Application Security News and Articles


Versa Networks Adds Generative AI to SASE Platform

Versa Networks this week revealed it has extended its secure access service edge (SASE) platform to include generative artificial intelligence (AI) capabilities that identify potentially malicious behaviors in real-time. The Versa AI platform can ...

Scammers Target Online Markets with Telekopye Phishing Toolkit

Bad actors are using a full-featured phishing toolkit to target large numbers of users of popular online shopping sites like eBay to steal their money and collect information like credit card account numbers. The toolkit, which is implemented as ...

Cybersecurity Insights with Contrast CISO David Lindner | 8/25

Insight #1 When looking at bringing in new security products it’s imperative to clearly outline your goals, which should always include total cost of ownership (TCO). The post Cybersecurity Insights with Contrast CISO David Lindner | 8/25 ...

ClearSale launches Client Portal to help customers view and manage fraud prevention data

ClearSale has released its new Client Portal. Used by ClearSale customers to view and manage their fraud prevention data, orders, and chargebacks, the portal offers enhanced functionality and a streamlined interface. The ClearSale Client Portal ...

BSides Cheltenham 2023 – Welcome And Announcements By BSides Cheltenham Orga

Many thanks to BSides Cheltenham for publishing their presenter’s outstanding BSides Cheltenham 2023 security content on the organizations’ YouTube channel. Permalink The post BSides Cheltenham 2023 – Welcome And Announcements By ...

Gmail Adds Extra Checks, Thwarting Sneaky Hackers

Sensitive actions such as forwarding to be protected by extra 2FA step. The post Gmail Adds Extra Checks, Thwarting Sneaky Hackers appeared first on Security Boulevard.

Experts Discuss Cyber Risk, From Law Enforcement to Insurance Claims

Every day, bad actors are scheming and executing new ways to exploit company networks in the United States and around the world. However, law enforcement agencies, cyber insurance carriers, and cybersecurity providers are working diligently to ...

In Other News: Africa Cybercrime Crackdown, Unpatched macOS Flaw, Investor Disclosures

Weekly cybersecurity news roundup that provides a summary of noteworthy stories that might have slipped under the radar for the week of August 21, 2023. The post In Other News: Africa Cybercrime Crackdown, Unpatched macOS Flaw, Investor ...

Kyndryl and Cisco expand partnership to help customers respond to cyber incidents

Kyndryl has expanded technology partnership with Cisco to deliver services focused on cyber resilience. Through this partnership, Kyndryl will utilize Cisco’s comprehensive portfolio of network software, hardware and equipment with Kyndryl’s ...

New Cybersecurity Requirements may put Vendors’ Gov’t Contracts at Risk

In the wake of a recent series of cybersecurity events including Log4Shell and SUNBURST, governments around the world have been exploring ways to use their purchasing power to improve software vendors’ security practices. In the U.S., a series ...

5 Ways to Maximize Your Organization’s Resiliency Rate

Resiliency rate is an important metric in security awareness training (SAT), as it measures how successful a program has been in preparing employees to recognize and respond to potential threats.   By understanding how resilient their workforce ...

5 Insights on Managed Phishing Detection and Response (PDR)

Do you want to keep your emails secure but find yourself having to operate with a limited budget and resources? Is your SOC team overloaded? You’re not alone. Many businesses are facing these challenges—so much so that these issues have ...

North Korean APT Hacks Internet Infrastructure Provider via ManageEngine Flaw

North Korea-linked Lazarus Group exploited a ManageEngine vulnerability to compromise an internet backbone infrastructure provider. The post North Korean APT Hacks Internet Infrastructure Provider via ManageEngine Flaw appeared first on SecurityWeek.

The parallels of AI and open source in software development

Parallels between the history of open source and the rise of AI in software development can teach us valuable AppSec lessons. The post The parallels of AI and open source in software development appeared first on Security Boulevard.

Hardcoded secret at the heart of the Dell Compellent VMware vulnerability

Dell disclosed a Compellent vulnerability affecting VMware users. Let's take a closer look to learn to safeguard your data, prevent coding mishaps, and ensure online security The post Hardcoded secret at the heart of the Dell Compellent VMware ...

Lazarus Group exploited ManageEngine vulnerability to target critical infrastructure

North Korean state-sponsored hackers Lazarus Group have been exploiting a ManageEngine ServiceDesk vulnerability (CVE-2022-47966) to target internet backbone infrastructure and healthcare institutions in Europe and the US. The group leveraged the ...

CoC Asks SEC for More Time to Implement Cyber Reporting Rule

The U.S. Chamber of Commerce asked for more time to implement the required cybersecurity incident reporting rules and cybersecurity practices proposed by the SEC. The post CoC Asks SEC for More Time to Implement Cyber Reporting Rule appeared ...

Cypago Raises $13 Million for GRC Automation Platform 

Israeli startup Cypago raises $13 million in funding and launches a governance, risk management and compliance (GRC) automation platform. The post Cypago Raises $13 Million for GRC Automation Platform  appeared first on SecurityWeek.

Lawmaker Wants Federal Contractors to Have Vulnerability Disclosure Policies 

Congresswoman Nancy Mace has introduced a bill that would require federal contractors to have a Vulnerability Disclosure Policy (VDP). The post Lawmaker Wants Federal Contractors to Have Vulnerability Disclosure Policies  appeared first on ...

Europe is Cracking Down on Big Tech. This Is What Will Change When You Sign On

The Digital Services Act aims to protect European users when it comes to privacy, transparency and removal of harmful or illegal content. The post Europe is Cracking Down on Big Tech. This Is What Will Change When You Sign On appeared first on ...