Application Security News and Articles


Adobe Releases New Patches for Exploited ColdFusion Vulnerabilities

Adobe releases a second round of patches for recent ColdFusion vulnerabilities, including flaws that have been exploited in attacks. The post Adobe Releases New Patches for Exploited ColdFusion Vulnerabilities appeared first on SecurityWeek.

Selecting the Best Cyber Risk Quantification Models for Your Organization

Quantitative risk analysis refers to a numeric projection of the total impact of a given risk on business objectives. A risk quantification model is a tool or approach that helps organizations understand and measure the potential risks and ...

Incisive Software Enhances Low-Code/No-Code and Microsoft Excel Solutions for Enhanced Visibility and Control

CAMPBELL, CA – July 19, 2023 – Incisive Software, a leading provider of innovative data management solutions, announces the rollout of extensive enhancements to its Low-Code/No-Code and Microsoft Excel solutions. These improvements, part of ...

Why data travel is healthcare’s next big cybersecurity challenge

Do you know where your patients’ data lives once it’s in the cloud? Unfortunately, for many healthcare organizations, the answer is no – or, at least, it’s not a definitive yes. Knowing how (or where) data is used, shared or stored is ...

LLMs and AI positioned to dominate the AppSec world

As modern software trends toward distributed architectures, microservices, and extensive use of third-party and open source components, dependency management only gets harder, according to Endor Labs. Application development risks A new research ...

DTEX InTERCEPT and Microsoft 365 E5: The Partner Opportunity

For the past 20 years I have worked for multiple security start-ups, primarily in the endpoint space. In my interviews with the press, one question has consistently come up: “Are you worried about competing with Microsoft?” In most cases, the ...

A fresh look at the current state of financial fraud

In this Help Net Security video, Greg Woolf, CEO at FiVerity, discusses how the emergence of sophisticated fraud tools powered by AI and recent upheavals in the banking sector have forged an ideal environment for financial fraud. This complex ...

67% of daily security alerts overwhelm SOC analysts

Today’s security operations (SecOps) teams are tasked with protecting progressively sophisticated, fast-paced cyberattacks, according to Vectra AI. Yet, the complexity of people, processes, and technology at their disposal is making cyber ...

Exploring the macro shifts in enterprise security

The number of successful ransomware attacks and data breach attempts fell by 30% over the last year, the number of reported security incident types at organizations increased, according to the 2023 Cybersecurity Perspectives Survey by Scale. ...

Famed Hacker Kevin Mitnick Dead at 59

Famed hacker Kevin Mitnick has died after a battle with pancreatic cancer.  At the time of his death, he was KnowBe4 Chief Hacking Officer. The post Famed Hacker Kevin Mitnick Dead at 59 appeared first on SecurityWeek.

LDAP Authentication: Meaning and How it Works?

Explore the world of LDAP authentication, its meaning, and how it works. Discover its applications, including integration with Active Directory. Learn about the client-server authentication process and the challenges involved. The post LDAP ...

Why Identity Should Be At The Centre of Your Customer Strategy

Dive into the vital role of identity in your customer strategy. Explore how leveraging identity data can revolutionize personalization, establish trust, ensure seamless experiences across channels, drive data-driven decision-making, and maximize ...

Why Security Fatigue Is a Huge Cybersecurity Risk

Companies can save an average of $2.66 million by testing their cybersecurity incident response plan, but many choose not to. Whether this is out of necessity or negligence, it may cost businesses their reputation and revenue in the long run. ...

Attacker ID’ed After Infecting Own Computer With Malware

A threat actor that goes by the name of “La_Citrix” inadvertently infected his own computer. Cyberthreat research firm sent his information on to law enforcement. The post Attacker ID’ed After Infecting Own Computer With Malware ...

BSides Sofia 2023 – Cristian Cornea – Bypassing AntiVirus Using badUSB

Our thanks to BSides Sofia for publishing their presenter’s tremendous BSides Sofia 2023 content on the organizations’ YouTube channel. Permalink The post BSides Sofia 2023 – Cristian Cornea – Bypassing AntiVirus Using badUSB ...

‘::ffff’ only…Tips for identifying unusual network activity

Every now and then, a security team uncovers something only the Internet Engineering Task Force (IETF) can fully explain. During a review of network activity, our team noted unusual outbound web traffic from our network. Our investigation took us ...

RiskLens, A Safe Security Company, Named a Leader in the Cyber Risk Quantification Report by Independent Research Firm

RiskLens ranked highest in the strategy category and "differentiates with its FAIR expertise and guided modeling approach," according to the report. The post RiskLens, A Safe Security Company, Named a Leader in the Cyber Risk Quantification ...

The Convergence of Cybersecurity and Everything

Exploring the convergence of cybersecurity with adjacent markets, the impact of this trend so far, and what we can expect in the future. The post The Convergence of Cybersecurity and Everything appeared first on Security Boulevard.

Demystifying Signature Matching and Pattern Matching in SAST: A Comprehensive Guide to…

In the realm of software security, staying one step ahead of cyber threats is of paramount importance. Static Application Security Testing…Continue reading on Medium »