Application Security News and Articles


BSides Leeds 2023 – Tom Harrison – Social Engineering The Kill

Thanks are in order to BSides Leeds for publishing their presenter’s outstanding BSides Leeds 2023 security content on the organizations’ YouTube channel. Permalink The post BSides Leeds 2023 – Tom Harrison – Social Engineering ...

Sonar’s new deep-analysis capability discovers and fixes code security issues

Sonar announced a significant advancement of its Clean Code offering – developers can now automatically discover and fix code security issues arising from interactions between user source code and third-party, open-source libraries. Referred to ...

Salesforce and Meta suffer phishing campaign that evades typical detection methods

The Guardio research team discovered an email phishing campaign exploiting a zero-day vulnerability in Salesforce’s legitimate email services and SMTP servers. Phishing email sample as was sent from the “@salesforce.com” email address The ...

New hVNC macOS Malware Advertised on Hacker Forum

A new macOS-targeting hVNC malware family is being advertised on a prominent cybercrime forum. The post New hVNC macOS Malware Advertised on Hacker Forum appeared first on SecurityWeek.

Cyble Raises $24 Million for AI-Powered Threat Intelligence Platform

Threat intelligence firm Cyble has raised $24 million in a Series B funding round co-led by Blackbird Ventures and King River Capital. The post Cyble Raises $24 Million for AI-Powered Threat Intelligence Platform appeared first on SecurityWeek.

Traceable AI combats API abuse with digital fraud prevention capabilities

Traceable AI introduced digital fraud prevention capabilities, to deliver protection against fraudulent activities across APIs and digital interfaces. This innovation is crucial, especially in the post-COVID era, as businesses continue to grapple ...

Emerging Risks with Embedded LLM in Applications

Large Language Models (LLMs) like OpenAI's GPT and Google's Bard have swept the tech landscape with their transformative capabilities for helping organizations overcome resource constraints and accelerate the pace of innovation. But as these AI ...

Melton Littlepage joins 1Password as CMO

1Password announced the appointment of Melton Littlepage as its Chief Marketing Officer (CMO). With over 20 years of experience driving innovation, category creation, and growth across global security and technology companies, Littlepage will ...

WooCommerce and two-factor authentication

WordPress eCommerce security can take many forms. 2FA, short for two-factor authentication, however, is a low-hanging fruit that offers serious bang for your buck. Industry giants such as Google and Microsoft can’t sing its praises enough. ...

A Guide to Preventing Data Loss in Cloud Computing

This blog explores attacks targeting cloud computing providers and what organizations can do to prevent data loss in cloud computing. The post A Guide to Preventing Data Loss in Cloud Computing appeared first on Security Boulevard.

Understanding Generative AI Cybersecurity Risks

New generative AI use cases are as limitless as the technology itself—and so are the security and data privacy impacts. Despite warnings from scientists, tech luminaries and policymakers to proceed with caution, a tsunami of generative AI is ...

From Panic to Prosperity: How to Handle a Lack of Prospects

For managed service providers (MSPs), a consistent flow of qualified prospects is vital for business growth and sustainability. These prospectsRead More The post From Panic to Prosperity: How to Handle a Lack of Prospects appeared first on ...

Armis partners with Security Risk Advisors to protect cyber physical systems

Armis announced a strategic partnership with international cybersecurity consulting firm, Security Risk Advisors (SRA). This collaboration empowers joint customers as both organizations leverage their respective areas of expertise to secure ...

Attackers can turn AWS SSM agents into remote access trojans

Mitiga researchers have documented a new post-exploitation technique attackers can use to gain persistent remote access to AWS Elastic Compute Cloud (EC2) instances (virtual servers), as well as to non-EC2 machines (e.g., on-premises enterprise ...

How to Secure Your Productivity Tools with GitGuardian Honeytoken

GitGuardian Honeytokens are potent tools in the cybersecurity toolkit, notifying you of any unauthorized activities in code repos, Jira, Slack, Linear, and more. The post How to Secure Your Productivity Tools with GitGuardian Honeytoken appeared ...

Cyble raises $24 million to enhance its AI-driven security solutions

Cyble has been steadily gaining recognition as the favored solution for Dark Web and Threat Intelligence among cybersecurity specialists. They just announced a $24 million injection of capital through Series B funding. The funding round, co-led ...

Akamai Extends API Security Services After Neosec Acquisition

Following its acquisition of Neosec earlier this year, Akamai Technologies today added an ability to secure application programming interfaces (APIs) to its portfolio of cybersecurity services. The post Akamai Extends API Security Services After ...

Firefox 116 Patches High-Severity Vulnerabilities

Firefox 116 was released with patches for 14 CVEs, including nine high-severity vulnerabilities, some of which can lead to remote code execution or sandbox escapes. The post Firefox 116 Patches High-Severity Vulnerabilities appeared first on ...

Lack of Executive Understanding, Talent Gap Strain Security Teams 

A lack of executive understanding and an ever-widening talent gap are placing an unsustainable burden on security teams. The post Lack of Executive Understanding, Talent Gap Strain Security Teams  appeared first on Security Boulevard.

PrivacyHawk Privacy Score enables users to understand their privacy and data risk

PrivacyHawk launched the Privacy Score, an easy way for individuals to learn their privacy and personal data risk like a credit score. The Privacy Score calculates and rates privacy and data risk on a scale between 300 and 850, the same range as ...