Application Security News and Articles


DarkBERT could help automate dark web mining for cyber threat intelligence

Researchers have developed DarkBERT, a language model pretrained on dark web data, to help cybersecurity pros extract cyber threat intelligence (CTI) from the Internet’s virtual underbelly. DarkBERT pretraining process and evaluated use ...

Cloudflare Unveils New Secrets Management Solution

Cloudflare introduces Secrets Store, a new solution to help developers and organizations securely store and manage secrets. The post Cloudflare Unveils New Secrets Management Solution appeared first on SecurityWeek.

Apple Patches 3 Exploited WebKit Zero-Day Vulnerabilities

Apple has patched 3 zero-days, two of which are the vulnerabilities patched with the tech giant’s first Rapid Security Response updates. The post Apple Patches 3 Exploited WebKit Zero-Day Vulnerabilities appeared first on SecurityWeek.

RSAC Fireside Chat: Upgrading containment to counter Putin’s weaponizing of ransomware

The ransomware plague endures — and has arisen as a potent weapon in geopolitical conflicts. Related: The Golden Age of cyber espionage Cyber extortion remains a material threat to organizations of all sizes across all industries. Ransomware ...

Top Container Security Best Practices for Safer Apps

Discover the top container security best practices for safer apps in our latest blog post. Protect your applications with these expert tips The post Top Container Security Best Practices for Safer Apps appeared first on GuardRails. The post Top ...

“VAPT: The Shield Your Organization Needs Against Cyber Threats”

Introduction Making sure our internet systems and data are secure has become crucial in today’s digital world, as technology is ingrained in every part of our lives. Organizations of all sizes are frequently vulnerable to a variety of cyber ...

New infosec products of the week: May 19, 2023

Here’s a look at the most interesting products from the past week, featuring releases from Bitwarden, Cloudflare, ComplyAdvantage, Enzoic, Neurotechnology, Nozomi Networks, and Satori. ComplyAdvantage Fraud Detection identifies and prevents ...

Exploring the tactics of phishing and scam websites in 2023

Phishing scams pose an escalating danger as cybercriminals employ increasingly sophisticated techniques, rendering their detection and prevention more challenging. In this Help Net Security video, Abhilash Garimella, Head of Research at Bolster, ...

Inadequate tools leave AppSec fighting an uphill battle for cloud security

AppSec teams are stuck in a catch-up cycle, unable to keep up with the increasingly rapid, agile dev pace, and playing security defense via an endless and unproductive vulnerability chase, according to Backslash Security. Costly ‘defensive ...

Europe: The DDoS battlefield

DDoS attacks appear to reflect major geo-political challenges and social tensions and have become an increasingly significant part in the hybrid warfare arsenal, according to Arelion. As the Ukrainian authorities sought a safe harbour for digital ...

Insider Risk Resolution: A Decision Tree Framework

Data loss from employees is an increasing concern for enterprise organizations and federal entities. Findings from the DTEX i3 2023 Insider Risk Investigations Report show that departing employees don’t leave empty handed, with 12% taking ...

The Impact of SDDCs on Data Center Management

Data centers are the backbone of modern IT operations, providing centralized storage, processing, and networking for organizational data and applications. However, traditional data centers face many challenges in meeting the growing demands of ...

Stress Relief for CISOs: Communicate Cyber Risk in Business Terms

“Cybersecurity Leaders Suffer Burnout as Pressures of the Job Intensify,” says a headline in The Wall Street Journal. Seventy-three percent of US CISOs in a survey reported hitting that hopeless state, The Journal reports. The article cites ...

Navigating Certificate Management Maturity: A Roadmap to Long-Term Success

In today's digital landscape, organizations need help achieving visibility and control over their digital keys and certificates. The post Navigating Certificate Management Maturity: A Roadmap to Long-Term Success appeared first on Keyfactor. The ...

April 2023 Threat Intelligence Summary

The post April 2023 Threat Intelligence Summary appeared first on Fidelis Cybersecurity. The post April 2023 Threat Intelligence Summary appeared first on Security Boulevard.

How Banks Use File Sanitization to Prevent Malware in Files & Content

Financial organizations such as banks, credit unions, and insurance companies are the second most likely target for cybercriminals, only behind manufacturing. And, interesting but sobering factoid: when a breach occurs, bank costs are the ...

Nuspire’s Q1 2023 Cyber Threat Report Shows Spike in Exploits, Botnets and Malware

Nuspire’s latest threat report, which analyzes threat data from Q1 2023, revealed the record-breaking threat numbers clocked in 2022 are showing no signs of slowing in 2023. Nuspire’s threat intelligence pros, Josh Smith, Cyber Threat ...

BSidesSF 2023 – Dr. Xena Olsen – Keynote: The Expanding Universe of Cyber Threats

Our thanks to BSidesSF for publishing their presenter’s superlative BSidesSF 2023 content on the organizations’ YouTube channel. Permalink The post BSidesSF 2023 – Dr. Xena Olsen – Keynote: The Expanding Universe of Cyber ...

Strengthening Crypto Account Security: Beyond SMS 2FA

As Bitcoin Week kicks off in Miami today, we are reminded the rise of cryptocurrencies is revolutionizing the financial landscape and providing individuals with unprecedented control over their digital assets. However, this new paradigm also ...

Purchasing Pattern Trends in GRC: Where Budgets and Time Are Spent in 2023

In a volatile economic climate, you may be curious about how purchase patterns are changing in the GRC ... Read More The post Purchasing Pattern Trends in GRC: Where Budgets and Time Are Spent in 2023 appeared first on Hyperproof. The post ...