Application Security News and Articles


BSidesTLV 2023 – Ariel Szarf, Doron Karmi – Google Workspace Forensics — Insights From Real-World Hunts & IR

Many thanks to BSidesTLV for publishing their presenter’s erudite BSidesTLV 2023 security content on the organizations’ YouTube channel. Permalink The post BSidesTLV 2023 – Ariel Szarf, Doron Karmi – Google Workspace Forensics ...

Smart Cities: Utopian Dream, Security Nightmare, or Political Gimmick?

As smart cities evolve with more and more integrated connected services, cybersecurity concerns will increase dramatically. The post Smart Cities: Utopian Dream, Security Nightmare, or Political Gimmick? appeared first on SecurityWeek.

FBI Finds 1,580 Bitcoin in Crypto Wallets Linked to North Korean Hackers 

The FBI has published information on six crypto wallets in which North Korean hackers moved roughly 1,580 Bitcoin from various heists. The post FBI Finds 1,580 Bitcoin in Crypto Wallets Linked to North Korean Hackers  appeared first on SecurityWeek.

Cybersecurity Companies Report Surge in Ransomware Attacks

Cybersecurity companies have released a dozen ransomware reports in recent weeks and most of them show a surge in attacks. The post Cybersecurity Companies Report Surge in Ransomware Attacks appeared first on SecurityWeek.

HP Report Details Tactics Used to Evade Detection Tools

HP Wolf Security report showed how tactics and techniques cybercriminals use to evade detection are evolving. The post HP Report Details Tactics Used to Evade Detection Tools appeared first on Security Boulevard.

FBI Warns of Adversary Malicious AI Use While Encouraging AI Cyber Adoption

A briefing by the FBI’s Counterintelligence Division highlights the massive potential of artificial intelligence (AI) for advancing cybersecurity and the looming risks of adversaries weaponizing AI for attacks. The post FBI Warns of Adversary ...

LOKKER launches On-demand Website Privacy Audit for healthcare organizations

LOKKER has revealed the availability of the new On-demand Website Privacy Audit, a feature within its Privacy Edge software suite, geared toward healthcare organizations. This audit summarizes the highest priority privacy risks on an ...

5 Ways MSPs Can Improve Attack Surface Management for Customers

Read on to learn how MSPs and their customers can collaborate to achieve and improve attack surface management. The post 5 Ways MSPs Can Improve Attack Surface Management for Customers appeared first on Security Boulevard.

The End of “Groundhog Day” for the Security in the Boardroom Discussion?

As the SEC cyber incident disclosure rules come into effect, organizations will be forced to seriously consider giving security leaders a seat at the table. The post The End of “Groundhog Day” for the Security in the Boardroom Discussion? ...

3,000 Openfire Servers Exposed to Attacks Targeting Recent Vulnerability

More than 3,000 Openfire servers are not patched against a recent vulnerability and are exposed to attacks employing a new exploit. The post 3,000 Openfire Servers Exposed to Attacks Targeting Recent Vulnerability appeared first on SecurityWeek.

Malwarebytes releases EDR Extra Strength for endpoint protection

Malwarebytes is revolutionizing endpoint protection for IT constrained businesses with EDR Extra Strength, a new solution that combines the company’s deep historical threat intelligence knowledge with endpoint detection and response (EDR) ...

Legal liability for insecure software might work, but it’s dangerous

Ensuring security in the software market is undeniably crucial, but it is important to strike a balance that avoids excessive government regulation and the burdens associated with government-mandated legal responsibility, also called a liability ...

Supply chain security: Is technical debt weighing your team down?

Rampant lapses in software supply chain security don't manifest suddenly. They build up over months and years, one out-of-date component, overly permissive account, or misconfigured API at a time. And over time, these gaps mount up, like bad ...

BeyondID launches BeyondID SOC

BeyondID has released the BeyondID Security Operations Center (SOC). This 24/7/365 security monitoring and threat detection service is designed to help organizations maintain the security of their systems in real-time. The BeyondID SOC offers a ...

Surge in identity crime victims reporting suicidal thoughts

Identity theft can have great financial impact on the victims, but the experienced emotional, physical and psychological impact can be even more devastating, according to the 2023 Consumer Impact Report from the Identity Theft Resource Center ...

Bogus OfficeNote app delivers XLoader macOS malware

A new macOS-specific variant of the well known XLoader malware is being delivered disguised as the “OfficeNote” app. “Multiple submissions of this sample have appeared on VirusTotal throughout July, indicating that the malware ...

US Government Publishes Guidance on Migrating to Post-Quantum Cryptography

CISA, NSA, and NIST urge organizations to create quantum-readiness roadmaps and prepare for post-quantum cryptography migration. The post US Government Publishes Guidance on Migrating to Post-Quantum Cryptography appeared first on SecurityWeek.

First Weekly Chrome Security Update Patches High-Severity Vulnerabilities

Google has released the first weekly Chrome security update, which patches five memory safety vulnerabilities, including four rated ‘high severity’. The post First Weekly Chrome Security Update Patches High-Severity Vulnerabilities appeared ...

Barracuda Networks Report Details Benefits of Cybersecurity AI

The AI embedded in Barracuda's managed XDR service is being used to thwart increasingly sophisticated cyberattacks. The post Barracuda Networks Report Details Benefits of Cybersecurity AI appeared first on Security Boulevard.

Security Onion 2.4: Free, open platform for defenders gets huge update

Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It has been downloaded over 2 million times and is being used by security teams worldwide. Security Onion 2.4 comes with many ...