Application Security News and Articles


Akamai Vs. Cloudflare WAF

Akamai vs. Cloudflare WAF compared: Examine pros, cons and unique features of the leading WAF solutions. Learn why AppTrana stands out. The post Akamai Vs. Cloudflare WAF appeared first on Indusface. The post Akamai Vs. Cloudflare WAF appeared ...

September 2023 Patch Tuesday forecast: Important Federal government news

Microsoft addressed 33 CVEs in Windows 10 and 11 last month after nearly 3x that number in July. But despite the lull in CVEs, they did provide new security updates for Microsoft Exchange Server, .NET Framework, and even SQL Server, so there were ...

New infosec products of the week: September 8, 2023

Here’s a look at the most interesting products from the past week, featuring releases from CyberSaint, Ghost Security, Hornetsecurity, NTT Security Holdings, and TXOne Networks. Reaper: Open-source reconnaissance and attack proxy workflow ...

New quantum random number generator could revolutionize encryption

Digital information exchange can be safer, cheaper and more environmentally friendly with the help of a new type of random number generator for encryption developed at Linköping University. Experimental setup of the quantum random number ...

Best practices for implementing a proper backup strategy

Implementing a robust backup strategy for safeguarding crucial business data is more essential than ever. Without such a plan, organizations risk paying ransoms and incurring expenses related to investigations and lost productivity. In this Help ...

75% of education sector attacks linked to compromised accounts

69% of organizations in the education sector suffered a cyberattack within the last 12 months, according to Netwrix. Phishing and account compromise threaten the education sector Phishing and user account compromise were the most common attack ...

Unimplemented controls could derail your ESG compliance efforts

Two-thirds of organizations have not implemented environmental, social and governance (ESG) controls, and 60% do not currently perform internal ESG audits, according to a report by AuditBoard. Lack of ESG program readiness This lack of ESG ...

Detection Engineering is Painful — and It Shouldn’t Be (Part 1)

Detection Engineering is Painful — and It Shouldn’t Be (Part 1) This blog series was written jointly with Amine Besson, Principal Cyber Engineer, Behemoth CyberDefence and one more anonymous collaborator. This post is our first ...

Spoofing attacks: What they are & how to protect your business

The post Spoofing attacks: What they are & how to protect your business appeared first on Click Armor. The post Spoofing attacks: What they are & how to protect your business appeared first on Security Boulevard.

Apple Patches Actively Exploited iOS, macOS Zero-Days

Apple pushes out an urgent point-update to its flagship iOS and macOS platforms to fix a pair of security defects being exploited in the wild. The post Apple Patches Actively Exploited iOS, macOS Zero-Days appeared first on SecurityWeek.

OX Security Named 2023 SINET16 Innovator Award Winner 

PRESS RELEASE TEL AVIV, Israel and BOSTON, Massachusetts, September 7, 2023 – OX Security, the industry’s first holistic software supply chain security platform, today announced that it has been named a 2023 SINET16 Innovator Award winner.  ...

Rigged Software and Zero-Days: North Korean APT Caught Hacking Security Researchers

Google again catches a North Korean APT actor targeting security researchers with zero-days and rigged software tools. The post Rigged Software and Zero-Days: North Korean APT Caught Hacking Security Researchers appeared first on SecurityWeek.

Wallarm Presenting at BSides Albuquerque

If you’re in the Albuquerque area this Friday and/or Saturday, we hope you’re planning on going to BSides ABQ – it promises to be a fun-filled weekend of learning. The team there has pulled together an interesting set of talks covering a ...

Demystifying CPU Microcode: Vulnerabilities, Updates, and Remediation

Attacks against low-level CPU architecture popped up on most tech people’s radar after the introduction of the Spectre and Meltdown vulnerabilities were made public. Since then there have been several more vulnerabilities affecting both Intel ...

High-Profile California Bill Regulating Data Brokers Heads for Key Vote

California lawmakers later this month are expected to vote on a highly debated bill that would make it easier for residents to keep data brokers from collecting and selling their personal data, legislation that if approved could have ripple ...

BSides Buffalo 2023 – Paul Robinson – If You Build It, They Will Come – A Guide To Building A Cybersecurity Program

Many thanks to BSides Buffalo for publishing their presenter’s outstanding BSides Buffalo security content on the organizations’ YouTube channel. Permalink The post BSides Buffalo 2023 – Paul Robinson – If You Build It, They ...

Enriched Visibility: Understand Level 2 of the ARMOR Assessment

The post Enriched Visibility: Understand Level 2 of the ARMOR Assessment appeared first on Low-Code Security Automation & SOAR Platform | Swimlane. The post Enriched Visibility: Understand Level 2 of the ARMOR Assessment appeared first ...

Diving in to Day 2 Ops, Stateful Apps, & more with Kubernetes Experts

We had so many great questions about Kubernetes in the Enterprise in our recent Cloud Native Now webinar that I wanted to share more of the discussion. Mike Vizard, Chief Content Officer at Techstrong Group, Maz Tamadon, Director of Product and ...

Ransomware and the Supply Chain

This white paper discusses the increasing threat of ransomware attacks on the technology supply chain and provides insights on how organizations can protect themselves from these attacks. The supply chain is now a focal point for ransomware ...

How to safeguard your AI ecosystem: The imperative of AI/ML security assessments

The widespread use of Artificial intelligence (AI) and machine learning (ML) introduce their own security challenges; an AI/ML security assessment can help.  The post How to safeguard your AI ecosystem: The imperative of AI/ML security ...