Application Security News and Articles


Cooperation or Competition? China’s Security Industry Sees the US, Not AI, as the Bigger Threat

China's security and surveillance industry is focused on shoring up its vulnerabilities to the US and other outside actors, worried about risks posed by hackers, advances in AI and pressure from rival governments. The post Cooperation or ...

Introducing the AppOmni SaaS Identity Fabric

Learn from our Chief Product Officer how Identity Fabric secures end-users, entitlements & threat-based activity for all of SaaS. The post Introducing the AppOmni SaaS Identity Fabric appeared first on AppOmni. The post Introducing the ...

AppOmni Launches Identity Fabric for Secure SaaS Data Access

Learn about our new enhanced identity-centric capability and how it provides advanced SaaS Identity Threat Detection and Response. The post AppOmni Launches Identity Fabric for Secure SaaS Data Access appeared first on AppOmni. The post AppOmni ...

Critical WordPress Plugin Vulnerabilities Impact Thousands of Sites

Two critical-severity authentication bypass vulnerabilities in WordPress plugins with tens of thousands of installations. The post Critical WordPress Plugin Vulnerabilities Impact Thousands of Sites appeared first on SecurityWeek.

News Alert: Survey shows vast majority of IT pros consider ‘passwordless’ access a top priority

Santa Clara, Calif. – June 21, 2023 – Axiad, a leading provider of organization-wide passwordless orchestration, today announced the results of its Passwordless Authentication survey fielded by Enterprise Research Group (ERG), a full-service ...

How to perform JavaBeans Validation

Continue reading on Medium »

Cloudflare joins forces with Databricks to enable organizations collaborate on live data

Cloudflare has partnered with Databricks to enable organizations to safely, simply, and affordably share and collaborate on live data. With Cloudflare and Databricks, joint customers can eliminate the complexity and dynamic costs that stand in ...

Kaspersky Dissects Spyware Used in iOS Zero-Click Attacks

Russian anti-malware vendor shares technical details on spyware implant deployed as part of recent zero-click iMessage attacks. The post Kaspersky Dissects Spyware Used in iOS Zero-Click Attacks appeared first on SecurityWeek.

Enphase Ignores CISA Request to Fix Remotely Exploitable Flaws

Enphase Energy has ignored CISA requests to fix remotely exploitable vulnerabilities in Enphase products. The post Enphase Ignores CISA Request to Fix Remotely Exploitable Flaws appeared first on SecurityWeek.

Exabeam launches Outcomes Navigator to help organizations detect security threats

Exabeam has announced the general availability of Outcomes Navigator, an advanced visualization feature within the New-Scale SIEM product portfolio. Outcomes Navigator helps cybersecurity leaders overcome one of their most significant challenges ...

Top 5 Takeaways from the CISA 2023-2025 Strategic Plan That the Cybersecurity Community Should Know About

CISA identifies goals for the strategy as spearheading “the national effort to ensure the defense and resilience of cyberspace,” helping partners protect critical infrastructure, and supporting stronger “whole-of-nation operational ...

Techstrong Adds Two Industry Luminaries

DevOps pioneer and author John Willis and cybersecurity leader Shira Rubinoff join the team at Techstrong Group Boca Raton, FL, June 21, 2023 — Techstrong, the power source for people and technology, that empowers people and technology, today ...

Habu announces AWS Clean Rooms solution for democratized data collaboration

Habu has joined the Amazon Web Services (AWS) Partner Network (APN) and has launched a new solution to integrate its Data Clean Room offering with AWS Clean Rooms, and enable customers and their partners to analyze their collective data sets ...

RVAsec 2023: Improving ourselves, our security, and our community

RVAsec 2023 was the largest edition of this annual cybersecurity event in the heart of Virginia. Topics covered include improving our teams, CISO research, user security, and more. The post RVAsec 2023: Improving ourselves, our security, and our ...

How to Build a Data Classification Policy

A data classification policy is critical to your business’s data protection strategy. Understand data classification categories and access tips to create and update your policy. The post How to Build a Data Classification Policy appeared first ...

Smart Tvs require even smarter security measures

Smart TV Dilemmas It's hard nowadays to find a TV that is not "smart". They all come preloaded with apps to watch Netflix, Disney+ and the like. Not everyone has a new TV though. For older "dumb" TVs, streaming devices are very popular. And even ...

MOVEIt Vulnerability: A Painful Reminder That Threat Actors Aren’t the Only Ones Responsible for a Data Breach

The MOVEit breach is a reminder that data breaches aren't just caused by cybercriminals. Learn how to protect your organization from within. The post MOVEIt Vulnerability: A Painful Reminder That Threat Actors Aren’t the Only Ones Responsible ...

SDP: The Paradigm Shift in Network Security You Can’t Ignore

In its heyday, the virtual private network (VPN) commanded immense respect as a groundbreaking leap forward in IT security, establishing an invincible perimeter for protecting confidential data. But that was almost 30 years ago in the mid-19902 ...