Application Security News and Articles


Simple OSINT techniques to spot AI-fueled disinformation, fake reviews

Error messages that ChatGPT and other AI language models generate can be used to uncover disinformation campaigns, hate speech and fake reviews via OSINT collection and analysis, says Nico Dekens, director of intelligence at ShadowDragon. ...

3 Reasons Your Security Testing Tool Needs To Do Regression Testing

Learn what regression testing means, how it affects security, and three reasons why modern teams need regression testing to complement other security testing strategies. The post 3 Reasons Your Security Testing Tool Needs To Do Regression Testing ...

Types of Cybercrime: A Comprehensive Guide to Uncover and Prevent Digital Attacks

The concept of using the Internet for criminal activity is not new, but as the world relies more and more on the digital ecosystem, cybercrime is a trend that can’t be ignored or managed without the right resources.   In this guide, we dive ...

The Alarming Rise of Ransomware Attacks

Introduction Ransomware attacks have dramatically increased over the past few years, with severe effects on both individuals and corporations. Cybercriminals now use ransomware, a type of malicious software that encrypts files or blocks access to ...

7 access management challenges during M&A

Integrating an acquired company into a single organization is a daunting task that can take weeks, months, or even years to complete. To have a successful conclusion to the mergers and acquisitions (M&As) process, identity and access ...

Examining healthcare cyber threats and how to better prepare your organization

A Q&A with Tony Cook, head of threat intelligence at GuidePoint Security With the influx of attacks on the healthcare […] The post Examining healthcare cyber threats and how to better prepare your organization appeared first on Security ...

Gap between OT security assumptions and reality

In the fast-evolving landscape of technology and connectivity, ensuring the security of operational technology (OT) systems has become a paramount concern for organizations worldwide. In this Help Net Security video, Daniel Bren, CEO at OTORIO, ...

The fragmented nature of API security ownership

While API security remains a top cybersecurity concern this year, there is still an alarming lack of implementation for most companies, according to Traceable AI. Companies overlook API security Companies are struggling with unchecked API sprawl, ...

Online scams target bargain-hunting holiday travelers

30% of adults have fallen victim or know someone who has fallen victim to an online scam while trying to save money when booking travel, according to McAfee. 34% of those who had money stolen have lost over $1,000 before their trip has even ...

Interview With a Crypto Scam Investment Spammer

Social networks are constantly battling inauthentic bot accounts that send direct messages to users promoting scam cryptocurrency investment platforms. What follows is an interview with a Russian hacker responsible for a series of aggressive ...

Breaking Down Barriers: How Low-Code and No-Code are Democratizing Access to Technology

Discover how the rise of low-code and no-code platforms is revolutionizing how businesses develop software. Learn how these tools empower citizen developers and streamline app development processes. The post Breaking Down Barriers: How Low-Code ...

Google Cloud launches new cloud region in Doha

Google Cloud announced the opening of its Doha cloud region at an official launch event attended by ministers from the Qatari Cabinet and executives from leading Qatari businesses, with the cooperation of the Ministry of Communications and ...

Grip Security Blog 2023-05-22 16:10:02

As employees use more SaaS, there is a need for companies to identify and know what applications are being used and who is using them.  This becomes especially important when there is employee turnover so that IT/security can ensure that all ...

Grip Security Blog 2023-05-22 16:00:52

On-demand, Secure SaaS Access Authenticating and authorizing user identities have always been an important aspect of enterprise security. But in recent years, a strong identity governance posture has become even more important. The expansion of ...

Grip Security Blog 2023-05-22 15:54:43

Fortify The Identity Perimeter ‍The explosion of SaaS adoption has led to unprecedented identity sprawl with some employees creating hundreds of SaaS accounts over the time. Most of these accounts are created with just an email and password, ...

Grip Security Blog 2023-05-22 15:44:00

Eliminate overly permissive and dangling access to SaaS apps and services The enterprise SaaS layer is where identities are repeatedly under attack — phishing, smishing, and vishing and credentials remaining the top threat target. Why? Because ...

BSidesSF 2023 – Sarah Powazek – Community Cyber Defense: How to be a Local Cyber Hero

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Sarah Powazek – Community Cyber Defense: How to be a Local Cyber ...

WEBINAR: Get the Gist of CJIS

Does your organization access CJIS? If so, the deadline for compliance is October 1st, 2023. In the latest CJIS Security Policy, the FBI is now requiring that IT firmware be verified for integrity and monitored for unauthorized changes. Failure ...

Eclypsium Supply Chain Security for Government Agencies

A complete solution, from core to cloud. Civilian agencies and defense teams need secure, reliable technology to support their missions. However, the complex nature of modern supply chains means that the critical technologies they rely on will ...

Supply Chain Attacks Overflow: PyPI Suspended New Registrations

On May 20th, in an unprecedented move, PyPI (the official Python Package manager) announced they are temporarily suspending new users and new projects registration. This dramatic announcement follows a long line of incidents in which malicious ...