Application Security News and Articles


US, Israel Provide Guidance on Securing Remote Access Software

US and Israeli government agencies have published new guidance on preventing malicious exploitation of remote access software. The post US, Israel Provide Guidance on Securing Remote Access Software appeared first on SecurityWeek.

How to choose a CAASM vendor

Getting the most out of your security investments is more than demonstrating ROI. Learn how you can strengthen your security posture while simplifying your tech stack. The post How to choose a CAASM vendor appeared first on Security Boulevard.

Velotix releases modular architecture for its data security platform

Velotix has released a three-tiered architecture for its security platform that enables enterprises to transition towards fully automated data access. By beginning with data discovery and auto-tagging, and then evolving towards AI powered data ...

CoSoSys offers same-day support for Apple’s macOS Sonoma

CoSoSys announced that it will provide same-day support for the upcoming macOS Sonoma release. MacOS Sonoma (macOS 14) is scheduled for release later in 2023. CoSoSys customers using its Endpoint Protector solution for Device Control and DLP, ...

Sysdig Extends Reach of CNAPP Via Agentless Edition of Falco

Sysdig today extended the reach of its cloud-native application protection platform (CNAPP) using an agentless implementation of the Falco engine it created to protect runtime environments. Announced at the Gartner Security and Risk Summit ...

The Privacy-Control Trade-Off: User Privacy Vs. Corporate Control

One of the most powerful principles of economics is the concept of trade-offs. Whether it’s deciding to buy a new car rather than putting that money toward your retirement or the trade-off we make when we entrust our private information to ...

Immersive Labs and Accenture join forces to address the cybersecurity talent deficit

Immersive Labs and Accenture are working together to launch the Cyber Million program that aims to solve the cybersecurity talent deficit by increasing access to one million entry-level cybersecurity operations jobs over the next decade. The beta ...

An Ultimate Guide To Integrate AI and ML with .NET Applications

For over two decades, numerous businesses have preferred .NET applications for their exceptional speed, stability, security, and scalability. But, now, maintaining a position in the market is getting complex, and the stakeholder requirements are ...

OWASP’s 2023 API Security Top 10 Refines View of API Risks

OWASP’s ranking for the major API security risks in 2023 has been published. The list includes many parallels with the 2019 list, some reorganizations/redefinitions, and some new concepts. The post OWASP’s 2023 API Security Top 10 Refines ...

Netflix: Is Password-Sharing a Crime?

On May 25, 2023 streaming content provider Netflix began enforcing its policy prohibiting the sharing of Netflix accounts even among family members who are not members of the same “household”—meaning living together in the same house. It ...

Network Perception NP-View platform 4.2 improves OT security analysis

Network Perception introduced its next-generation NP-View platform, providing improved scalability and throughput, making OT network path analysis and reporting more comprehensive. The new NP-View platform, version 4.2, powered by a ...

Android’s June 2023 Security Update Patches Exploited Arm GPU Vulnerability

Google’s June 2023 security update for Android patches more than 50 vulnerabilities, including an Arm Mali GPU flaw exploited by spyware vendors. The post Android’s June 2023 Security Update Patches Exploited Arm GPU Vulnerability ...

Nile collaborates with Palo Alto Networks to strengthen enterprise campus security

Nile announced a new integration with Palo Alto Networks. With the integration, joint customers can now benefit from a highly integrated solution that brings together Nile Access Service for enterprise campus (NaaS) and Palo Alto Networks ...

ChatGPT Hallucinations Can Be Exploited to Distribute Malicious Code Packages

Researchers show how ChatGPT/AI hallucinations can be exploited to distribute malicious code packages to unsuspecting software developers. The post ChatGPT Hallucinations Can Be Exploited to Distribute Malicious Code Packages appeared first on ...

Blumira Raises $15 Million for SMB-Tailored XDR Platform

Blumira raises $15 million in Series B funding and launches a new XDR platform for small and medium-sized businesses (SMBs). The post Blumira Raises $15 Million for SMB-Tailored XDR Platform appeared first on SecurityWeek.

Cloudbrink app with bridge mode replaces hardware based VPN and SD-WAN appliances

Cloudbrink launched a software-only solution that replaces hardware based VPN and SD-WAN appliances for power users in the hybrid workplace. The Cloudbrink app with bridge mode delivers 30 times the performance of small branch office and home ...

Microsoft Will Pay $20M to Settle US Charges of Illegally Collecting Children’s Data

Microsoft will pay a fine of $20 million to settle FTC charges that it illegally collected the data of children who signed up for Xbox. The post Microsoft Will Pay $20M to Settle US Charges of Illegally Collecting Children’s Data appeared ...

Exploited zero-day patched in Chrome (CVE-2023-3079)

Google has fixed a high-severity vulnerability in the Chrome browser (CVE-2023-3079) that is being exploited by attackers. About the vulnerability CVE-2023-3079 is a vulnerability that stems from a type confusion in the V8 JavaScript engine, and ...

High-risk vulnerabilities patched in ABB Aspect building management system

Prism Infosec has identified two high-risk vulnerabilities within the Aspect Control Engine building management system (BMS) developed by ABB. ABB’s Aspect BMS enables users to monitor a building’s performance and combines real-time ...

LogRhythm Holds its First UK Cybersecurity Summit to Share Expertise and Insights About Elevating Cybersecurity Efficiency

Register now for the inaugural event to maximize the efficiency of your security operations and combat the ever-growing threat landscape    London, UK, 6 June 2023 — LogRhythm, the company helping security teams stop breaches by turning ...