Application Security News and Articles


More iOS Zero Days, More Mercenary Spyware — This Time: Cytrox Predator

Apple Scrambled to Fix 3 More CVEs: Egyptian opposition presidential candidate Ahmed Eltantawy targeted “by the government. The post More iOS Zero Days, More Mercenary Spyware — This Time: Cytrox Predator appeared first on Security Boulevard.

Randall Munroe’s XKCD ‘Urban Planning Opinion Progression’

via the comic artistry and dry wit of Randall Munroe, maker of XKCD! Permalink The post Randall Munroe’s XKCD ‘Urban Planning Opinion Progression’ appeared first on Security Boulevard.

Takeaways for Businesses in the Rapidly Evolving Data Security and Privacy Landscape

Data breaches are on the rise, but so are customer expectations. Learn how to safeguard your business and build trust. The post Takeaways for Businesses in the Rapidly Evolving Data Security and Privacy Landscape appeared first on Security Boulevard.

What is digital trust, and why is it at risk

Digital trust is the confidence that individuals and organizations have in the security, privacy, and ethical practices of digital technologies. The post What is digital trust, and why is it at risk appeared first on Sift Blog. The post What is ...

Cyber Week 2023 & The Israel National Cyber Directorate Presents – Securing the ICT Supply Chain from Cybersecurity Threats

Many thanks to Israel’s Tel Aviv University for publishing their presenter’s tremendous Cyber Week 2023 security content on the Tel Aviv University’s TAUVOD YouTube channel. Permalink The post Cyber Week 2023 & The Israel National ...

The ROI of Microsegmentation

The ROI of microsegmentation is undeniable for optimal business security investment The complexity, frequency, and eventual costs of cybersecurity threats are growing exponentially. For businesses, prioritizing robust security strategies such as ...

SCCM Hierarchy Takeover

One Site to Rule Them All tl;dr: There is no security boundary between sites in the same hierarchy. When an administrative user is granted a security role in SCCM, such as Full Administrator or Infrastructure Administrator, in any primary site, ...

Data Security Posture Management: What’s Fact and What’s Fiction?

DSPM grants organizations full visibility over the security posture of cloud data assets and sensitive data and is extremely valuable to today’s security teams. The post Data Security Posture Management: What’s Fact and What’s Fiction? ...

Stealthy APT Gelsemium Seen Targeting Southeast Asian Government

A stealthy APT known as Gelsemium has been observed targeting a government entity in Southeast Asia for persistence and intelligence collection. The post Stealthy APT Gelsemium Seen Targeting Southeast Asian Government appeared first on SecurityWeek.

Nigerian Pleads Guilty in US to Million-Dollar BEC Scheme Role

Kosi Goodness Simon-Ebo, a Nigerian national, pleaded guilty in a US court to his involvement in a million-dollar BEC fraud scheme. The post Nigerian Pleads Guilty in US to Million-Dollar BEC Scheme Role appeared first on SecurityWeek.

Enhance Cloud Security With a Cloud Access Security Broker (CASB)

Cloud access security brokers (CASBs) provide a robust framework for improving cloud security. The post Enhance Cloud Security With a Cloud Access Security Broker (CASB) appeared first on Security Boulevard.

Zyxel announces WiFi 6-enabled security firewalls for small- and medium-sized business networks

Zyxel Networks announced the addition of WiFi 6-enabled security firewalls to its ZyWALL USG FLEX 100 firewall series. Zyxel’s new USG FLEX 100AX Firewall supports WiFi 6 (802.11ax) to provide wired and wireless solutions that deliver holistic ...

900 US Schools Impacted by MOVEit Hack at National Student Clearinghouse

Nearly 900 US schools are impacted by the MOVEit hack at the educational nonprofit National Student Clearinghouse. The post 900 US Schools Impacted by MOVEit Hack at National Student Clearinghouse appeared first on SecurityWeek.

Qakbot Takedown Resembles Hack Back, Will Botnet, Malware Be Resurrected?

Operation 'Duck Hunt' tricked thousands of Qakbot-infected computers into downloading an FBI-made uninstaller. Can it resurrect? Only time will tell. The post Qakbot Takedown Resembles Hack Back, Will Botnet, Malware Be Resurrected? appeared ...

Amazon collaborates with Anthropic to advance generative AI

Amazon and Anthropic announced a strategic collaboration that will bring together their respective technology and expertise in safer generative AI to accelerate the development of Anthropic’s future foundation models and make them widely ...

Benchmarking Your Cyber Risk Program to the NIST Cybersecurity Framework

Benchmarking your organization against the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) is a valuable step towards improving cybersecurity posture. The NIST CSF provides comprehensive guidelines and best ...

Allegro Packets boosts analysis performance with new features and enhancements

Allegro Packets is providing network professionals with enhanced functionality with its new Release 4.1. More than 100 new features, improvements and bug fixes are included in the update, which is now available to all customers. “With ...

National Student Clearinghouse MOVEit breach impacts nearly 900 schools

US educational nonprofit organization National Student Clearinghouse (NSC) has revealed that the breach of its MOVEit server ended up affecting almost 900 colleges and universities, and resulted in the theft of personal information of their ...

Pitfalls of relying on eBPF for security monitoring (and some solutions)

By Artem Dinaburg eBPF (extended Berkeley Packet Filter) has emerged as the de facto Linux standard for security monitoring and endpoint observability. It is used by technologies such as BPFTrace, Cilium, Pixie, Sysdig, and Falco due to its low ...

Thunder Shield Security introduces Custos to help organizations identify critical vulnerabilities

Thunder Shield Security announced Custos, its next-generation scanning platform equipped with artificial intelligence and machine learning to proactively combat cyber threats and safeguard organizations. Custos streamlines cybersecurity with a ...