Application Security News and Articles


SafeBreach’s RSA Roundtable on Securing the Nation’s Critical Infrastructure: Three Key Takeaways

SafeBreach CMO Melissa Goldberger outlines the surprising and important takeaways from the exclusive RSA roundtable discussion. The post SafeBreach’s RSA Roundtable on Securing the Nation’s Critical Infrastructure: Three Key Takeaways ...

Crypto Scams

Crypto Scams: How Arkose MatchKey Bankrupted the Efforts of a Russian Hacker “My partners and I lost time and money while Arkose Labs introduced new precautions on Twitter.” – anonymous spammer In the digital landscape, social networks are ...

Getting to value faster with Digital Trust & Safety

Every business has the opportunity to be successful with enough time—and that’s exactly what most businesses don’t have. Being a categorical leader in any corner of digital solutions or services hinges on two major deliverables: being able ...

How Data Integration Benefits Cyber Risk Exposure Management

Articles related to cyber risk quantification, cyber risk management, and cyber resilience. The post How Data Integration Benefits Cyber Risk Exposure Management appeared first on Security Boulevard.

BSidesSF 2023 – Breanne Boland – New Apps, Good Snacks: Effective Threat Modeling for New Territory

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Breanne Boland – New Apps, Good Snacks: Effective Threat ...

Is Your Cybersecurity Vendor Built to Thrive or Struggling to Survive?

The last several years were an incredible run for the cybersecurity industry. Even as the pandemic put pressure on many areas of the global economy, technology companies — and cybersecurity vendors in particular — thrived. Venture capital was ...

Too Many Security Testing Tools? Here Are 5 Things Your Devsecops Tools Should Do

In this blog post, we'll delve into the five essential boxes that your DevSecOps tools need to check. The post Too Many Security Testing Tools? Here Are 5 Things Your Devsecops Tools Should Do appeared first on Security Boulevard.

Making a Case for Single-Vendor SASE

Thanks to a workforce that is increasingly operating remotely and accessing applications that reside outside the corporate perimeter (i.e. cloud), businesses are lacking a scalable and secure architecture that is built around an increasingly ...

Ransomware: A Predictable Response to Market Forces

Considering that most cybercrime is financially motivated, tactics will evolve that streamline the route from compromise to cashout. Reselling stolen assets is reliable, but it’s far from the only way to turn a profit. The post Ransomware: A ...

GRC and Access Governance better together

View on demand As organizations continue to accelerate digital transformation for increased competitive advantage and efficiency in today’s ambiguous and volatile world, businesses are struggling to keep pace with increased scrutiny from ...

Weighing the Pros and Cons of Open-Source Software to Support Critical Infrastructure

This blog will cover the pros and cons of open-source software to support critical infrastructure. The post Weighing the Pros and Cons of Open-Source Software to Support Critical Infrastructure appeared first on Keyfactor. The post Weighing the ...

PyPI Enforcing 2FA for All Project Maintainers to Boost Security

PyPI will require all accounts that maintain a project to enable two-factor authentication (2FA) by the end of 2023. The post PyPI Enforcing 2FA for All Project Maintainers to Boost Security appeared first on SecurityWeek.

Failure to Pay Ransom: Negligence?

Lehigh Valley Health Network is a health care network based in Allentown, Pennsylvania that serves the eastern and northeastern part of the state. On February 6, 2023, LVHN was hit with a combination ransomware/extortionware attack. Attackers ...

Personal Information of 9 Million Individuals Stolen in MCNA Ransomware Attack

Dental benefits manager MCNA is informing roughly 9 million individuals that their personal data was compromised in a data breach. The post Personal Information of 9 Million Individuals Stolen in MCNA Ransomware Attack appeared first on SecurityWeek.

Understanding the Progression of a Ransomware Attack

Everyone should be familiar with ransomware and its impact on businesses by now. But while you may understand the very basics of ransomware, you can’t really protect your organization until you are familiar with the entire ransomware attack ...

Many Vulnerabilities Found in PrinterLogic Enterprise Software

Multiple vulnerabilities in PrinterLogic’s enterprise management printer solution could expose organizations to various types of attacks. The post Many Vulnerabilities Found in PrinterLogic Enterprise Software appeared first on SecurityWeek.

App sec and AI: Can this new supply chain risk be contained by tools such as NeMo Guardrails?

  The post App sec and AI: Can this new supply chain risk be contained by tools such as NeMo Guardrails? appeared first on Security Boulevard.

Fairwinds Insights Basics Tutorial: How to Integrate Slack and Fairwinds Insights

Many organizations today use Slack, across teams, departments, countries, and even continents. Particularly useful in a remote or hybrid work environment, Slack improves communication and collaboration, making it simple for teams to share ...

Why Attackers Target the Gaming Industry

Key Takeaways: The gaming industry is a common target for cyberattacks due to its financial success and vast user base. Volumetric DDoS attacks can disrupt service, distract from more serious attacks, and cause financial damage, especially on ...

The Human Factor in Threat Simulation: Testing Employee Awareness and Training Effectiveness

As businesses increasingly rely on technology to store and manage sensitive information, the risks associated with cyber attacks continue to rise. While many companies invest in top-of-the-line security software and hardware, the reality is that ...