Application Security News and Articles


Adversaries Are Using Automation. Software Vendors Must Catch Up

Attackers are using automation to escalate their attacks. Here’s why and how you can use automation to defend your apps, software and codebase. The post Adversaries Are Using Automation. Software Vendors Must Catch Up appeared first on ...

TransUnion Denies Breach After Hacker Publishes Allegedly Stolen Data

TransUnion denies suffering a breach after a hacker publishes 3GB of data allegedly stolen from the credit reporting firm. The post TransUnion Denies Breach After Hacker Publishes Allegedly Stolen Data appeared first on SecurityWeek.

Legit Security Raises $40 Million in Series B Financing

Legit Security raises $40 million in a Series B funding round led by CRV to help organizations protect the software supply chain from attacks The post Legit Security Raises $40 Million in Series B Financing appeared first on SecurityWeek.

Vague in the Hague: Who Is Behind the ICC Data Breach?

The International Criminal Court (ICC) in The Hague, one of the world’s most prominent institutions dealing with war crimes, has reported a breach in its computer system this week.  The ICC detected unusual activity on its computer network, ...

Cisco to acquire Splunk in deal valued at $28 billion

Cisco and Splunk announced a definitive agreement under which Cisco intends to acquire Splunk for $157 per share in cash, representing approximately $28 billion in equity value. Upon close of the acquisition, Splunk President and CEO Gary Steele ...

OneLayer expands its private cellular network security solutions

OneLayer announced the expansion of its private cellular network security solutions to encompass the areas of operations and asset management, leveraging the same cyber-related capabilities to provide more value for additional stakeholders in the ...

How Threat Hunting can Strengthen Your Cybersecurity Posture

Threat hunting allows organizations to delve deeper into their networks, identifying hidden threats that traditional security measures might miss. The post How Threat Hunting can Strengthen Your Cybersecurity Posture appeared first on Security ...

GitLab Releases Urgent Security Updates for Critical Flaw

GitLab is rolling out security patches that fix a bug that could let attackers leverage scheduled security scan policies to run pipelines as an arbitrary user. Bad actors exploiting the flaw could pass themselves off as a user, enabling them to ...

AWS Security Hub Integration | Contrast Security

In the world of incident response, you need the right information, at the right time, and you need it where you want to consume it — not tucked into the guts of tools that may have different silos based on who’s administering them.  The post ...

Cisco Boosting Cybersecurity Capabilities With $28 Billion Splunk Acquisition

Cisco has entered into a definitive agreement to acquire data analysis and security company Splunk in a deal valued at $28 billion.  The post Cisco Boosting Cybersecurity Capabilities With $28 Billion Splunk Acquisition appeared first on ...

Signal takes a quantum leap with E2EE protocol upgrade

Signal has announced an upgrade to its end-to-end encryption (E2EE) protocol to protect users of its popular messaging app from encryption-breaking attacks through quantum computers. Getting ready for quantum computing “Quantum computing ...

David Koenig joins Delinea as CIO

Delinea announced that David Koenig has joined the company as Chief Information Officer (CIO). Koenig assumes leadership of Delinea’s IT strategy and operations, including the company’s infrastructure, business applications, and ...

How to Protect Sensitive Data in Documents: A Comprehensive Guide

To fortify data security within documents, employ approaches like document classification, content copy-paste controls, LeaksID invisible labels, encryption for safeguarding sensitive information. The post How to Protect Sensitive Data in ...

Telecom firms hit with novel backdoors disguised as security software

Researchers have unearthed new backdoors leveraged to maintain long-term access in the networks of telecom firms in the Middle East. HTTPSnoop and PipeSnoop – as the two implants have been dubbed by Cisco Talos researchers – have been ...

Atlassian Security Updates Patch High-Severity Vulnerabilities

Atlassian has released patches for multiple high-severity vulnerabilities in Jira, Confluence, Bitbucket, and Bamboo products. The post Atlassian Security Updates Patch High-Severity Vulnerabilities appeared first on SecurityWeek.

Car Cybersecurity Study Shows Drop in Critical Vulnerabilities Over Past Decade

An automotive cybersecurity study shows that critical-risk vulnerabilities have decreased in the past decade. The post Car Cybersecurity Study Shows Drop in Critical Vulnerabilities Over Past Decade appeared first on SecurityWeek.

Awards Season Never Stops at Salt!

We’re entering a new season of fall, but here at Salt, it seems like it’s always awards season! We continue to receive accolades for the Salt Security API Protection Platform – all year round! This time we have been honored with the “Best ...

Gaming, Financial Services Apps Under Attack

Malicious actors are targeting gaming and FinServ apps developed for both Apple iOS and the Android platform, according to Digital.ai's latest Threat Analytics Report. The post Gaming, Financial Services Apps Under Attack appeared first on ...

WatchGuard acquires CyGlass to accelerate AI-based NDR and Open XDR capabilities

WatchGuard Technologies has unveiled the acquisition of CyGlass Technology Services. CyGlass’s 100% cloud native platform utilizes advanced artificial intelligence (AI) and machine learning (ML) capabilities to deliver enterprise-class ...

UK’s New Online Safety Law Adds to Crackdown on Big Tech Companies

British lawmakers approved an ambitious but controversial new internet safety law with wide-ranging powers to crack down on digital and social media companies. The post UK’s New Online Safety Law Adds to Crackdown on Big Tech Companies appeared ...