Application Security News and Articles


On Detection: From Tactical to Functional

In his 1931 paper “A Non-Aristotelian System and Its Necessity for Rigour in Mathematics and Physics,” Mathematician Alfred Korzybski introduced an idea that many today find helpful when dealing with complex systems. The idea is commonly ...

SOC 2 Compliance for Kubernetes with Fairwinds Insights

As the pace of digital transformation accelerates, many organizations are adopting Kubernetes for managing their containerized workloads. While Kubernetes brings scalability and reliability, it also introduces new challenges in security and ...

Resecurity presents Digital Identity Product to protect digital identities

Resecurity’s Digital Identity Product (IDP) is a solution designed to enhance online security and protect enterprises’ and individuals’ digital identities in an increasingly interconnected world. With the ever-present risk of ...

1Kosmos BlockID available in AWS Marketplace

The 1Kosmos BlockID distributed identity cloud service, which unifies identity verification and passwordless authentication, is now available in the AWS Marketplace. This listing makes it easy for customers to test and deploy BlockID, as well as ...

Secureworks strengthens industrial cybersecurity with two new offerings

Secureworks has launched two new offerings to unify the way industrial organizations prevent, detect, and respond to threats across the OT and IT landscapes. The convergence of OT and IT in the industrial sector brings technological and economic ...

Randall Munroe’s XKCD ‘Ruling Out’

via the comic artistry and dry wit of Randall Munroe, resident at XKCD! Permalink The post Randall Munroe’s XKCD ‘Ruling Out’ appeared first on Security Boulevard.

WithSecure’s USB armory enables post-quantum cryptography in space

WithSecure’s USB armory is an open-sourced, single board computer with a unique form factor and capabilities. It has been used in a variety of applications, including (but not limited to) encrypted storage solutions, hardware security modules ...

Cobalt Iron Compass NAS Protector simplifies management of NAS data

Cobalt Iron launched Compass NAS Protector, a new set of features in its Cobalt Iron Compass enterprise SaaS backup platform. Intended to aid enterprise NAS and backup administrators, Compass NAS Protector speeds up backups, simplifies management ...

Ask Fitis, the Bear: Real Crooks Sign Their Malware

Code-signing certificates are supposed to help authenticate the identity of software publishers, and provide cryptographic assurance that a signed piece of software has not been altered or tampered with. Both of these qualities make stolen or ...

New Relic launches Amazon Security Lake integration

New Relic has announced an integration with the newly launched Amazon Security Lake. With this integration, New Relic customers can access and monitor their Amazon Security Lake security log data and events in New Relic. This allows users to ...

5 Tactics to Deliver Value Faster with Quantitative Cyber Risk Analysis

As a security or risk professional, you’re under pressure every day to deliver tangible value to the business from cyber risk management – So, let’s cut to the chase. Here are five ways that RiskLens clients hit their marks on time-to-value ...

Locking Down BYOD Security Across the Enterprise

Considering BYOD security best practices for safeguarding enterprise data In an age now defined by digital connectivity, the boundaries between personal and professional devices are becoming increasingly indistinct. More organizations are ...

Nozomi and Cynalytica team to deliver security solutions to OT & IoT environments

Nozomi Networks and Cynalytica have unveiled they have partnered to provide a visibility, monitoring and threat detection solution that encompasses both TCP/IP-based and non-IP based serial bus and analog connections found in OT and IoT ...

Critical zero-day vulnerability in MOVEit Transfer exploited by attackers!

A critical zero-day vulnerability in Progress Software’s enterprise managed file transfer solution MOVEit Transfer is being exploited by attackers to grab corporate data. “[The vulnerability] could lead to escalated privileges and ...

CYTRACOM improves efficiency for MSPs with ControlOne platform updates

CYTRACOM announces a significant update to its ControlOne platform, enabling MSPs to prevent managed clients from evading security requirements and create a passwordless experience for end-users. Managed users are now always on the virtual ...

BSidesSF 2023 – Jeffrey Guerra, Caitlin Buckshaw – Life of a Bug (An Insight On The GitHub Bounty Program)

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Jeffrey Guerra, Caitlin Buckshaw – Life of a Bug (An Insight On ...

Russia Blames US Intelligence for iOS Zero-Click Attacks

Kaspersky said its corporate network has been targeted with a zero-click iOS exploit, just as Russia's FSB said iPhones have been targeted by US intelligence. The post Russia Blames US Intelligence for iOS Zero-Click Attacks appeared first on ...

The Product Pulse

Monthly Release Notes for May The post The Product Pulse appeared first on Security Boulevard.

Uptycs integrates with Amazon Security Lake to provide telemetry across workloads

Uptycs has integrated with Amazon Security Lake from Amazon Web Services (AWS). Amazon Security Lake automatically centralizes security data from across AWS environments, SaaS providers, on-premises, and cloud sources into a purpose-built data ...

Fully Automated AI-Powered vCISO Services Now Live in Apptega

Determining what steps your organization or client must take to become compliant with any number of industry-recognized frameworks often proves a painstaking endeavor that requires an abundance of time, resources, and expertise for which most ...