Application Security News and Articles


Immuta’s integration with Databricks provides security at scale for data and AI workloads

Immuta has announced key enhancements to its Data Security Platform for Databricks that enable data teams to leverage Immuta’s full platform capabilities, unlocking value from data, reducing costs, and speeding up innovation while ...

BSidesSF 2023 – Terry O’Daniel – Go Far Together: Building Your Squad

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Terry O’Daniel – Go Far Together: Building Your Squad appeared ...

New Relic APM 360 gives engineers a shared view of their application health

New Relic has launched New Relic APM 360, that goes beyond incident troubleshooting insights for select experts to daily performance, security & development insights for all engineers. APM 360 correlates all essential telemetry data across ...

Fortinet Patches Critical RCE Vulnerability in FortiNAC

Fortinet releases patches for a critical FortiNAC vulnerability leading to remote code execution without authentication. The post Fortinet Patches Critical RCE Vulnerability in FortiNAC appeared first on SecurityWeek.

Tines Adds Tool to Customize Automated Cybersecurity Workflows

Tines added a case management tool to its no-code automation platform that makes it simpler for cybersecurity teams to track individual incidents, investigate security breaches and manage response activities. The post Tines Adds Tool to Customize ...

RIP Passwords: Why the Future Is Passwordless

Almost every website, app, and user platform now requires usernames and passwords. And for user data to remain secure, passwords must be strong—most platforms require a mix of upper and lower case letters, numbers, and special characters.  The ...

Regula enhances solution for document verification to help users detect forgery

49% of organizations around the world had to deal with fake or modified physical identity documents in 2022, as Regula’s survey revealed. With this fraud always on the rise, Regula is reinforcing its solution for document verification with ...

Pradeo launches unmatched benefits for MSSPs with its latest Mobile Threat Defense release

While mobile users are increasingly falling victims of cybercriminals, organizations are raising their spending in mobile endpoint detection and response solutions (Mobile EDR). To tackle these new cybersecurity threats, they are turning to their ...

Databricks acquires MosaicML to make generative AI accessible for every organization

Databricks has entered into a definitive agreement to acquire MosaicML, a generative AI platform. Together, Databricks and MosaicML will make generative AI accessible for every organization, enabling them to build, own and secure generative AI ...

Adventures in Audits, Part Two: How Business Context Affects the Bottom Line

In the second of a three-part series, we explore three common business scenarios that could trigger a software audit. The post Adventures in Audits, Part Two: How Business Context Affects the Bottom Line appeared first on Security Boulevard.

Malicious Actors Utilizing QR Codes to Deploy Phishing Pages to Mobile Devices

Author: Kian Buckley Maher  SEG Bypassed: Microsoft  The Cofense Phishing Defense Center (PDC) has noted an increase in the number of malicious emails utilising this attack vector. In an attempt to bypass traditional file and text detection ...

Top 5 Industries Most Vulnerable to Data Breaches in 2023

Today’s interconnected digital landscape has enabled organizations to unlock new levels of efficiency via automation, cloud storage, modernization of legacy applications, and much more. Unfortunately, the increasing reliance on digital systems ...

Enterprises Are Getting Better at Breach Prevention. But Attackers Are Getting Better, Too.

2023 ForgeRock Breach Report underscores the need for AI-powered identity We are excited to announce the release of our fifth annual ForgeRock Identity Breach Report. Our goal each year is to discover what's trending — how enterprises are being ...

British Twitter Hacker Sentenced to Prison in US

UK national Joseph James O’Connor was sentenced to five years in a US prison for hacking into Twitter accounts and stealing cryptocurrency. The post British Twitter Hacker Sentenced to Prison in US appeared first on SecurityWeek.

MOVEit compromise affects pension systems, insurers

The compromise of PBI Research and The Berwyn Group’s MOVEit installation has resulted in the theft of data belonging to several pension systems and insurance companies – and millions of their users. PBI + Berwyn Group – a ...

CISA Says Critical Zyxel NAS Vulnerability Exploited in Attacks

CISA has warned users of Zyxel NAS products that the recently patched critical vulnerability CVE-2023-27992 has been exploited in attacks. The post CISA Says Critical Zyxel NAS Vulnerability Exploited in Attacks appeared first on SecurityWeek.

Remotely Exploitable DoS Vulnerabilities Patched in BIND

The latest BIND updates address three high-severity, remotely exploitable vulnerabilities leading to denial-of-service (DoS). The post Remotely Exploitable DoS Vulnerabilities Patched in BIND appeared first on SecurityWeek.

PCI DSS 4.0 – Those Vulnerability Scans Just Got A LOT Tougher

Vulnerability scans are very configurable and range in efficacy based on the settings chosen. For instance, the scan can be […] The post PCI DSS 4.0 – Those Vulnerability Scans Just Got A LOT Tougher appeared first on Security Boulevard.

Demystifying Microsegmentation vs. Network Segmentation

Understanding the distinctions and benefits of microsegmentation and network segmentation and making the right choice I’m probably asked at least once a week about the difference between microsegmentation and network segmentation. Writing this ...

Comodo Positive SSL Certificate Review

Is Positive SSL good? For any website desiring to establish… Continue reading Comodo Positive SSL Certificate Review The post Comodo Positive SSL Certificate Review appeared first on SSLWiki. The post Comodo Positive SSL Certificate Review ...