security space. The post Palo Alto to Acquire Talon, Intensifying Competition in Cloud Data Security  appeared first on SecurityWeek.

Red Hat Device Edge ensures consistency across edge and hybrid cloud deployments

Red Hat has introduced Red Hat Device Edge, which offers a consistent platform designed for resource-constrained environments that necessitate small form-factor computing at the device edge. This includes Internet of Things (IoT) gateways, ...

DEF CON 31 – James Horseman’s, Zach Hanley’s ‘War Stories – New Isn’t Always Novel Grep Your Way To $20K At Pwn2Own’

Many thanks to DEF CON 31 for publishing their terrific DefCon Conference 31 presenters content. Originating from the conference events at Caesars Forum, Flamingo, Harrah’s and Linq in Las Vegas, Nevada; via the organizations YouTube channel. ...

A Facebook Tagging Scam

I’ve been seeing an unpleasant scam attack being spread via a friend’s account today: I think from a cloned rather than hacked account, but I can’t be sure. 1. If you see a link to an article that apparently describes how Elon Musk is going ...

Wing Simulator enables developers to build and test Kubernetes applications

Wing Cloud, the company behind the open source programming language Winglang that works across all clouds, enhances their container support with the ‘Wing Simulator’ that enables developers to build and test their containerized applications ...

RedSense Compromised Credential Services 2.0 helps users prevent future incidents

RedSense released RedSense Compromised Credential Services 2.0. The new services include RedSense Credential Alert and RedSense Credential Investigator. RedSense has pioneered the use of AI to optimize stolen credential discovery on the dark web ...

EB Control as a Solution to Controlled Unclassified Information (CUI) Management

Introduction In an era defined by the relentless pursuit of data security and privacy, the need for innovative solutions to protect Controlled Unclassified Information (CUI) has never been greater.  As […] The post EB Control as a Solution to ...

American Airlines Pilot Union Recovering After Ransomware Attack

The Allied Pilots Association is restoring its systems after a file-encrypting ransomware attack. The post American Airlines Pilot Union Recovering After Ransomware Attack appeared first on SecurityWeek.

Cyera Adds Automated Remediation Capability to DSPM Platform

Cyera's data security platform now includes the ability to employ tags to automatically apply cybersecurity policies to protect data. The post Cyera Adds Automated Remediation Capability to DSPM Platform appeared first on Security Boulevard.

API Security for Mobile Apps: Key Considerations

Mobile applications have become an integral part of our daily lives, offering convenience, entertainment, and productivity. Behind the…Continue reading on Medium »

API Security for Mobile Apps: Key Considerations

Mobile applications have become an integral part of our daily lives, offering convenience, entertainment, and productivity. Behind the…Continue reading on Medium »

An Analysis: 3 Breaches and the Role of Cloud Permissions

Good security has long been about creating a barrier to entry. It’s been about ‘keeping them out.’ The spotlight, attention, and budget, has been dedicated to that pivotal moment – whether the perimeter is breached or not. This approach ...

Okta breach post mortem reveals weaknesses exploited by attackers

The recent breach of the Okta Support system was carried out via a compromised service account with permissions to view and update customer support cases. “During our investigation into suspicious use of this account, Okta Security ...

Testing with OpenAPI Specifications

The 2023 SANS Survey on API Security (Jun-2023) found that less than 50 percent of respondents have API security testing tools in place. Even fewer (29 percent) have API discovery tools. Wallarm delivers both these capabilities via our single, ...