Application Security News and Articles


Industry responses and strategies for navigating the tides of DDoS attacks

It is important not to underestimate the potentially devastating impact of DDoS attacks. Organizations of all sizes should take proactive measures to mitigate and safeguard against DDoS attacks, ensuring the continuity and resilience of their ...

Compliance seizes spotlight in the connected devices arena

Investment in connected device security has accelerated as upcoming legislation affecting the sector becomes more prominent, according to PSA Certified. This acceleration also highlights a noticeable difference from last year in the level of ...

Apple Ships Urgent iOS Patch for WebKit Zero-Day

Apple rolls out urgent iOS and iPadOS software updates and warned that zero-day exploitation has already been detected. The post Apple Ships Urgent iOS Patch for WebKit Zero-Day appeared first on SecurityWeek.

The Seven Phases of a Ransomware Attack: A Step-by-Step Breakdown of the Attack Lifecycle

Understanding the anatomy of a ransomware attack empowers security teams to strengthen defenses, reduce the risk of successful attacks, and protect organizations from the serious consequences of a ransomware incident. The post The Seven Phases of ...

Chinese State-Linked Information Operation Revealed Social Media Account Takeover Potential

Nisos Chinese State-Linked Information Operation Revealed Social Media Account Takeover Potential Nisos investigators identified a network of pro-Beijing Twitter accounts likely engaged in state-backed information operation targeting audiences in ...

Securing Our Schools: The Urgent Need for Cybersecurity in K12 Education

Cybersecurity is often at the bottom of the list of concerns for schools, but recent events demonstrate that it must be urgently prioritized. Cybercriminals are targeting schools at an alarming rate.  A CBS news investigation found that only one ...

Exploit Code Published for Remote Root Flaw in VMware Logging Software

VMware confirmed that exploit code for CVE-2023-20864 has been published, underscoring the urgency for enterprise network admins to apply available patches. The post Exploit Code Published for Remote Root Flaw in VMware Logging Software appeared ...

BSides Knoxville 2023 – Marc Messer – Getting Started in Reverse Engineering

Our thanks to BSides Knoxville for publishing their presenter’s outstanding BSides Knoxville 2023 content on the organizations’ YouTube channel. Permalink The post BSides Knoxville 2023 – Marc Messer – Getting Started in Reverse ...

Innovating with Our Security Advisory Board

One of my biggest takeaways from my experience leading the product management team at Signal Sciences was the value of focusing on the... The post Innovating with Our Security Advisory Board appeared first on Security Boulevard.

Data Trustworthiness in the Energy Industry: Challenges, Risks, and Recommendations

Introduction: The Age of Constant Change Forbes, in 2022 identified decarbonization, decentralization, and digitization as the three major trends transforming the energy industry. Digitization, in particular, affects every facet of the energy ...

StackRot: Linux Bug so bad Linus Dives Into Code to Fix It

Maple Tree Side Effects: Torvalds feels the pressure, fixes lazy locks. The post StackRot: Linux Bug so bad Linus Dives Into Code to Fix It appeared first on Security Boulevard.

Europe Signs Off on a New Privacy Pact That Allows People’s Data to Keep Flowing to US

The EU signed off on a new agreement over the privacy of people’s personal information that gets pinged across the Atlantic, aiming to ease European concerns about electronic spying by American intelligence agencies. The post Europe Signs Off ...

Randall Munroe’s XKCD ‘Frankenstein Claim Permutations’

Permalink The post Randall Munroe’s XKCD ‘Frankenstein Claim Permutations’ appeared first on Security Boulevard.

TPG to Acquire Forcepoint’s Government Cybersecurity Business Unit

Private equity giant plans to buy Forcepoint’s Global Governments and Critical Infrastructure (G2CI) business unit for $2.5 billion. The post TPG to Acquire Forcepoint’s Government Cybersecurity Business Unit appeared first on SecurityWeek.

Organizations Need to Establish Trust to Enhance Supply Chain Security

Enhancing the trust and security of the supply chain is on the minds of many a cybersecurity executive today, and will likely be a topic of interest and concern in the months and years to come. It’s not surprising then, that the focal point of ...

Outcome-based deployment services

How delivering outcomes changes everything in enterprise software deployment Today's business landscape is fast-paced and competitive. Software deployment enables businesses to adopt innovative solutions that boost security and operational ...

Platform Engineering: Building Your Developer Portal with Backstage (Pt 2)

Enhance your portal's capabilities with backend plugins and unlock custom functionalities in the second part of our Backstage tour. Step-by-step instructions provided! The post Platform Engineering: Building Your Developer Portal with Backstage ...

Imperva Offers New Features to Simplify PCI DSS Compliance

The Silent Threat of Client-Side Attacks As more transactions move online, a silent threat is lurking in the deepest, darkest shadows of websites, threatening to steal your sensitive data. This rapidly evolving threat, known as client-side ...

BSides Knoxville 2023 – Omar Minawi – Client-Side JavaScript From Your Nightmares: Multi-Step XSS Attacks And Defenses

Our thanks to BSides Knoxville for publishing their presenter’s outstanding BSides Knoxville 2023 content on the organizations’ YouTube channel. Permalink The post BSides Knoxville 2023 – Omar Minawi – Client-Side JavaScript ...

Critical Infrastructure Services Firm Ventia Takes Systems Offline Due to Cyberattack

Critical infrastructure services provider Ventia has taken some systems offline following a cyberattack. The post Critical Infrastructure Services Firm Ventia Takes Systems Offline Due to Cyberattack appeared first on SecurityWeek.