Application Security News and Articles


Data compromises on track to set a new record

The number of data compromises reported in the U.S. in the H1 of 2023 is higher than the total compromises reported every year between 2005 and 2020, except for 2017, according to Identity Theft Resource Center. For the H1 ending June 30, 2023, ...

Redpoint Ventures Announces InfraRed 100

AppOmni is proud to be part of the inaugural Redpoint Ventures InfraRed 100 representing the fastest-growing private cloud infrastructure software businesses. The post Redpoint Ventures Announces InfraRed 100 appeared first on AppOmni. The post ...

7 remote work cyber security rules every business should follow

The post 7 remote work cyber security rules every business should follow appeared first on Click Armor. The post 7 remote work cyber security rules every business should follow appeared first on Security Boulevard.

The Polaris platform is redefining secure development

By streamlining application security for the enterprise, Polaris is redefining secure development. The post The Polaris platform is redefining secure development appeared first on Security Boulevard.

Microsoft Pushes for a Seat at the SSE Table

Microsoft is getting ready to muscle its way into the burgeoning security service edge (SSE) space, but it may have some catching up to do. The post Microsoft Pushes for a Seat at the SSE Table appeared first on Security Boulevard.

BSides Sofia 2023 – Daniela Shalev – Hunting Unsigned DLLs To Find APT

Our thanks to BSides Sofia for publishing their presenter’s tremendous BSides Sofia 2023 content on the organizations’ YouTube channel. Permalink The post BSides Sofia 2023 – Daniela Shalev – Hunting Unsigned DLLs To Find APT ...

Securing an Agency Sponsor for FedRAMP Agency-Sponsored ATO

Obtaining a mandated Federal Risk and Authorization Management Program (FedRAMP)  Authorization to Operation (ATO) is increasingly important for Cloud Service Providers (CSPs) who wish to make Cloud Service Offerings (CSOs) available to federal ...

Forbes Technology Council: Why Large Language Models (LLMs) Alone Won’t Save Cybersecurity

The star of the moment is Large Language Models (aka LLMs), the foundational model that powers ChatGPT. There are plenty of documented examples of truly impressive feats built on this technology: writing reports or outputting code in seconds. At ...

APT Group Red Menshen is Rapidly Evolving its BPFDoor Malware

Red Menshen is an APT group that is rapidly evolving its BPFDoor backdoor malware that targets systems running Linux or Solaris. The post APT Group Red Menshen is Rapidly Evolving its BPFDoor Malware appeared first on Security Boulevard.

Randall Munroe’s XKCD ‘Fireflies’

via the comic artistry and dry wit of Randall Munroe, resident at XKCD! Permalink The post Randall Munroe’s XKCD ‘Fireflies’ appeared first on Security Boulevard.

OPSEC FAIL: US Military Email Going to Mali — via Typo

MX Mixup: Russian-allied government can intercept “highly sensitive information”—because there’s no “I” in .ML The post OPSEC FAIL: US Military Email Going to Mali — via Typo appeared first on Security Boulevard.

Embracing Consolidation and Squashing Silos

While silos pose significant dangers to an enterprise's cybersecurity posture, consolidation serves as a powerful solution to overcome these risks, offering improved visibility, efficiency, incident response capabilities, and risk management. The ...

Security Teams Need to Address One of the Biggest Software Supply Chain Risks: Open Source

One of the biggest threats to software supply chain security is open source software applications and components. Many enterprises and small businesses have come to rely on open source solutions, and they are an important part of IT strategies ...

BSides Sofia 2023 – Evgeni Saber – Advanced Enterprise Vulnerability

Our thanks to BSides Sofia for publishing their presenter’s tremendous BSides Sofia 2023 content on the organizations’ YouTube channel. Permalink The post BSides Sofia 2023 – Evgeni Saber – Advanced Enterprise Vulnerability ...

Owner of Cybercrime Website BreachForums Pleads Guilty

Conor Brian Fitzpatrick, the owner of the infamous cybercrime website BreachForums, has pleaded guilty in a US court. The post Owner of Cybercrime Website BreachForums Pleads Guilty appeared first on SecurityWeek.

TLS Flood Attacks — When Encryption Becomes a Liability

TLS can provide strong protection against many types of cyberattacks, but they are not immune to DoS (denial of service) attacks. DoS attacks, which are a type of DDoS attack, are encrypted flood attacks designed to overload a web application by ...

Addressing the Mobile Malware Threat With Zero-Trust

AI-enabled zero-trust solutions can help address the rising threat of mobile malware. The post Addressing the Mobile Malware Threat With Zero-Trust appeared first on Security Boulevard.

Unlocking efficiency: a strategic approach to handling Kubernetes security findings

Introduction Kubernetes has emerged as the de facto standard for container orchestration, enabling organizations to manage and scale The post Unlocking efficiency: a strategic approach to handling Kubernetes security findings appeared first on ...

Security Audit Benefits for Small Businesses

What is a Security Audit? A cyber security audit is like a health checkup for an organization’s digital ecosystem. It involves a meticulous examination of its systems, networks, and processes to identify potential vulnerabilities and risks. ...