Application Security News and Articles


Enhancing open source security: Insights from the OpenSSF on addressing key challenges

In this Help Net Security interview, we meet a prominent industry leader. Brian Behlendorf, CTO at the Open Source Security Foundation (OpenSSF), shares insights on the influence of his experiences with the White House CTO office, World Economic ...

Introducing Permit.io: Simplifying access control and policy management for developers

In this Help Net Security video interview, Or Weis, Co-Founder and CEO of Permit.io, discusses an innovative approach to managing permissions and access control within applications. We will explore policy as code and how it addresses ...

Why We Still Haven’t Learned From the Target Data Breach a Decade Later

The threat actor’s methodology wasn’t unique — they used a six-step approach that can be mapped directly to cyber attack frameworks. Most of these steps could’ve been blocked with the aid of DNS protection. With cybercrime at record ...

Organizations’ cyber resilience efforts fail to keep up with evolving threats

A steady increase in cyberattacks and evolving threat landscape are resulting in more organizations turning their attention to building long-term cyber resilience; however, many of these programs are falling short and fail to prove teams’ ...

Identity crimes: Too many victims, limited resources

The Identity Theft Resource Center (ITRC) has documented incidents of identity theft reported during 2022 and the first quarter of 2023, highlighting the use of strategies by criminals to convince people to willingly share protected information. ...

Why are “Secure” Companies Still Being Hacked?

Data Protection Gumbo Podcast Featuring Omar Masri, CEO of Mamori.io. Despite investing significant resources in cybersecurity, companies are still being hacked. This podcast takes a deep dive into this topic, where Demetrius Malbrough, founder ...

Solving the identity puzzle: how interoperability unlocks cloud security potential

With increased cloud migration and the adoption of cloud-based apps, Cloud Security Architects and IT Decision-Makers are in a race to achieve interoperability between diverse identity systems. This creates a monumental challenge, where the ...

CactusCon 11 – Day 2 (1/28) Track 3

Our thanks to CactusCon (The largest annual security conference in Arizona) for publishing their presenter’s outstanding CactusCon 11 Conference content on the organizations’ YouTube channel. Additionally, CactusCon is a Tax Exempt 501(c)3 ...

Privacy in the Age of Big Data – A Must-Read

In Privacy in the Age of Big Data, Theresa Payton and Ted Claypool tell us just how ubiquitous current threats to privacy are (which both the lay reader and security professionals will find disturbing). Of course, we’re better off knowing about ...

In the News | Cyber Risks for Higher Ed and Strategies To Mitigate Them

This article was originally published in FIERCE Education on 5.9.23 by Charlie Sander, CEO at ManagedMethods. Education is particularly susceptible to cyber security events when compared to other industries Professors are on the front lines of ...

Satori enhances its platform to help companies proactively protect data

Satori has released Posture Management, a new capability within Satori’s platform that monitors the authorization of users to data across all of a company’s data stores. In addition, Satori announced the availability of Data Store Discovery, ...

SafeBreach Coverage for US-CERT Alert (AA23-136A) – BianLian Ransomware Group

SafeBreach coverage for US-CERT Alert (AA23-136A) - BianLian Ransomware Group The post SafeBreach Coverage for US-CERT Alert (AA23-136A) – BianLian Ransomware Group appeared first on SafeBreach. The post SafeBreach Coverage for US-CERT Alert ...

Enzoic’s identity breach monitoring solution protects accounts and data from fraud

Enzoic launched an identity monitoring offering, enabling organizations to continuously track and ensure their users’- whether its customers or employees– personally identifiable information (PII) has not been exposed. This reduces the risk ...

Medical Device Company Advances Healthcare While Keeping Data Safe With Laminar

Advancing the healthcare industry is a core part of this medical device company’s mission. Access … The post Medical Device Company Advances Healthcare While Keeping Data Safe With Laminar appeared first on Laminar. The post Medical Device ...

Acronis launches Advanced Security + EDR for MSPs

Acronis has announced the general availability of Acronis Advanced Security + Endpoint Detection & Response (EDR) for Acronis Cyber Protect Cloud. With new capabilities such as AI-based attack analysis, Acronis EDR reduces complexity and ...

New OT Research Report: Need for Secure Remote Access is High, But Confidence in Existing Solutions is Low

5 min read Securing remote access to industrial systems is a top priority in the OT world. New research sheds light on the risks and challenges of I-SRA. The post New OT Research Report: Need for Secure Remote Access is High, But Confidence in ...

Barracuda SecureEdge strengthens security for businesses and MSPs

Barracuda Networks announced a new platform called Barracuda SecureEdge, a SASE solution that helps make hybrid and remote work easier to secure. Barracuda SecureEdge integrates Barracuda’s Secure SD-WAN, Firewall-as-a-Service, Zero Trust ...

Next integrates with Splunk to help security teams consolidate security processes

Next DLP (“Next”) has unveiled a new integration between Splunk and the company’s Reveal platform. The new technology partnership bolsters visibility, protection, and leverages customer’s investment in existing security solutions to ...

Randall Munroe’s XKCD ‘Crystal Ball’

via the comic artistry and dry wit of Randall Munroe, resident at XKCD! The post Randall Munroe’s XKCD ‘Crystal Ball’ appeared first on Security Boulevard.

IBM Acquires Polar Security for Data Security Posture Management

IBM this week acquired Polar Security to add a data security posture management platform to its cybersecurity portfolio. Kevin Skapinetz, vice president of strategy and product management for IBM Security, said the acquisition give IBM an ...