Application Security News and Articles


Fraud schemes explained: Proxy Phantom, Pig Butchering, and Crypto Cashout

Discover the latest fraud schemes and learn best practices to protect your business and customers from evolving threats. The post Fraud schemes explained: Proxy Phantom, Pig Butchering, and Crypto Cashout appeared first on Sift Blog. The post ...

Data Resilience, Insights, Action! Recapping Splunk .conf 2023

.conf23 has wrapped up, and what an incredible journey it's been! For the first time, Hurricane Labs proudly sponsored the event, interacting with customers, partners, and devoted blog enthusiasts. Our main focus? Diving deep into the digital ...

Executive engagement: Get support for your security awareness program from the top-down

The post Executive engagement: Get support for your security awareness program from the top-down appeared first on Click Armor. The post Executive engagement: Get support for your security awareness program from the top-down appeared first on ...

Patch Tuesday Update – August 2023

Microsoft announced fixes for 86 new CVEs this month, including 6 Microsoft-rated critical vulnerabilities. This month there were 2 new zero-day vulnerabilities disclosed; also, there were 2 updates to previously reported exploitable ...

SaaS vs. Cloud-Native: Definitions and Security Best Practices

There’s a disconnect in how we talk about applications that are no longer hosted within our own data center. When speaking with customers, we’ve observed that “software as a service” (SaaS) and “cloud-native” are terms that tend to be ...

BSidesTLV 2023 – John Fokker – How To Take Cookies From The Cookie Monster: Genesis Market Takedown

Many thanks to BSidesTLV for publishing their presenter’s erudite BSidesTLV 2023 security content on the organizations’ YouTube channel. Permalink The post BSidesTLV 2023 – John Fokker – How To Take Cookies From The Cookie ...

Cybersecurity and ESG Integration: Enhancing Brand Trust and Sustainability

A robust cybersecurity program is no longer just a technical matter. It’s now a pivotal business issue impacting all departments – and one that must be accounted for in Environmental, Social, and Governance (ESG) strategies, operating factors ...

Eliminate false positives with WhiteHat Dynamic

WhiteHat Dynamic helps organizations eliminate false positives. The post Eliminate false positives with WhiteHat Dynamic appeared first on Security Boulevard.

Ransomware Robs Realtors — Rapattoni MLS-aaS Down: Day 8 and Counting

MLS FAIL: Home listings SaaS dead in the water as real estate agents lose leads. The post Ransomware Robs Realtors — Rapattoni MLS-aaS Down: Day 8 and Counting appeared first on Security Boulevard.

Google Eyes Quantum with New Security Key Implementation

Google is taking steps this month to help the cybersecurity field stay ahead of the looming security threat that is coming with the ongoing development of quantum computing. The IT giant this week released a quantum-resilient FIDO2 security key ...

Comic Agilé – Mikkel Noe-Nygaard, Luxshan Ratnarav – #255 — ChatGPT

via the respected Software Engineering expertise of Mikkel Noe-Nygaard as well as the lauded Software Engineering and Enterprise Agile Coaching talent of Luxshan Ratnarav at Comic Agilé! Permalink The post Comic Agilé – Mikkel ...

Barracuda Networks Ransomware Report Surfaces Attack Surge

Barracuda Networks reports ransomware attacks against municipalities, healthcare and education organizations have quadrupled since 2021. The post Barracuda Networks Ransomware Report Surfaces Attack Surge appeared first on Security Boulevard.

Solving cross-platform DevSecOps challenges with Synopsys

Cross-platform DevSecOps challenges are easily solved with Polaris Software Integrity Platform® capabilities. What is DevSecOps DevSecOps is the integration of security best practices into DevOps. The goal is to incorporate security testing ...

CISA’s Secure by Design: Too much, too soon?

In April, the federal Cybersecurity and Infrastructure Security Agency (CISA) pledged to shift the balance of risk in software and technology products by prodding organizations to secure their technology wares by design and by default. The post ...

Google Releases Security Key Implementation Resilient to Quantum Attacks

Google has released the first quantum-resilient FIDO2 security key implementation as part of its OpenSK project. The post Google Releases Security Key Implementation Resilient to Quantum Attacks appeared first on SecurityWeek.

Beyond Identity unveils The Passkey Journey to aid enterprise passkey deployment decisions

Beyond Identity has launched The Passkey Journey – a free, GDPR-compliant tool built to help development and user experience (UX) teams understand, plan, and optimize different end user authentication experiences. The tool solves key challenges ...

BSidesLV: The big event before the biggest security event in Las Vegas

BSides Las Vegas 2023 united security experts and devs. Highlights include PasswordsCon, medical device security, MFA challenges, and CISA's role in cybersecurity. The post BSidesLV: The big event before the biggest security event in Las Vegas ...

How to Keep Your Crypto Wallet Safe

 Author: Kell van Daal Rising Crypto Exchange Rates = Rising Threats Though Bitcoin’s value has taken a hit, it is making a gradual comeback after a big slump, almost doubling in value since December. And when Bitcoin (and other crypto ...

Secureworks Cuts Jobs for a Second Time This Year

As with other parts of the IT industry, layoffs are continuing to hit the cybersecurity field. Executives with software-as-a-service (SaaS) security company Secureworks this week announced a second around of job cuts this year, laying off 15% of ...

Stellar Cyber and OCI partner to offer expanded cybersecurity capabilities

Stellar Cyber has unveiled that the Stellar Cyber Open XDR platform is available on Oracle Cloud Infrastructure (OCI) to help users manage their security operations. Joint customers of Oracle and Stellar Cyber can expect to reduce cyber risk and ...