Application Security News and Articles


Evaluating blockchain security maturity

By Josselin Feist, Blockchain Engineering Director Holistic security reviews should reveal far more than simple bugs. Often, these bugs indicate deeper issues that can be challenging to understand and address. Given the time-boxed nature of ...

Psychological Manipulation in Social Engineering: Unveiling the Tactics

Have you ever found yourself in a situation where you felt like someone was trying to manipulate you into doing something you didn’t want to do? Perhaps it was a friend, family member, or even a stranger. The truth is, […] The post ...

Generative AI outperforms hackers but not their creativity

72% of hackers are confident that AI cannot replace human creativity in security research and vulnerability management, according to Bugcrowd. Generative AI hacking Generative AI was a major theme in the 2023 report, with 55% of respondents ...

Satellites lack standard security mechanisms found in mobile phones and laptops

Researchers from Ruhr University Bochum and the CISPA Helmholtz Center for Information Security in Saarbrücken have assessed the security mechanisms of satellites currently orbiting the Earth from an IT perspective. Moritz Schloegel (left) and ...

New infosec products of the week: July 14, 2023

Here’s a look at the most interesting products from the past week, featuring releases from Fidelis Cybersecurity, Hubble, NETSCOUT, Regula, and WatchGuard. WatchGuard expands identity protection capabilities with AuthPoint Total Identity ...

Facebook and Microsoft remain prime targets for spoofing

While trends in phishing frequently evolve, Facebook and Microsoft’s collective dominance as the most spoofed brands continues, according to Vade. Facebook and Microsoft’s collective dominance as the most spoofed brands continued into H1 ...

Top priorities for chief audit executives in 2023

The top focus areas for chief audit executives (CAEs) in 2023 are advancing data analytics, assuring proliferating digital risks, and talent management, according to Gartner. “In 2023 most CAEs are focusing on organizational and departmental ...

AI — Making Us What Again?

AI — Making Us What Again? 2 min read·Just now -- Smart? Clever? Productive? OH BOY Is the fox out of place? Am I invading their space? Or is it just plain loss? Welcome the current events featuring Artificial Intelligence! Artificial ...

Making All Your Users Feel Welcome: Arkose Labs Challenges Are Now Certified WCAG Compliant

Accessibility is a must-have for any B2C website or digital application. It’s the only way to be inclusive of all of your consumers, provide a great user experience for everyone, and – in many cases – meet legal regulations and ...

SEO Expert Hired and Fired By Ashley Madison Turned on Company, Promising Revenge

[This is Part II of a story published here last week on reporting that went into a new Hulu documentary series on the 2015 Ashley Madison hack.] It was around 9 p.m. on Sunday, July 19, when I received a message through the contact form on ...

Enhancing Data Governance and Analytics with Alteryx: Incisive Software Joins Partner Program

In a move that further strengthens its commitment to empowering organizations with innovative risk and analytics management solutions, Incisive Software is excited to announce its partnership with Alteryx, a leading provider of data analytics ...

News alert: Security Journey accelerates secure coding training platform enhancements

Pittsburgh, PA – July 13, 2023 – Security Journey, a best-in-class application security education company, has today announced an acceleration of its secure coding training platform enhancements. Since combining HackEDU and Security Journey ...

A Day In the Life with Head of GRC, Jack Rumsey

The post A Day In the Life with Head of GRC, Jack Rumsey appeared first on Low-Code Security Automation & SOAR Platform | Swimlane. The post A Day In the Life with Head of GRC, Jack Rumsey appeared first on Security Boulevard.

Cyber Threat Intelligence Index: June 2023

Flashpoint’s monthly look at the cyber risk ecosystem affecting organizations around the world, including intelligence, news, data, and analysis about ransomware, vulnerabilities, data breaches, and insider threats. The post Cyber Threat ...

News alert: Beazley reports on how AI, new tech distract businesses as cyber risk intensifies

London, July 13, 2023 — Beazley, the leading specialist insurer, today published its latest Risk & Resilience report: Spotlight on: Cyber & Technology Risks 2023. The data shows how perceptions around cyber and technology risks, from ...

BSides Knoxville 2023 – Sara Anstey – Educating Your Guesses: How To Quantify Risk and Uncertainty

Our thanks to BSides Knoxville for publishing their presenter’s outstanding BSides Knoxville 2023 content on the organizations’ YouTube channel. Permalink The post BSides Knoxville 2023 – Sara Anstey – Educating Your Guesses: ...

Compliance Champions: How MSPs Help SMBs Comply with NIST 800-53

If your clients work with the federal government, it’s quite likely they should be compliant with the National Institute of Standards and Technology (NIST) 800-53 standards, which serve as guidelines to help organizations implement mature ...

Microsoft Entra Expands, Azure Active Directory is Now Entra ID

Microsoft revealed its Azure Active Directory (Azure AD) enterprise identity service will be rebranded Entra ID, a change that will occur by the end of the year. The post Microsoft Entra Expands, Azure Active Directory is Now Entra ID appeared ...

Attack Surface Management (ASM) – What You Need to Know

Attack Surface Management (ASM) - what you need to know about its strengths and weaknesses when it comes to cyber resilience. The post Attack Surface Management (ASM) – What You Need to Know appeared first on SafeBreach. The post Attack Surface ...

China Breaches Microsoft Cloud — Spied on US Govt. Email

Storm-0558 Brewing: Multiple Microsoft failures cause data leaks at State and Commerce depts., plus 23 other orgs. The post China Breaches Microsoft Cloud — Spied on US Govt. Email appeared first on Security Boulevard.