Application Security News and Articles


Elevate Your SOC Efficiency: 3 Reasons to Attend SecureRhythm Summit

Cyber efficiency has never been more important for security teams. The cyberthreat landscape is growing rapidly, with approximately 2.39 million instances of cybercrime occurring in the last 12 months in UK businesses alone.  As part of our ...

RSAC Fireside Chat: A breakthrough in securing cloud collaboration — decentralized key storage

Back in 2002, when I was a reporter at USA Today, I had to reach for a keychain fob to retrieve a single-use passcode to connect remotely to the paper’s publishing system. Related: A call to regulate facial recognition… (more…) The post ...

How to make developers love security

In my last post I discussed how developers can be your security secret weapon… but how to help them love doing security work? That’s a whole other challenge! Stories of the tension between developers and security teams are a longstanding ...

Self-Managed Rules – AppTrana Feature Update Overview

AppTrana's Self-Managed Rules empower you to take control, allowing you to create, view, and manage the custom rules all by yourself! The post Self-Managed Rules – AppTrana Feature Update Overview appeared first on Indusface. The post ...

Embracing realistic simulations in cybersecurity training programs

In this Help Net Security video, Ed Adams, CEO of Security Innovation, discusses the shifts in cybersecurity training. 60% of companies now include realistic simulations in their cybersecurity training programs compared to 36% in 2020. According ...

Public sector apps show higher rates of security flaws

Applications developed by public sector organizations tend to have more security flaws than applications created by the private sector, according to Veracode. The findings are notable because increased numbers of flaws and vulnerabilities in ...

Current SaaS security strategies don’t go far enough

Many recent breaches and data leaks have been tied back to SaaS apps, according to Adaptive Shield. “We wanted to gain a deeper understanding of the incidents within SaaS applications and how organizations are building their threat prevention ...

Mind the Gap! Who’s Accountable to Protect Against Identity Threats in your Organization?

Identity threats (i.e., the use of compromised credentials for malicious access to targeted resources) have become the dominant element of today’s threat landscape. Moreover, these are the threats that organizations find the hardest to protect ...

What is Incident Response? Plans, Templates and Tools

The post What is Incident Response? Plans, Templates and Tools appeared first on Low-Code Security Automation & SOAR Platform | Swimlane. The post What is Incident Response? Plans, Templates and Tools appeared first on Security Boulevard.

Unveiling Critical Insights on Data Breaches: Exploring the Latest Verizon DBIR and the Role of API Security

The digital landscape is fraught with ever-evolving threats, making it crucial for organizations to stay informed about the latest trends in data breaches and cyber-attacks. The Verizon Data Breach Investigations Report (DBIR) serves as a ...

Service Rents Email Addresses for Account Signups

One of the most expensive aspects of any cybercriminal operation is the time and effort it takes to create large numbers of new throwaway email accounts. Now a new service offers to help dramatically cut costs associated with large-scale spam and ...

Walking the Line Between Compliance and Productivity in your Security Program

James Ogier, Resolution IT's senior information security consultant, is a big proponent for creating cybersecurity programs that both address the information security needs and elevate company productivity and success – but how is this actually ...

11 Ways ArmorCode Helps AppSec Teams

As software release cycles accelerate, security teams lack visibility into the growing application inventory and often find themselves unable to filter the overwhelming number of software vulnerabilities, findings and alerts that are generated ...

Mastering Cloud Security Audits: Checklist & Steps

Reading Time: 7 minutes Mastering Cloud Security Audits: Your Ultimate Checklist & Steps A cloud security audit is an assessment of whether a cloud environment’s security is sufficient. It is conducted typically by a third-party often to ...

Risk or Threat Oriented Security: Which Path Should We Choose?

Lately, I've been engaged in various discussions about what should drive our security efforts: risk or threats. It's an interesting debate, and today I want to explore it with you in a more engaging and enjoyable way. Let's start with the ...

CVE-2023-34362 – MOVEit Transfer Zero-Day SQL Injection Vulnerability Actively Exploited in the Wild

Progress Software has recently (May 31st, 2023) released a security advisory regarding a critical zero-day vulnerability affecting ALL VERSIONS of the company’s MOVEit product which is being actively exploited in the wild in order to exfiltrate ...

Deep fake audio & visuals: How that can affect your cyber security awareness program

The post Deep fake audio & visuals: How that can affect your cyber security awareness program appeared first on Click Armor. The post Deep fake audio & visuals: How that can affect your cyber security awareness program appeared first on ...

Mastering the Art of Kubernetes Security 

With Kubernetes’ explosive adoption by the development community comes an urgent need to secure K8s clusters and ensure their compliance effectively The post Mastering the Art of Kubernetes Security  appeared first on Ermetic. The post ...

Understand the Connection between SOAR and Identity Security

SOAR and identity security offer a powerful combination to combat modern cyber threats — where identities and SaaS create the ultimate attack surface. The post Understand the Connection between SOAR and Identity Security appeared first on ...

Get to know CISO David Lindner | Code Patrol podcast | Contrast Security

There are multiple ways to cheat at ice fishing, Contrast Security CISO David Lindner assures me, because he is the kind of guy who will and who has stood out on a Minnesota river that’s frozen 5 feet deep in -65° F weather, exposed to ...