Application Security News and Articles


Securing Your Smart Home: How to Safeguard Your Home Network

In today’s interconnected world, our homes are more than just a physical space; they’ve become digital ecosystems. From smart TVs and speakers to cameras and doorbells, our homes are brimming with internet-enabled devices that make our lives ...

Applying AI to API Security

While there is quite a bit of buzz and hype around AI, it is a technology that can add tremendous value to security programs. The post Applying AI to API Security appeared first on SecurityWeek.

The Evolving Work of the CISO in 2024

The challenges, responsibilities, and the modern cybersecurity battlefield for CISOs in 2024  I speak to many cybersecurity professionals, and if there’s one ongoing and pervasive concern they all highlight about the nature of their role, ...

Curl project squashes high-severity bug in omnipresent libcurl library (CVE-2023-38545)

Curl v8.4.0 is out, and fixes – among other things – a high-severity SOCKS5 heap buffer overflow vulnerability (CVE-2023-38545). Appropriate patches for some older curl versions have been released, too. Preparation for the security ...

Cybersecurity Awareness Month: The Risks of Ignoring the Cybersecurity Skills Gap

This Cybersecurity Awareness Month, join GuidePoint Security for A Voyage Beyond the Horizon, a speculative exploration of possible scenarios that […] The post Cybersecurity Awareness Month: The Risks of Ignoring the Cybersecurity Skills Gap ...

CISA Warns of Attacks Exploiting Adobe Acrobat Vulnerability 

CISA has added five bugs to its Known Exploited Vulnerabilities catalog, including the recent WordPad, Skype, and HTTP/2 zero-days. The post CISA Warns of Attacks Exploiting Adobe Acrobat Vulnerability  appeared first on SecurityWeek.

ICS Patch Tuesday: Siemens Ruggedcom Devices Affected by Nozomi Component Flaws

ICS Patch Tuesday: Siemens and Schneider Electric release over a dozen advisories addressing more than 40 vulnerabilities. The post ICS Patch Tuesday: Siemens Ruggedcom Devices Affected by Nozomi Component Flaws appeared first on SecurityWeek.

15 free Microsoft 365 security training modules worth your time

Microsoft 365 is a cloud-based productivity suite. Beyond just tools like Word and Excel, it integrates productivity applications with cloud functionalities, device administration, and enhanced security, all within a unified experience. Managing ...

How cyber fusion is helping enterprises modernize security operations

In this Help Net Security video, Anuj Goel, CEO at Cyware, explains how cyber fusion is helping enterprises modernize their security operations and turn their SOC from reactive to proactive. The post How cyber fusion is helping enterprises ...

Endpoint malware attacks decline as campaigns spread wider

In Q2 2023, 95% of malware now arrives over encrypted connections, endpoint malware volumes are decreasing despite campaigns growing more widespread, ransomware detections are declining amid a rise in double-extortion attacks, and older software ...

Cloud security and functionality: Don’t settle for just one

Cloud security is important to you, but that doesn’t mean you’re willing to trade security for functionality. You need security to work for you. Whatever cloud security resources you’re using must be compatible with the services you use to ...

Why Smart SOAR is the Best SOAR for Darktrace

The need for integrated cybersecurity solutions has never been more pressing. With the growing complexity of cyber threats, having siloed security tools is no longer an option. This is where the synergy between Smart SOAR and Darktrace comes into ...

Microsoft Blames Nation-State Threat Actor for Confluence Zero-Day Attacks

Microsoft says an APT group tracked as Storm-0062 has been hacking Confluence installations since mid-September, three weeks before Atlassian’s disclosure. The post Microsoft Blames Nation-State Threat Actor for Confluence Zero-Day Attacks ...

Patch Tuesday, October 2023 Edition

Microsoft today issued security updates for more than 100 newly-discovered vulnerabilities in its Windows operating system and related software, including four flaws that are already being exploited. In addition, Apple recently released emergency ...

Unlock SOAR’s Potential This Cybersecurity Awareness Month

As we celebrate Cybersecurity Awareness Month in 2023, the importance of fortifying our digital defenses against ever-evolving threats cannot be overstated. This year, the focus revolves around three critical pillars: improving authentication, ...

How California’s New Emissions Disclosure Law Will Affect Data Centers

California has recently passed a new law that requires large businesses to disclose their direct and indirect greenhouse gas (GHG) emissions. This law, which is the most comprehensive of its kind in the nation, will affect more than 5,300 ...

Data sprawl: why application access controls as a security strategy doesn’t work

As enterprises maintain more and more data, there is a greater need to ensure that sensitive data is protected. Privacy regulations are increasing which is fantastic for individuals who want to keep their data secure, but this places a burden on ...

Patch Tuesday Update – October 2023

The post Patch Tuesday Update - October 2023 appeared first on Digital Defense. The post Patch Tuesday Update – October 2023 appeared first on Security Boulevard.

Safeguarding the Travel and Hospitality Industry from SMS Toll Fraud

Attackers are using bots to scale up SMS toll fraud, resulting in massive overall telecom bills for travel and hospitality companies. To protect their businesses, these companies must deploy smart bot management solutions before bots can reach ...

DEF CON 31 – Perri Adams’s & Panel: Michael Sellitto’s, Heather Adkins’, Vijay Bolina’s, Dave Weston’s, Matt Knight’s, Omkhar Arasara’s ‘DARPA AI Cyber Challenge Announcement’

Many thanks to DEF CON 31 for publishing their terrific DefCon Conference 31 presenters content. Originating from the conference events at Caesars Forum, Flamingo, Harrah’s and Linq in Las Vegas, Nevada; via the organizations YouTube channel. ...