Application Security News and Articles


Cyber Week 2023 & The Israel National Cyber Directorate Presents – Transportation Cybersecurity Summit

Many thanks to Israel’s Tel Aviv University for publishing their presenter’s tremendous Cyber Week 2023 security content on the Tel Aviv University’s TAUVOD YouTube channel. Permalink The post Cyber Week 2023 & The Israel National ...

CISA Rolls Out a HBOM Framework to Secure Hardware Components

The federal government for the past few years has focused on protecting the software supply chain in the wake of such high-profile incidents as the SolarWinds hack in 2020 and the Log4j vulnerability a year later. A key part of that has been ...

Is that how it works? Hacking and scamming in popular TV shows

We like a good hacker story—and like the screens we watch them on, these stories come in wide array of shapes and sizes.   The post Is that how it works? Hacking and scamming in popular TV shows appeared first on Security Boulevard.

Canadian Cybersecurity Program to Align with CMMC Framework

The Government of Canada recently announced a certification program for its defense contractors that will align with the US Department of Defense (DoD) Cybersecurity Maturity Model Certification (CMMC) program.   Similar to the CMMC program, the ...

How CNAPP Is Taking Cloud Security to the Next Level

Cloud computing has revolutionized the way businesses operate, offering agility, scalability, and flexibility, allowing these companies to quickly set up and grow comfortably without needing to heavily invest time and resources. However, these ...

Types of Intrusion Detection Systems: What You Need to Know in 2023

Introduction In an era where cyber threats are not just frequent but also increasingly sophisticated, businesses can no longer afford to be complacent about their cybersecurity measures. According to Statista, the number of data breaches in the ...

Randall Munroe’s XKCD ‘Book Podcasts’

via the comic artistry and dry wit of Randall Munroe, maker of XKCD! Permalink The post Randall Munroe’s XKCD ‘Book Podcasts’ appeared first on Security Boulevard.

Age Is More Than a Number: Age Verification and Regulatory Compliance for Your Business

In a non-digital world, checking someone’s age has its challenges. People can do a poor job of validating a high-quality fake ID. And online, the process is even more complex. In a world increasingly reliant on digital interactions and ...

AWS Using MadPot Decoy System to Disrupt APTs, Botnets

AWS says an internal threat intel decoy system called MadPot has successfully trapped nation state-backed APTs like Volt Typhoon and Sandworm. The post AWS Using MadPot Decoy System to Disrupt APTs, Botnets appeared first on SecurityWeek.

Generative AI Startup Nexusflow Raises $10.6 Million

Nexusflow scores funding to build an open-source LLM that can deliver high accuracy when retrieving data from multiple security sources. The post Generative AI Startup Nexusflow Raises $10.6 Million appeared first on SecurityWeek.

In Other News: RSA Encryption Attack, Meta AI Privacy, ShinyHunters Hacker Guilty Plea

Noteworthy stories that might have slipped under the radar: new RSA encryption attack, Meta’s AI privacy safeguards, and ShinyHunters hackers’ guilty plea.  The post In Other News: RSA Encryption Attack, Meta AI Privacy, ShinyHunters Hacker ...

Cyber Week 2023 & The Israel National Cyber Directorate Presents – Academic Perspectives on Cybersecurity Challenges

Many thanks to Israel’s Tel Aviv University for publishing their presenter’s tremendous Cyber Week 2023 security content on the Tel Aviv University’s TAUVOD YouTube channel. Permalink The post Cyber Week 2023 & The Israel National ...

Researchers Extract Sounds From Still Images on Smartphone Cameras

A group of academic researchers has devised a technique to extract sounds from still images captured using smartphone cameras with rolling shutter and movable lens structures. The movement of camera hardware, such as the Complementary ...

Beyond Risk Mitigation: The Business Benefits of Strong Cybersecurity

In the first half of 2022 in the US there were nearly 1,400 publicly reported data breaches impacting an estimated 157 million victims. That in itself would seem to be a pretty effective advert for revisiting and enhancing data security strategy. ...

National Security Agency is Starting an Artificial Intelligence Security Center

The NSA is starting an artificial intelligence security center — a crucial mission as AI capabilities are increasingly acquired, developed and integrated into U.S. defense and intelligence systems. The post National Security Agency is Starting ...

Your Polaris Questions: Open Source Configuration Validation for K8s

There are many ways to configure Kubernetes and the workloads that it runs, and unfortunately, many of them are dangerous. It's far too easy to introduce problems related to security, efficiency, or reliability, which is why Kubernetes ...

Malicious ads creep into Bing Chat responses

Users of Bing Chat, the GPT-4-powered search engine Microsoft introduced earlier this year, are being targeted with ads leading to malware. According to Malwarebytes researchers, searching for Advanced IP Scanner (network-scanning software) or ...

Q3 2023 Analytic Co-Pilot Use Cases

As part of the Subscription Services team, the consultants delivering the Analytic Co-Pilot Service, have come together to share Q3 2023 security use cases we have worked on in our own internal environments, as well as with LogRhythm customers. ...

Federal Shutdown Raises Cybersecurity Risks, Experts Warn

The looming risk of a shutdown of the federal government is raising alarms within the cybersecurity community. The post Federal Shutdown Raises Cybersecurity Risks, Experts Warn appeared first on Security Boulevard.

Protecting Your Software Supply Chain: Understanding Typosquatting and Dependency Confusion Attacks

Typosquatting and dependency confusion are two common tactics used by hackers to exploit open-source package repositories. Understand how these attacks work and discover preventive measures to secure your infrastructure. The post Protecting Your ...