Application Security News and Articles


NSA, CISA Issue Guidance on 5G Network Slicing Security

The NSA and CISA have published guidance on hardening 5G standalone network slices against potential threats. The post NSA, CISA Issue Guidance on 5G Network Slicing Security appeared first on SecurityWeek.

Splunk Edge Hub provides visibility across IT and OT environments

Splunk announced Splunk Edge Hub, a new solution that simplifies the ingestion and analysis of data generated by sensors, IoT devices and industrial equipment. Splunk Edge Hub provides more complete visibility across IT and OT environments by ...

BSides Sofia 2023 – Vangelis Stykas And Felipe Solferin – Stalking The Stalkers

Our thanks to BSides Sofia for publishing their presenter’s tremendous BSides Sofia 2023 content on the organizations’ YouTube channel. Permalink The post BSides Sofia 2023 – Vangelis Stykas And Felipe Solferin – Stalking The ...

LeakedSource Owner Quit Ashley Madison a Month Before 2015 Hack

[This is Part III in a series on research conducted for a recent Hulu documentary on the 2015 hack of marital infidelity website AshleyMadison.com.] In 2019, a Canadian company called Defiant Tech Inc. pleaded guilty to running ...

Nigerian Man Sentenced to 8 Years in US Prison for $8 Million BEC Scheme

Olalekan Jacob Ponle, a Nigerian national living in the UAE, was sentenced to 8 years in a US prison for his role in an $8 million BEC scheme. The post Nigerian Man Sentenced to 8 Years in US Prison for $8 Million BEC Scheme appeared first on ...

What is Your Security Attack Surface?

As businesses and individuals become more reliant on technology, they inadvertently increase their security attack surface – the sum total of all the vulnerabilities that threat actors can exploit.  Understanding your security attack surface ...

Kyndryl and Veritas launch two services for data protection and recovery

Kyndryl and Veritas Technologies unveiled two new services — Data Protection Risk Assessment with Veritas and Incident Recovery with Veritas. As a key milestone in Kyndryl and Veritas’ strategic alliance, these services help enterprises ...

Microsoft’s July 2023 Patch Tuesday: 132 Vulnerabilities, 6 Zero-Days

Microsoft has released its July 2023 Patch Tuesday security updates, fixing 132 vulnerabilities. Read on to get the details.    What vulnerabilities did Microsoft patch?   The 132 vulnerabilities Microsoft patched include including 37 remote ...

Threat Intelligence & The Cyber Kill Chain: The Complete Guide

Every day that you prevent an attack is a good day. Sophisticated adversaries have the money, skills, and technologies to thwart most organizations’ defensive capabilities. With the rise of Ransomware-as-a-Service (RaaS), less sophisticated ...

Adobe ColdFusion vulnerabilities exploited to deliver web shells (CVE-2023-29298, CVE-2023-38203)

Attackers are exploiting two Adobe ColdFusion vulnerabilities (CVE-2023-29298, CVE-2023-38203) to breach servers and install web shells to enable persistent access and allow remote control of the system, according to Rapid7 researchers. Flaws ...

A Look at the Email Threat Landscape in Q1 2023

VIPRE's Email Threat Trends Report for Q1 2023 analyzed 1.8 billion emails to provide a comprehensive understanding of contemporary email threats. The post A Look at the Email Threat Landscape in Q1 2023 appeared first on Security Boulevard.

Network Attack Surface: A Quick Guide

Understanding and securing the network attack surface has become a critical priority for businesses seeking to protect their valuable data and systems. By comprehending the network attack surface and its significance, organizations can ...

Black Hat Hacker Exposes Real Identity After Infecting Own Computer With Malware

A threat actor’s real identity was uncovered after they infected their own computer with an information stealer. The post Black Hat Hacker Exposes Real Identity After Infecting Own Computer With Malware appeared first on SecurityWeek.

Snap Finance uses Contrast as an all-in-one security tool | Identify and remediate vulnerabilities | Contrast Security

It’s enough to make your eyes cross: Floods of vulnerabilities pour in from disparate sources and tools.  The post Snap Finance uses Contrast as an all-in-one security tool | Identify and remediate vulnerabilities | Contrast Security appeared ...

Pat Clawson joins CheckRed Security as CEO

CheckRed Security announced that the company’s Board of Directors has appointed Pat Clawson as its first CEO. Clawson brings more than 20 years of leadership experience in driving cybersecurity innovation. As CEO, Clawson will lead CheckRed’s ...

Seed Group and Resecurity collaborate to reshape Middle East’s cybersecurity landscape

Aiming to protect the digital ecosystem in the UAE and the Mena region, Seed Group, has announced a strategic partnership with Resecurity. With this strategic partnership, Seed Group and Resecurity are set to reshape the cybersecurity landscape ...

Egress defends users against phishing threats with adaptive security capability

Egress launched adaptive security for its Intelligent Email Security platform, providing dynamic and automated protection against advanced inbound and outbound threats, transforming the way in which organizations manage human risk on email. ...

Generative AI and the Future of Technical Writing

In the 1980s, when Generative AI was more a matter of speculation than a widespread implementation, philosopher John Searle proposed a thought experiment that he called the Chinese Room. He put forward a hypothetical scenario in which a person ...

Microsoft: 6 Key Security Vulnerabilities Putting Your Organization at Risk

According to Microsoft’s recent threat brief, email still remains the #1 attack vector, but the good news is 98% of attacks can be prevented by implementing basic security measures.  To stay ahead of today’s most malicious threats, security ...

NEW RESEARCH: Life Sciences Organizations Are Ahead of the Curve, but Vulnerabilities Persist

From HIPAA regulations, to lost business opportunities, to stolen IP and trade secrets, organizations in the Life Sciences sector stand to lose a great deal to Insider Risk. Though all sectors are faced with the threat of data loss from insiders, ...