Application Security News and Articles


Breaking the Harassment Chain: New Legislation is Empowering Citizens

Doxxing poses a severe threat to its victims, leading to harassment campaigns that can damage businesses, inflict psychological harm, or even endanger lives. Historically, few options existed for victims seeking damages after a doxxing incident. ...

Comic Agilé – Mikkel Noe-Nygaard, Luxshan Ratnarav – #257 – Bridging the Gap

via the respected Software Engineering expertise of Mikkel Noe-Nygaard as well as the lauded Software Engineering and Enterprise Agile Coaching talent of Luxshan Ratnarav at Comic Agilé! Permalink The post Comic Agilé – Mikkel ...

The Dangers of DIY Network Security Policy Management

Network security has become a top priority for enterprises to safeguard their sensitive data, protect against cyber threats, and ensure compliance with industry regulations. And rightfully so; with today’s rapidly evolving digital landscape, ...

How Protective DNS Empowers MSSPs

By Adam Lopez, Director of Solutions Engineering Strengthening Cybersecurity Defenses In the dynamic world of Managed Security Service Providers (MSSPs), the pursuit of comprehensive cybersecurity solutions takes center stage. Drawing from my own ...

In the News | 15 Advanced Cybersecurity & Web 3.0 Executives

This article was originally published in Hackernoon on 8.30.23 by The Sociable. A new breed of tech visionaries has been instrumental in driving change and delivering Web 3.0 solutions to the masses Our ever-evolving digital landscape and the ...

What is a Colocation Data Center?

Many organizations are turning to colocation as a dependable data center solution for storing mission-critical data, running applications and services, and accessing them on demand. Here, we will explore the concept of colocation data centers and ...

‘Earth Estries’ Cyberespionage Group Targets Government, Tech Sectors

Earth Estries, a cyberspy group possibly linked to China, has targeted governments and tech firms in the US, Germany, South Africa and Asia.  The post ‘Earth Estries’ Cyberespionage Group Targets Government, Tech Sectors appeared ...

ComplyCube Field Redaction removes sensitive fields from documents

ComplyCube enhanced its Document Checks solution with automated Field Redaction capabilities. This feature systematically masks sensitive Personal Identifiable Information (PII) fields, such as the Dutch BSN, to assist businesses with global data ...

BSides Cheltenham 2023 – Paul Brears – Encrypted Client Hello: What Does This Mean, Looking At TLS Connections?

Many thanks to BSides Cheltenham for publishing their presenter’s outstanding BSides Cheltenham 2023 security content on the organizations’ YouTube channel. Permalink The post BSides Cheltenham 2023 – Paul Brears – Encrypted ...

Chinese Hackers Still Exploiting Barracuda ESG Flaw: Mandiant

A highly adaptable China-linked threat group that was exploiting a zero-day flaw in Barracuda Networks devices before the vendor patched the vulnerability in May is using new malicious tools to maintain a presence in many of the compromised ...

Sift named a Leader in the 2023 Forrester Wave(TM) for Digital Fraud Management | Key report insights

The digital fraud management (DFM) space is a highly competitive one. It represents a huge spectrum of fraud solutions and strategies that are as diverse as the merchants and financial institutions who rely on them. And, the implications for ...

Healthcare Organizations Hit by Cyberattacks Last Year Reported Big Impact, Costs

Roughly 78% of the healthcare organizations in North America, South America, the APAC region, and Europe experienced a cyberattack over the past year, according to a new report. The post Healthcare Organizations Hit by Cyberattacks Last Year ...

Exabeam and Google Cloud join forces to modernize security operations

Exabeam announced it is expanding its partnership with Google Cloud in the development of generative AI models in its cloud-native New-Scale SIEM product portfolio. As a Google Cloud partner, the collaborative development process on Google Cloud ...

Tenable unveils web application and API scanning capabilities for Nessus Expert

Tenable has unveiled web application and API scanning in Tenable Nessus Expert, new features that provide simple and comprehensive vulnerability scanning for modern web applications and APIs. Web application and API scanning in Nessus Expert are ...

Validating Deployment Requirements with CloudFormation Custom Resources

Here at Cyral, we have many microservices that depend upon external requirements. We automate those services’ deployment using Infrastructure as Code (IaC) templates and, ideally, … The post Validating Deployment Requirements with ...

Successful Hybrid Identity Deployments

Why success matters to federal agencies — and how to choose a solution The recent guidance document released by the Cybersecurity and Infrastructure Security Agency (CISA), "Secure Cloud Business Applications (SCuBA) Hybrid Identity Solutions ...

Recent Juniper Flaws Chained in Attacks Following PoC Exploit Publication

Four recent vulnerabilities in the J-Web component of Junos OS have started being chained in malicious attacks after PoC exploit code was published. The post Recent Juniper Flaws Chained in Attacks Following PoC Exploit Publication appeared first ...

Text Message Spam & Smishing: Navigating the Changing Landscape of Cyber Threats

In our rapidly evolving digital era, cyber threats are as constant as change itself. It’s a dynamic landscape that requires us to stay aware and vigilant, and adapt our defenses to counter new and emerging threats. One such menace gaining ...

How Machine Identity Management Helps Solve Connected Medical Devices Security Challenges With Ravishankar Chamarajnagar, CPO at AppViewX

Welcome to our latest blog post featuring an insightful conversation with Ravishankar (Ravi) Chamarajnagar, Chief Product Officer (CPO) of AppViewX. In this edition, we delve into the intriguing realm of the Internet of Things (IoT) and its ...

NIST delivers the draft standards for Post Quantum Cryptography

The starting whistle has gone off in the race for quantum-safe cryptography solutions. Last week,... The post NIST delivers the draft standards for Post Quantum Cryptography appeared first on Entrust Blog. The post NIST delivers the draft ...