Application Security News and Articles


Blue Team Con announces Lesley Carhart as keynote speaker

Blue Team Con has announced that Lesley Carhart will deliver the keynote address titled “We’re All Scared, Too: 10 Years of Lessons from Cybersecurity Mentorship” at the conference. “We are thrilled to have Lesley as our keynote ...

API Flaw in QuickBlox Framework Exposed PII of Millions of Users

QuickBlox SDK and API vulnerabilities impact chat and video applications used by industries including telemedicine, smart IoT, and finance. The post API Flaw in QuickBlox Framework Exposed PII of Millions of Users appeared first on SecurityWeek.

SentinelOne Context Integration with Netography Fusion Accelerates Investigation, Incident Response, and Policy Enforcement

Our Netography Fusion® platform now enables customers to leverage data collected by your SentinelOne agents to accelerate their investigation, incident response, and policy enforcement within the Fusion platform. The post SentinelOne Context ...

Randall Munroe’s XKCD ‘Contact Merge’

via the comic artistry and dry wit of Randall Munroe, resident at XKCD! Permalink The post Randall Munroe’s XKCD ‘Contact Merge’ appeared first on Security Boulevard.

The hidden pitfalls of travel apps

Any seasoned traveler will know just how just how many single-use apps are downloaded over the course of an average vacation. These days, everything from watching movies on the plane to checking into your hotel or accessing your tickets to a ...

Copyright Infringement Examples: Lessons to Help You Protect Your Business

Copyright infringement is a fairly common technique for cyber criminals looking to profit off unsuspecting businesses and consumers. Individuals and businesses indulge in it for various reasons, ranging from pure ignorance to wilful infringement ...

Security Journey announces accelerated learning platform updates for developers

Security Journey announced an acceleration of its secure coding training platform enhancements. Since combining HackEDU and Security Journey training offerings into one Platform, the company has added or refreshed almost 200 lessons and 25 ...

Six Best Practices for a Pragmatic Approach to Phishing Resistance

The importance of implementing a phishing-resistant strategy has transitioned from being a “nice to have”... The post Six Best Practices for a Pragmatic Approach to Phishing Resistance appeared first on Axiad. The post Six Best Practices for ...

Truework Guardian improves employee data security

Truework launched Truework Guardian, a new verification automation tool for employees, employers and payroll providers that replaces the manual HR verification process while increasing the protection of sensitive data. Guardian is a solution to ...

SMS Traffic Monitoring

SMS Traffic Monitoring: Stay Secure, Stay Ahead SMS has become a vital communication tool for businesses in today’s digital landscape, facilitating seamless text message exchanges that are crucial for interactions between companies and ...

AU10TIX app automates identity and age verification for businesses

AU10TIX launched the AU10TIX app, empowering customer-facing businesses with automated, in-person and point of sale (POS) identity and age verification capabilities. The app enables companies to securely verify IDs in the field within 4-8 ...

Special report: Fighting fraud in the age of AI and automation

See findings from Sift’s Q2 2023 Digital Trust & Safety Index, which includes data and insights on how AI and automation are changing the scope of fraud. The post Special report: Fighting fraud in the age of AI and automation appeared first ...

Cisco Shopping Spree Adds Oort ID Threat Detection Tech

The planned Oort purchase is Cisco’s fourth acquisition of a cybersecurity company in the first half of 2023. The post Cisco Shopping Spree Adds Oort ID Threat Detection Tech appeared first on SecurityWeek.

BlackLotus UEFI Bootkit Source Code Leaked on GitHub

The source code for the BlackLotus UEFI bootkit has been leaked on GitHub and an expert has issued a warning over the risks. The post BlackLotus UEFI Bootkit Source Code Leaked on GitHub appeared first on SecurityWeek.

Honeywell DCS Platform Vulnerabilities Can Facilitate Attacks on Industrial Organizations

Cybersecurity company Armis has identified several vulnerabilities in Honeywell ICS products that could expose industrial organizations to attacks. The post Honeywell DCS Platform Vulnerabilities Can Facilitate Attacks on Industrial Organizations ...

ManageEngine adds OpenAI observability to Site24x7

ManageEngine has added OpenAI observability as a native capability to Site24x7, its comprehensive cloud-based observability platform. The offering enables application owners to monitor the utilization of different OpenAI models seamlessly while ...

BSides Knoxville 2023 – Chris Koehnecke – Minimum Viable Security for Cloud Native Stacks

Our thanks to BSides Knoxville for publishing their presenter’s outstanding BSides Knoxville 2023 content on the organizations’ YouTube channel. Permalink The post BSides Knoxville 2023 – Chris Koehnecke – Minimum Viable ...

Safe Security Buys RiskLens to Advance Cybersecurity Risk Management

Safe Security acquired RiskLens, a pioneer in the development of the Factor Analysis of Information Risk (FAIR) quantification standard for assessing cybersecurity risk. The post Safe Security Buys RiskLens to Advance Cybersecurity Risk ...

Concentric AI unveils archetype functionality for data discovery and protection

Concentric AI has announced an archetype functionality for granularity and precision of data discovery and protection. Archetype in the context of data discovery, classification and risk remediation is a specific type of data or file that ...

Secure Code Warrior raises $50 million to accelerate product innovation

Secure Code Warrior closed its Series C funding round, led by Paladin Capital Group. At $50 million, this marks the largest investment since the company’s inception, bringing its total funding to date to over $100 million. The new funding will ...