Application Security News and Articles


BSidesSF 2023 – Abhinav SP – Making of the BSides SF Astronaut Badge

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Abhinav SP – Making of the BSides SF Astronaut Badge appeared ...

Week in review: KeePass vulnerability, Apple fixes exploited WebKit 0-days

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Apple fixes WebKit 0-days under attack (CVE-2023-28204, CVE-2023-32373, CVE-2023-32409) Apple has released security updates for iOS and iPadOS, ...

RSAC Fireside Chat: Counteracting Putin’s weaponizing of ransomware — with containment

The ransomware plague endures — and has arisen as a potent weapon in geopolitical conflicts. Related: The Golden Age of cyber espionage Cyber extortion remains a material threat to organizations of all sizes across all industries. Ransomware ...

BSidesSF 2023 – Rami McCarthy, Lea Snyder, Hasnain Lakhani, Kurt Boberg – Level Up Your Career: A Panel on Staff+ Engineering

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Rami McCarthy, Lea Snyder, Hasnain Lakhani, Kurt Boberg – Level ...

Live panel discussion on insider threats and abuse of privilege

The post Live panel discussion on insider threats and abuse of privilege appeared first on Click Armor. The post Live panel discussion on insider threats and abuse of privilege appeared first on Security Boulevard.

Exposing The "Denis Gennadievich Kulkov" a.k.a Kreenjo/Nordex/Nordexin/Try2Check Cybercriminal Enterprise – An Analysis

Who would have thought? The U.S Secret Service is currently offering $10M reward for Denis Gennadievich Kulkov also known as Kreenjo/Nordex/Nordexin who's particularly famous for running the infamous Try2Check credit card checking cybercriminal ...

Digital Trust Digest: This Week’s Must-Know News

The Digital Trust Digest is a curated overview of the week’s top cybersecurity news. Here's what happened the week of May 15, 2023. The post Digital Trust Digest: This Week’s Must-Know News appeared first on Keyfactor. The post Digital Trust ...

Zero Trust is More Than a Slogan

When it comes to Zero Trust, the conversation has moved from being a nebulous term... The post Zero Trust is More Than a Slogan appeared first on Entrust Blog. The post Zero Trust is More Than a Slogan appeared first on Security Boulevard.

How Companies Should Protect Sensitive Data: 6 Practical Tips

It’s no secret that sensitive data management is a top priority for security teams, particularly during periods of widespread workforce changes like layoffs and pay reductions. But workforce volatility has made it increasingly difficult for ...

Friday Squid Blogging: Peruvian Squid-Fishing Regulation Drives Chinese Fleets Away

A Peruvian oversight law has the opposite effect: Peru in 2020 began requiring any foreign fishing boat entering its ports to use a vessel monitoring system allowing its activities to be tracked in real time 24 hours a day. The equipment, which ...

Your SOC 2 Toolkit Essentials for Compliance Excellence

Achieving SOC 2 compliance often necessitates the use of specialized tools and software to address specific application and data security measures, but which ones are the best to get the job done? We asked our customers which tools they used and ...

Banyan Ransomware Threat Update – May 2023

It’s popular because it’s profitable and it’s been a big moment for ransomware around the planet over the past few weeks. At Banyan, we decided to assemble the latest ransomware news for a mid-May Ransomware Threat Update (because there’s ...

BSidesSF 2023 – Ehsan Asdar, Nishil Shah – Building Production-Grade End To End Encrypted Applications

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Ehsan Asdar, Nishil Shah – Building Production-Grade End To End ...

US Teenager Indicted for Credential Stuffing Attack on Fantasy Sports Website

Wisconsin teen Joseph Garrison is charged with launching a credential stuffing attack that affected roughly 60,000 user accounts. The post US Teenager Indicted for Credential Stuffing Attack on Fantasy Sports Website appeared first on SecurityWeek.

Pimcore Platform Flaws Exposed Users to Code Execution

Security researchers are warning that newly patched vulnerabilities in the Pimcore platform bring code execution risks. The post Pimcore Platform Flaws Exposed Users to Code Execution appeared first on SecurityWeek.

The Sky’s the Limit: The Growth of FedRAMP Compliant Cloud Service Offerings

As you’ll recall from our last post, FedRAMP just soared to a major milestone – 300 FedRAMP Authorized Cloud Service Offerings (CSOs). Beyond marking a noteworthy tally, this is a monumental achievement because it means that federal agencies ...

7 Essential DevSecOps Best Practices Every Development Team Should Implement

This blog post explores the DevSecOps best practices that development teams can use to ensure that security is ingrained in the development process. The post 7 Essential DevSecOps Best Practices Every Development Team Should Implement appeared ...

CMMC Compliance Checklist

12 Steps to Help You Get Ready for CMMC If you are a defense contractor handling Controlled Unclassified Information (CUI) or Federal Contract Information (FCI), you will soon be required to achieve Cybersecurity Maturity Model Certification ...

Randall Munroe’s XKCD ‘Noise Filter’

via the comic artistry and dry wit of Randall Munroe, resident at XKCD! Permalink The post Randall Munroe’s XKCD ‘Noise Filter’ appeared first on Security Boulevard.

Google Chrome 3rd Party Cookies Crumbling — Finally!

Om Nom Nom Nom Nom: Privacy Sandbox inching towards reality. But concerns remain. The post Google Chrome 3rd Party Cookies Crumbling — Finally! appeared first on Security Boulevard.