Application Security News and Articles


NSFOCUS Launches CTEM Offerings to Mitigate Threat Exposure

NSFOCUS CTEM Offerings: A Comprehensive Solution to Enhance Your Security Posture Singapore – October 17, 2023 – NSFOCUS, a globally recognized leader in cybersecurity solutions, is pleased to announce a comprehensive suite of security ...

Unlocking the Best Practices for System Update Policy in 2023

Introduction In 2023, a robust system update policy is more crucial than ever. Cyber threats are evolving, and outdated systems are easy targets. Our infographic below charts this vital evolution. From the late ’90s to today, you’ll see why ...

The Million-Dollar Dilemma: Defending Against 3 Hidden Cloud Data Risks | Eureka Security

Businesses are embracing the potential of cloud storage and it’s only going to grow. Yet, behind the conveniences of scalability and accessibility, lurk the shadows of data loss risk. | Eureka Security The post The Million-Dollar Dilemma: ...

Breaking the Chain of Data Access: The Importance of Separating Human and Application Users

Data, the lifeblood of any organization, relies on the database as its beating heart. As a result, businesses invest heavily in designing and monitoring all access to it. In traditional literature, there are two types of users: administrative ...

Spooky Experiments: Building Your Own Security Research Lab

Conducting security experiments can be a thrilling journey that sometimes demands advanced tools like flash readers, and at other times, you might find yourself using tools you’d never expect, such as a humble paper plate. During this event, ...

Cisco IOS XE zero-day exploited by attackers to deliver implant (CVE-2023-20198)

A previously unknown vulnerability (CVE-2023-20198) affecting networking devices running Cisco IOS XE software is being exploited by a threat actor to take control of the devices and install an implant, Cisco Talos researchers have warned today. ...

RomCom Malware Group Targets EU Gender Equality Summit

A hacker group that continues to extend its reach from financially motivated attacks into cyber-espionage this summer targeted attendees of a gender equality conference with a pared-down version of the RomCom remote access trojan (RAT). Void ...

DEF CON 31 – Alan Meekins’ ‘Snoop On To Them, As They Snoop On To Us’

Many thanks to DEF CON 31 for publishing their terrific DefCon Conference 31 presenters content. Originating from the conference events at Caesars Forum, Flamingo, Harrah’s and Linq in Las Vegas, Nevada; via the organizations YouTube channel. ...

Is Cisco’s Acquisition of Splunk a Shade of Brilliance or Madness?

Is Cisco’s Acquisition of Splunk a Shade of Brilliance or Madness? 3 min read·Just now -- Acquiring companies in the tech space is more about defining the future and less about solving the current threats or problems. Companies acquiring ...

Account takeover data, consumer insights, and emerging trends in 2023

See findings from Sift’s Q3 2023 Digital Trust & Safety Index on account takeover data, consumer insights, and emerging trends. The post Account takeover data, consumer insights, and emerging trends in 2023 appeared first on Sift Blog. The ...

Randall Munroe’s XKCD ‘Sign Combo’

via the comic artistry and dry wit of Randall Munroe, creator of XKCD! The post Randall Munroe’s XKCD ‘Sign Combo’ appeared first on Security Boulevard.

Elon’s CSAM FAIL: Twitter Fined by Australian Govt.

Straya strikes back: Musk’s mob declines to answer questions, breaking law dunundah. The post Elon’s CSAM FAIL: Twitter Fined by Australian Govt. appeared first on Security Boulevard.

Microsoft Launches an AI Bug Bounty Program

As Microsoft aggressively integrates AI into its broad portfolio of products and services, the IT giant now is looking for help to ensure they are free of vulnerabilities. The company this month unveiled a new bug bounty program that will pay ...

DEF CON 31 – Alessandro Magnosi’s, Arash Parsa’s, Athanasios Tserpelis’ – ‘StackMoonwalk’

Many thanks to DEF CON 31 for publishing their terrific DefCon Conference 31 presenters content. Originating from the conference events at Caesars Forum, Flamingo, Harrah’s and Linq in Las Vegas, Nevada; via the organizations YouTube channel. ...

Protecting the EU’s critical infrastructure from cyberattacks in a changing environment

The critical infrastructure is commonly defined as the systems and networks that provide basic services... The post Protecting the EU’s critical infrastructure from cyberattacks in a changing environment appeared first on Entrust Blog. The post ...

Signal Pours Cold Water on Zero-Day Exploit Rumors

Privacy-focused messaging firm Signal is pouring cold water on widespread rumors of a zero-day exploit in its popular encrypted chat app. The post Signal Pours Cold Water on Zero-Day Exploit Rumors appeared first on SecurityWeek.

Zyxel Networks introduces 22Gbps WiFi 7 access point for MSPs and SMBs

Zyxel Networks launched its first WiFi 7 access point for managed service providers (MSPs) and small- to medium-sized businesses (SMBs). Zyxel’s WBE660S WiFi 7 BE22000 Triple-Radio NebulaFlex Pro Access Point provides enterprise-grade ...

More Aggressive Time-to-Exploit Vulnerability Trends Affect Oracle and SAP Security Too

More Aggressive Time-to-Exploit Vulnerability Trends Affect Oracle and SAP Security Too ltabo Mon, 10/16/2023 - 13:49 On September 28th, Mandiant published their Time-To-Exploit trends report, including several very insightful stats covering ...

Compromised Skype accounts deliver DarkGate malware to employees

A threat actor is using compromised Skype accounts to deliver the DarkGate malware to target organizations, Trend Micro researchers have warned. “Versions of DarkGate have been advertised on Russian language forum eCrime since May 2023. ...

Survey Sees Shift to Passwordless Authentication Accelerating

A survey of 1,005 IT decision-makers published today found 89% expected their organizations to use passwords for less than 25% of logins within five years. The post Survey Sees Shift to Passwordless Authentication Accelerating appeared first on ...