Application Security News and Articles


Best Practices for Cloud Application Security Testing

Ensuring robust cloud application security within a cloud environment is a vital component of any cloud ecosystem. It empowers businesses to enhance their agility while mitigating potential security risks. Essential cloud application security ...

New infosec products of the week: October 13, 2023

Here’s a look at the most interesting products from the past week, featuring releases from Appdome, Flexxon, Fortanix, Fortinet, SailPoint, and Vanta. Flexxon Xsign protects sensitive data reserved only for authorized personnel With the use of ...

Quantum risk is real now: How to navigate the evolving data harvesting threat

In an era where data security is paramount, the recent revelations about firmware backdoors implanted by Chinese government-backed hackers serve as a stark reminder of the evolving threat landscape. BlackTech is infiltrating routers to gain ...

Stronger ransomware protection finally pays off

60% of companies are ‘very’ to ‘extremely’ concerned about ransomware attacks, according to latest research from Hornetsecurity. Businesses acknowledge ransomware risk Hornetsecurity revealed that 92.5% businesses are ...

Introducing the book: Irreducibly Complex Systems

In this Help Net Security video interview, David Hunt, CTO at Prelude, discusses his book – Irreducibly Complex Systems: An Introduction to Continuous Security Testing. Continuous security testing (CST) is a new strategy for validating ...

AI-enabled bots can solve CAPTCHAs faster than humans

Companies are losing revenue in the fight against malicious bot attacks, according to survey by Kasada. Despite spending millions of dollars on traditional bot management solutions, companies are still financially impacted by bot attacks. 38% of ...

Unlocking the Future of Application Security: Evolution from ASOC to ASPM

Application Security Orchestration and Correlation (ASOC) used to be positioned as a leading edge solution to safeguard an organization's applications, providing a strategic framework that integrates various AppSec tools and processes to more ...

What IT Orgs Need to Know About the Growth of AI

Discover how the growth of AI impacts IT organizations — the GOOD (improved detections), the BAD (phishing, social engineering), & the UGLY (WormGPT, FraudGPT). The post What IT Orgs Need to Know About the Growth of AI first appeared on ...

Useful, Challenging, Ineffectual: Three Ways to Look at DPI

Martin Roesch explains the situations where DPI is still useful, where it is costly, and where it is ineffective, and how Netography Fusion works as a 100% SaaS platform with DPI to achieve more effective outcomes with a lower cost to the budget. ...

Why The US Government Continues to Push for Software Supply Chain Security

What goals arose from the OpenSFF summit and what do they tell us about the US government’s stance on software supply chain security? The post Why The US Government Continues to Push for Software Supply Chain Security appeared first on ...

DEF CON 31 – David Leadbeater’s ‘Terminally Owned – 60 Years Of Escaping’

Many thanks to DEF CON 31 for publishing their terrific DefCon Conference 31 presenters content. Originating from the conference events at Caesars Forum, Flamingo, Harrah’s and Linq in Las Vegas, Nevada; via the organizations YouTube channel. ...

The No-Code Fantasy: What Football Strategy Can Teach Us About Decision Making

The post The No-Code Fantasy: What Football Strategy Can Teach Us About Decision Making appeared first on AI Enabled Security Automation. The post The No-Code Fantasy: What Football Strategy Can Teach Us About Decision Making appeared first on ...

Arkose Accelerate AI + Cybersecurity: Event Recap and On-Demand Encore

In a world where the lines between reality and technology are becoming increasingly blurred, it’s crucial to stay at the forefront of the ever-evolving landscape of security and bot management. Our recent virtual and in-person event, Arkose ...

How to Banish Heroes from Your SOC?

This blog was born from two parents: my never-finished blog on why relying on heroism in a Security Operations Center (SOC) is bad and Phil Venables “superb+” blog titles “Delivering Security at Scale: From Artisanal to Industrial.” BTW, ...

How manufacturing best practices can improve open source consumption and software supply chains

The biggest problem facing software organizations today is an inability to track, monitor, and improve the usage of open source software. This isn’t about security alone. From DevOps to DevSecOps, there are fundamental principles that the best ...

Hackers Still Abusing LinkedIn Smart Links in Phishing Attacks

Email security firm Cofense in 2022 uncovered a phishing campaign that abused LinkedIn’s Smart Links feature to redirect unsuspecting victims to malicious websites, another example of bad actors using a trusted source to bypass security ...

The evolution of app sec: Getting off the scan-and-fix hamster wheel remains elusive

Over the last 20 years, cybersecurity has changed a lot, but one thing has remained resistant to change: scanning resources for defects and fixing them. Now may be the time to hop off that scan-and-fix hamster wheel, argues Chris Romeo, CEO of ...

Patient Privacy: Preventing Data Leakage in Healthcare

The healthcare industry has rapidly embraced digital technologies to enhance patient care, streamline operations, and improve communication. However, this digital transformation brings with it a significant challenge: protecting patient data. One ...

Snow Software unveils Snow Atlas upgrades for efficient SaaS management

Snow Software released new innovations available on Snow Atlas to empower customers with the intelligence to optimize growing SaaS and cloud infrastructure spend and reduce data leakage in the enterprise. The breadth of new offerings includes ...

Comic Agilé – Mikkel Noe-Nygaard, Luxshan Ratnarav – #262 – Post-Consultancy

Permalink The post Comic Agilé – Mikkel Noe-Nygaard, Luxshan Ratnarav – #262 – Post-Consultancy appeared first on Security Boulevard.