Application Security News and Articles


Hackers breached UPS data for SMS phish spree

The post Hackers breached UPS data for SMS phish spree appeared first on Security Boulevard.

Lessons From Clop: Combating Ransomware and Cyber Extortion Events

Recent attacks from Clop emphasize the importance of implementing an organization-wide ransomware and cyber extortion strategy, from preparedness to detection and isolation The post Lessons From Clop: Combating Ransomware and Cyber Extortion ...

Credential Stuffing vs Password Spraying

Credential Stuffing vs. Password Spraying: What’s the Difference? Credential stuffing and password spraying are two forms of brute-force password attacks frequently used by bad actors. These attacks are similar, but they also differ in some ...

Randall Munroe’s XKCD ‘Alphabet Notes’

via the comic artistry and dry wit of Randall Munroe, resident at XKCD! Permalink The post Randall Munroe’s XKCD ‘Alphabet Notes’ appeared first on Security Boulevard.

Stepping Up Cybersecurity: An In-depth Look at SCA and SAST

As organizations mature their cybersecurity strategy and look for ways to more comprehensively secure their environment and assets, application security (AppSec) is of paramount importance. As threats grow in complexity and developer environments ...

Data Security Firm Cyera Attracts $100M Investment

Cyera closes a massive $100 million round as investors continue to pour cash into the data security posture management (DSPM) space. The post Data Security Firm Cyera Attracts $100M Investment appeared first on SecurityWeek.

Cequence Security strengthens API protection platform with generative AI and no-code security automation

Cequence Security announced new updates to the Unified API Protection (UAP) platform that strengthen customers’ ability to discover, manage risk and protect APIs. With the latest capabilities, organizations can rapidly deploy API Security ...

A Double Supply Chain Attack and The Importance of TPRM

Third-party risk management (TPRM) is a critical aspect of cybersecurity due to the increasing interdependencies and complexities in today’s global, interconnected networks and systems. TPRM’s importance is most acutely evident when ...

Achieving Zero Trust That Works

What’s the secret to overcoming common roadblocks when implementing Zero Trust The concept of Zero... The post Achieving Zero Trust That Works appeared first on Entrust Blog. The post Achieving Zero Trust That Works appeared first on Security ...

Index Engines CyberSense 8.3 identifies malicious changes indicative of cyberattack

Index Engines announced CyberSense 8.3, which features several user experience updates highlighted by additional metrics after a ransomware attack is detected, a new setup wizard and system configuration interface. CyberSense scans backup data ...

3 ways to use Common Attack Patterns to abuse an API

How to use Common Attack Patterns to improve your API security testing methodology. The post 3 ways to use Common Attack Patterns to abuse an API appeared first on Dana Epp's Blog. The post 3 ways to use Common Attack Patterns to abuse an API ...

BeeKeeperAI Platform for AI Development on Sensitive Data Receives $12M in Funding

BeeKeeperAI has raised $12.1 million in Series A funding for a secure collaboration platform designed for AI development on healthcare and other sensitive data. The post BeeKeeperAI Platform for AI Development on Sensitive Data Receives $12M in ...

Essential 8 Maturity Model: Achieving Cyber Security Excellence

The process of attaining Essential 8 (E8) compliance and what it could mean for your business. The post Essential 8 Maturity Model: Achieving Cyber Security Excellence appeared first on Scytale. The post Essential 8 Maturity Model: Achieving ...

Product Update: Discover Unmonitored SaaS Applications via Identity Providers

See how AppOmni’s June 2023 product update discovers SaaS apps connected through identity providers. The post Product Update: Discover Unmonitored SaaS Applications via Identity Providers appeared first on AppOmni. The post Product Update: ...

Delinea Privilege Manager enhancements reduce phishing effectiveness

Delinea announced the latest release of Privilege Manager, its solution for providing privilege elevation controls for users and applications on workstations. The latest enhancements significantly improve ease of use for customers by ...

Protecting Confidential Documents: The Power of Hidden Anti-Leak Marks

This article examines three vital aspects of document confidentiality: Access Control, Monitoring, and Detection, with a focus on steganography. The post Protecting Confidential Documents: The Power of Hidden Anti-Leak Marks appeared first on ...

BeeKeeperAI raises $12.1 million to accelerate AI development on privacy protected healthcare data

BeeKeeperAI has closed $12.1 million in Series A financing. The round was led by Sante Ventures, with participation from the Icahn School of Medicine at Mount Sinai, AIX Ventures, Continuum Health Ventures, TA Group Holdings, and UCSF. The new ...

BSidesSF 2023 – Wilson Tang – Using Machine Learning To Detect Sensitive Documents On SharePoint

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Wilson Tang – Using Machine Learning To Detect Sensitive ...

Your Shopping List for Security & Privacy Program Essentials

Whether your org is about to begin its journey for SOC 2, or you’re planning to wrangle up more standards (think ISO 27001, CMMC, and HIPAA, to name a few), the set of tools and software you have in place can be make-or-break. We asked our ...

LexisNexis RiskNarrative helps organizations reduce risk and financial crime

LexisNexis Risk Solutions has launched an end-to-end customer lifecycle management platform to help businesses effortlessly integrate multiple information sources to make better risk decisions and provide smoother customer journeys. LexisNexis ...