Application Security News and Articles
It’s no secret that organizations around the world are struggling to keep their most prized assets under lock and key. One report claims2022 was a near-record year in the US for data breaches and incident reports have already soared 114% ...
Small electric utilities in the US offered $9 million as part of a competition whose goal is to help them boost their cybersecurity posture.
The post Energy Department Offering $9M in Cybersecurity Competition for Small Electric Utilities ...
Cybersecurity firm Group-IB in 2019 uncovered a Russia-based scam-as-a-service that used fake classified ads and social engineering methods to convince people to buy goods or services that didn’t actually exist and by paying transferring money ...
In the ever-evolving IT landscape, the Configuration Management Database (CMDB) is a critical foundation for organizations seeking to streamline operations, inform decision-making, and enhance service delivery. However, the path to CMDB success ...
PagerDuty introduced AI-generated runbooks in early access, as well as new analytics capabilities for the PagerDuty Operations Cloud. Using PagerDuty Runbook Automation from the Operations Cloud, customers replace manual procedures with automated ...
Cybersecurity veterans discuss the challenges large enterprises in the Fortune 1000 face in scaling security monitoring and threat detection across big data environments.
The post Webinar: Achieving Security at Big Data Scale – Why ...
A vulnerability in the All-in-One WP Migration plugin’s extensions exposes WordPress websites to attacks leading to sensitive information disclosure.
The post Vulnerability in WordPress Migration Plugin Exposes Websites to Attacks appeared ...
IBM and Salesforce announced a collaboration to help businesses worldwide across industries accelerate their adoption of AI for CRM. Together, the two companies support clients to revolutionize customer, partner and employee experiences, while ...
Russia's Turla cyberespionage group is now recognized as one of the world’s most dangerous cybersecurity threats.
The post Russia’s ‘Turla’ Group – A Formidable Cyberespionage Adversary appeared first on Security Boulevard.
Apple is inviting security researchers to apply for the 2024 iPhone Security Research Device Program (SRDP) to receive hackable iPhones.
The post Apple Preparing iPhone 14 Pro Phones for 2024 Security Research Device Program appeared first on ...
Five Eyes report details 'Infamous Chisel' malware used by Russian state-sponsored hackers to target the Ukrainian military’s Android devices.
The post Five Eyes Report: New Russian Malware Targeting Ukrainian Military Android Devices ...
In today’s interconnected world, the cybersecurity landscape has grown increasingly complex, especially for critical industries such as oil and gas. The rise of ransomware attacks targeting this sectors has raised serious concerns about the ...
One of the great things about the blockchain and cryptocurrency is the fact that it operates outside the commercial banking system. Unfortunately, this means that when cryptocurrency is stolen (or, more accurately, when it is transferred without ...
Since March 2023 (and possibly even earlier), affiliates of the Akira and LockBit ransomware operators have been breaching organizations via Cisco ASA SSL VPN appliances. “In some cases, adversaries have conducted credential stuffing ...
Cross-Site Scripting (XSS) attacks are injection attacks in which malicious scripts are injected into otherwise trustworthy and innocuous websites. XSS attacks occur when an attacker uses a web application to send malicious code to a particular ...
Splunk has released patches for multiple high-severity vulnerabilities impacting Splunk Enterprise and IT Service Intelligence.
The post Splunk Patches High-Severity Flaws in Enterprise, IT Service Intelligence appeared first on SecurityWeek.
Although a school’s first priority is to educate students, it’s also of utmost importance to maintain a safe and supportive learning environment. In some cases, it’s even a legal responsibility. However, the subject of school safety and ...
Listen now (38 mins) | Season two, episode 15: We talk ZT History and API security with the godfather of Zero Trust, Dr Zero Trust, and Richard Bird.
The post Adopting Zero Trust: APIs and a History Lesson appeared first on Security Boulevard.
Axio announced a new joint initiative with Cyentia Institute, a research and data science firm with a mission to advance knowledge in the cybersecurity industry. Together, Axio and Cyentia will deliver Cyentia’s cyber incident analysis to Axio ...
Apple is inviting security researchers to apply for the Apple Security Research Device Program (SRDP) again, to discover vulnerabilities and earn bug bounties. Apple started the Apple SRDP in 2019. In the intervening years, participating ...