Application Security News and Articles


What CISOs Need to Know About Residential Proxy Networks

If residential proxy networks are not already on the CISO’s radar, 2023 will be the year they will need to focus on them significantly. What is a residential proxy network, and why should every security professional worry about it? These ...

TXOne Networks Edge V2 isolates security breaches

TXOne Networks announced the second generation of its Edge engine for eliminating the spread of operational technology (OT) network infections and safeguarding reliable operations. Edge V2 delivers automatic rule generation, enabling effortless ...

Cybercriminals target MS SQL servers to deliver ransomware

A cyberattack campaign is targeting exposed Microsoft SQL (MS SQL) databases, aiming to deliver ransomware and Cobalt Strike payloads. The attack campaign The attackers target exposed MS SQL servers by brute-forcing access credentials. After ...

25 Major Car Brands Get Failing Marks From Mozilla for Security and Privacy 

Mozilla has analyzed the privacy and security of 25 major car brands and found that they collect a lot of data and can share it or sell it to third parties.  The post 25 Major Car Brands Get Failing Marks From Mozilla for Security and Privacy  ...

Android Zero-Day Patched With September 2023 Security Updates 

Android’s September 2023 security update resolves a high-severity elevation of privilege vulnerability exploited in malicious attacks. The post Android Zero-Day Patched With September 2023 Security Updates  appeared first on SecurityWeek.

NTT launches Samurai XDR SaaS to strengthen detection and response capabilities across the network

NTT Security Holdings launched Samurai XDR SaaS, making their threat detection and response system accessible to organizations of all sizes for just $40 per endpoint per year. The cloud-hosted solution requires no infrastructure deployment, ...

Attorney-Client Privilege at the Border

A recent case has interesting implications for the privacy of attorney-client privileged information at the border. The post Attorney-Client Privilege at the Border appeared first on Security Boulevard.

Fasoo collaborates with Egnyte to simplify data governance

Fasoo and Egnyte announced a partnership that will allow organizations to encrypt any Egnyte-managed file and inject Egnyte permissions directly into the protected file, ensuring that governance is maintained wherever the file goes. Colter ...

Hacker Conversations: Alex Ionescu

SecurityWeek talks to Alex Ionescu, a world-renowned cybersecurity expert who has combined a career as a business executive with that of a security researcher.  The post Hacker Conversations: Alex Ionescu appeared first on SecurityWeek.

Chrome 116 Update Patches High-Severity Vulnerabilities

Google has released another weekly Chrome update, to address four high-severity vulnerabilities reported by external researchers. The post Chrome 116 Update Patches High-Severity Vulnerabilities appeared first on SecurityWeek.

3 Lessons Learned from Attacks on Okta Super Admins

Discover the latest Okta security incident, learn about identity federation abuse, and find out how to protect your Okta environment. Explore the risks and solutions. The post 3 Lessons Learned from Attacks on Okta Super Admins appeared first on ...

The Art of Deception: Unmasking Phishing and the Role of Social Engineering in Cyber Threats

In cybersecurity, one concept stands at the crossroads of technology and human behavior – social engineering. This strategy exploits the human element, manipulating people into divulging confidential information, often without them even ...

AtlasVPN to Patch IP Leak Vulnerability After Public Disclosure

AtlasVPN developers are working on a patch for an IP leak vulnerability after a researcher publicly disclosed the flaw due to being ignored. The post AtlasVPN to Patch IP Leak Vulnerability After Public Disclosure appeared first on SecurityWeek.

Cloudera partners with AWS to help organizations accelerate their modernization to the cloud

Cloudera announced that it has signed a Strategic Collaboration Agreement (SCA) with AWS. This agreement strengthens Cloudera’s relationship with AWS and demonstrates their commitment to accelerate and scale cloud native data management and ...

GUEST ESSAY: Securing your cryptocurrency — best practices for Bitcoin wallet security

Over time, Bitcoin has become the most widely used cryptocurrency in the world. Strong security measures become increasingly important as more people use this digital currency. Related: Currency exchange security issues For managing and keeping ...

MITRE Caldera for OT now available as extension to open-source platform

MITRE Caldera for OT is now publicly available as an extension to the open-source Caldera platform, allowing security teams to run automated adversary emulation exercises that are specifically focused on threats to operational technology (OT). ...

Emerging threat: AI-powered social engineering

Social engineering is a sophisticated form of manipulation but, thanks to AI advancements, malicious groups have gained access to highly sophisticated tools, suggesting that we might be facing more elaborate social engineering attacks in the ...

Attributes and Types of Security Testing

Security testing is conducted to unearth vulnerabilities in the applications. Learn the different types and attributes of security testing. The post Attributes and Types of Security Testing appeared first on Indusface. The post Attributes and ...

Cyber talent gap solutions you need to know

90% of consumers across the US and UK are concerned about cybersecurity’s future if students aren’t exposed to the field at an earlier age, according to ThreatX. 88% are worried that today’s talent shortage will negatively impact protection ...

Compliance budgets under strain as inflation and workload grow

Compliance leaders are facing pressure to make the most of existing resources despite economic challenges and increased workload volume and complexity, according to Gartner. To face these challenges, leaders must address three crucial compliance ...