Application Security News and Articles


DTEX Systems and GuidePoint Security Expand Insider Risk Partnership

We are excited to officially announce that DTEX Systems is joining GuidePoint Security’s Emerging Cyber Vendor Program. As part of this program, the DTEX InTERCEPT™ Insider Risk platform will soon be available under GuidePoint’s GSA ...

Increased spending doesn’t translate to improved cybersecurity posture

Security teams are stretched, with not enough people, skills or budget to cope with all their priorities, according to Panaseer. Average cybersecurity budgets increase in 2023 The survey of over 400 cybersecurity decision makers and practitioners ...

GuardRails Named in Gartner® 2023 Market Guide for Continuous Compliance Automation Tools in DevOps

GuardRails is listed in Gartner’s 2023 Market Guide for Compliance Automation Tools in DevOps, specifically in the Representative List of vendors under “Application Code Compliance”. The post GuardRails Named in Gartner® 2023 Market Guide ...

News Alert: NowSecure Achieves SOC 2 Type 2 certification for 4th consecutive year

Chicago, Ill., June 21, 2023 – NowSecure, the recognized experts in mobile security and privacy, announced today that it has completed its latest annual SOC 2 Type 2 security audit – the industry benchmark for independent auditing of security ...

News Alert: IRONSCALES beta-launches a new generative AI tool to improve email security

Atlanta, Ga. June 20, 2023 – IRONSCALES, the leading enterprise cloud email security platform protecting more than 10,000 global organizations worldwide, today announced the Beta launch of Themis Co-pilot for Microsoft Outlook, a GPT-powered ...

Putting Identity at the Center of the Connected Vehicle

The key to secure, seamless experiences Would you be surprised to learn that 91% of all new car sales in the U.S. are "connected vehicles." Not me. I've been watching the automotive world evolve, creating an ecosystem bristling with distinct ...

Apple Patches iOS Flaws Used in Kaspersky ‘Operation Triangulation’ 

Apple ships major iOS security updates to cover code execution vulnerabilities already exploited in the wild. The post Apple Patches iOS Flaws Used in Kaspersky ‘Operation Triangulation’  appeared first on SecurityWeek.

BSidesSF 2023 – Stacey Champagne – The Big “P” Problem In Cybersecurity

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Stacey Champagne – The Big “P” Problem In Cybersecurity ...

Why Malware Crypting Services Deserve More Scrutiny

If you operate a cybercrime business that relies on disseminating malicious software, you probably also spend a good deal of time trying to disguise or "crypt" your malware so that it appears benign to antivirus and security products. In fact, ...

For Execs and Boards, Cybersecurity Can No Longer Be Ignored

Very few events can impact a business on so many levels as a cybersecurity incident. Disruption and downtime can cost millions in missed revenue, while fines, remediation, and reputational damage can rack up millions more in associated costs. ...

Ethical Problems in Computer Security

Tadayoshi Kohno, Yasemin Acar, and Wulf Loh wrote excellent paper on ethical thinking within the computer security community: “Ethical Frameworks and Computer Security Trolley Problems: Foundations for Conversation“: Abstract: The computer ...

Critical Vulnerability Discovered in Patched Zyxel Storage Devices

On June 20, 2023, Zyxel, a well-known network-attached storage (NAS) device manufacturer, disclosed a critical security flaw known as CVE-2023-27992. This pre-authentication command injection vulnerability has been assigned a high CVSS score of ...

CISOs’ New Stressors Brought on by Digitalization: Report

Digitalization brings new security challenges, new concerns, and new threats, and CISOs should not think that it’s just business as usual. The post CISOs’ New Stressors Brought on by Digitalization: Report appeared first on SecurityWeek.

The Pax8 Beyond Conference and… Beyond!

At an event headlined by a roundtable discussion with none other than Peyton Manning and a surprise performance by -- wait for it -- Nelly (yes, that Nelly, of "Hot in Here" fame), by far the biggest development of Pax8's inaugural Beyond ...

Netography Joins Wiz Integration (WIN) Platform, Speeding Vulnerability Management for Joint Customers

Netography now integrates with Wiz to accelerate and simplify detection and mitigation of malicious activity targeting cloud assets. A true “better together” partnership and we remain proud to be part of the Wiz Integration (WIN) program The ...

Comic Agilé – Mikkel Noe-Nygaard, Luxshan Ratnarav – #247 — When Is The Agile Transformation Done?

via the respected Software Engineering expertise of Mikkel Noe-Nygaard as well as the lauded Software Engineering and Enterprise Agile Coaching talent of Luxshan Ratnarav at Comic Agilé! Permalink The post Comic Agilé – Mikkel ...

MITRE’s System of Trust: A discussion about standardizing software supply chain risk

The post MITRE’s System of Trust: A discussion about standardizing software supply chain risk appeared first on Security Boulevard.

How Silverfort Solves the Toughest Challenges of Privileged Access Management

The standard way of addressing security issues that stem from an organization’s privileged user accounts is with a privileged access management (PAM) solution, which can be a very effective tool against threats that target admin credentials. ...

Passkeys standard: Time to add it to your dev plans?

The post Passkeys standard: Time to add it to your dev plans? appeared first on Security Boulevard.

How Secure Are Passkeys?

As I was walking around Identiverse last week, I was reminded of the old Barbara Mandrell song, “I Was Country, When Country Wasn’t Cool.” HYPR has been doing passkeys since passkeys (then known simply as FIDO credentials) weren’t cool. ...