Application Security News and Articles


Netflix Cracks Down on Password Sharing, AI Legal Research Gone Wrong, Fake Identities and Surveillance Firms

Netflix plans to crack down on the widespread practice of password sharing among households. We discuss their new verification feature and its impact on user experience and security. A lawyer finds himself in hot water after relying on ChatGPT ...

How fraudsters undermine text passcodes

Malicious bots are taking new forms – a burst of spam and scam text messages led to 18,000+ consumer complaints at the FCC last year. One of the newest scams – artificial inflation of traffic (AIT) – targets the SMS authentication codes ...

A new wave of sophisticated digital fraud hits Europe

Forced verification and deepfake cases multiply at alarming rates in the UK and continental Europe, according to Sumsub. In Germany alone, forced verification grew by 1500% as a proportion of all fraud cases, from 0.3% in the full year 2022 to 5% ...

Virtual claims raise alarms among insurance carriers and customers

As the digital revolution changes the claims process, both carriers and customers are increasingly concerned about data privacy, according to LexisNexis Risk Solutions. More than 60% of consumers have concerns over the security of their ...

Katie Boswell on AI security and women’s rise in cybersecurity

Katie Boswell spent years on the front lines securing the most critical national infrastructure in energy and life sciences. Yet, earlier in her career, she was told that senior leadership was not for her if she planned on becoming a mother. ...

SCI//HCS-P/SI/TK at Mar-a-Lago

This is a brief explanation of the weird acronyms on the cover sheets that appeared in the photo of classified the FBI seized at Trump’s Mar-a-Lago home. They identify different types of classified information that might – or might not – ...

Preventing Healthcare Cyberattacks via HL7 exploits with LogRhythm

Healthcare organizations are a lucrative target for bad actors due to their unique position; they store sensitive patient information, provide a critical service to the public, and typically do not have massive cybersecurity budgets. This makes ...

The Mar-a-Lago Mess

I’ve avoided commenting on the FBI’s discovery of classified documents at the Mar-a-Lago Club, the home of former President Donald Trump, before this. Numerous pundits have shared their opinions about Trump’s legal jeopardy, if any. I’ve ...

Dancho Danchev’s OSINT Introduction Training Video Demonstration in Bulgarian – Part Three

I've decided to share with everyone a recently released YouTube video demonstration in Bulgarian on the topic of OSINT and threat intelligence training. Here's a sample Table of Contents for the OSINT and the Threat Intelligence training in ...

Dancho Danchev’s OSINT Introduction Training Video Demonstration in Bulgarian – Part Two

I've decided to share with everyone a recently released YouTube video demonstration in Bulgarian on the topic of OSINT and threat intelligence training. Here's a sample Table of Contents for the OSINT and the Threat Intelligence training in ...

Dancho Danchev’s OSINT Introduction Training Video Demonstration in Bulgarian – Part One

I've decided to share with everyone a recently released YouTube video demonstration in Bulgarian on the topic of OSINT and threat intelligence training. Here's a sample Table of Contents for the OSINT and the Threat Intelligence training in ...

BSidesSF 2023 – Arthur Loris – FAIR STRIDE – Building Business Relevant Threat Models

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Arthur Loris – FAIR STRIDE – Building Business Relevant ...

Strengthening The Canadian Financial Sector’s Cybersecurity

Navigating the New Era of Regulations    Canada is demanding its banks strengthen their cybersecurity.   In response to what they are calling, “an environment that has created an urgency for enhanced regulatory guidance,” The Office of ...

Fingernail Chip Implants? West Virginia’s CISO Sees Value

West Virginia CISO Danielle Cox has embedded RFID chips in her fingernails. She finds ease-of-use advantages and minimal downsides. Here’s her story, including why and how it’s done.  The post Fingernail Chip Implants? West Virginia’s ...

Week in review: MOVEit Transfer critical zero-day vulnerability, Kali Linux 2023.2 released

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: MOVEit Transfer zero-day attacks: The latest info Progress Software has updated the security advisory and confirmed that the vulnerability ...

Dancho Danchev’s OSINT and Threat Intelligence Training Video Demonstration in Bulgarian – Part Two

I've decided to share with everyone a recently released YouTube video demonstration in Bulgarian on the topic of OSINT and threat intelligence training. Here's a sample Table of Contents for the OSINT and the Threat Intelligence training in ...

Dancho Danchev’s OSINT and Threat Intelligence Training Video Demonstration in Bulgarian – Part One

I've decided to share with everyone a recently released YouTube video demonstration in Bulgarian on the topic of OSINT and threat intelligence training. Here's a sample Table of Contents for the OSINT and the Threat Intelligence training in ...

Insider Q&A: Artificial Intelligence and Cybersecurity In Military Tech

Shift5 founder Josh Lospinoso discusses AI and how software vulnerabilities in weapons systems are a major threat to the U.S. military. The post Insider Q&A: Artificial Intelligence and Cybersecurity In Military Tech appeared first on ...

Technical Analysis of Bandit Stealer

Key Points Bandit is a new information stealer that harvests stored credentials from web browsers, FTP clients, email clients, and targets cryptocurrency wallet applications. The malware sends stolen information to a command and control server ...

BSidesSF 2023 – Sanchay Jaipuriyar – Overwatch: A Serverless Approach To Orchestrating Your Security Automation

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Sanchay Jaipuriyar – Overwatch: A Serverless Approach To ...