Application Security News and Articles


CactusCon 11 – Day 1 (1/27) Track 1

Our thanks to CactusCon (The largest annual security conference in Arizona) for publishing their presenter’s outstanding CactusCon 11 Conference content on the organizations’ YouTube channel. Additionally, CactusCon is a Tax Exempt 501(c)3 ...

Parablu to deliver Microsoft Azure-hosted cybersecurity and data resiliency SaaS solutions

Parablu has unveiled a multi-year agreement with Microsoft that integrates engineering, go-to-market activities, and co-selling of Parablu’s BluVault and the Ransomware Defense Suite Software-as-a-Service (SaaS) offerings. Parablu will ...

Cloudflare One for AI helps organizations to safely use generative AI tools

Cloudflare has extended its SASE platform, Cloudflare One, to generative artificial intelligence (AI) services. Cloudflare One for AI, a suite of zero trust security controls, will enable enterprises to safely and securely use the latest ...

Rail Security: “Unsafe at Any Speed”

3 min read The February 2023 freight train derailment in East Palestine, Ohio reveals the need for stronger integration between physical controls of rail and cybersecurity controls. The post Rail Security: “Unsafe at Any Speed” appeared first ...

Everbridge and samdesk partnership enables early incident triage and response

Everbridge and samdesk have expanded its partnership, building on the integration of samdesk’s crisis detection feeds with Everbridge’s CEM suite of products. As a preferred partner, samdesk now integrates directly with Everbridge Visual ...

Brightly Software Notifying 3 Million SchoolDude Users of Data Breach

Brightly Software has started informing roughly three million users that their personal information was compromised in a recent data breach. The post Brightly Software Notifying 3 Million SchoolDude Users of Data Breach appeared first on ...

Discord Informs Users of Data Breach Involving Customer Support Provider

Communications and social platform Discord is notifying users of a cyber incident involving a third-party services provider. The post Discord Informs Users of Data Breach Involving Customer Support Provider appeared first on SecurityWeek.

How to Know if You’ve Been Infected by Ransomware

Detecting ransomware activity has become increasingly difficult because adversaries are constantly evolving their tools, tactics and techniques. For example, threat actors are using new programming languages like Rust to help avoid detection by ...

The Importance of Understanding the Unique Challenges of IT & OT Cybersecurity

Cybersecurity threats have been increasing at an alarming rate, and organizations must continuously adapt to address these threats. The convergence of Information Technology (IT) and Operational Technology (OT) has created new challenges for ...

War, Hunh. Yeah. What is it Good For? Reducing Insurer Liability for Cyberattacks

A New Jersey court recently ruled that an insurer was not relieved from its obligation to pay for Merck’s losses after a Russian NotPetya cyberattack. The insurer claimed its ‘Act of War’ exclusion applied to the company’s ...

The Battle Against IoT Cyber Threats

The rapid increase of the Internet of Things (IoT) technology has transformed the world in many ways. From home automation to industrial control systems, IoT has become an integral part of our daily lives. However, as with any new technology, ...

Advantech’s industrial serial device servers open to attack

Three vulnerabilities in Advantech’s EKI series of serial device servers could be exploited to execute arbitrary commands on the OS level. Source: CyberDanube The vulnerabilities Serial device servers are networking devices that ...

WordPress Field Builder Plugin Vulnerability Exploited in Attacks Two Days After Patch

PoC exploit targeting an XSS vulnerability in the Advanced Custom Fields WordPress plugin started being used in malicious attacks two days after patch. The post WordPress Field Builder Plugin Vulnerability Exploited in Attacks Two Days After ...

PharMerica Discloses Data Breach Impacting 5.8 Million Individuals

The personal information of more than 5.8 million was compromised in a data breach at national pharmacy network PharMerica. The post PharMerica Discloses Data Breach Impacting 5.8 Million Individuals appeared first on SecurityWeek.

How can the Gambling Industry Deal With its Cybersecurity Challenges?

Embracing zero trust segmentation, lateral movement protection, and other solutions to overcome the gambling industries cybersecurity challenges  The gambling industry is an exceptionally lucrative target for cybercriminals, mainly due to the ...

Capita Cyberattack Hits UK Pension Funds

The recent ransomware attack on Capita may impact millions of customers of hundreds of pension funds in the UK. The post Capita Cyberattack Hits UK Pension Funds appeared first on SecurityWeek.

What Happens When an AI Company Falls Victim to a Software Supply Chain Vulnerability

An image illustrating AI goes wrong On March 20th OpenAI took down the popular generative AI tool ChatGPT for a few hours. It later admitted that the reason for the outage was a software supply chain vulnerability that originated in the ...

Philadelphia Inquirer Hit by Cyberattack Causing Newspaper’s Largest Disruption in Decades

The Philadelphia Inquirer experienced the most significant disruption to its operations in 27 years due to a cyberattack on Sunday, May 14, 2023. The post Philadelphia Inquirer Hit by Cyberattack Causing Newspaper’s Largest Disruption in ...

CISA: Several Old Linux Vulnerabilities Exploited in Attacks

Several old Linux vulnerabilities for which there are no public reports of malicious exploitation have been added to CISA’s KEV catalog. The post CISA: Several Old Linux Vulnerabilities Exploited in Attacks appeared first on SecurityWeek.

SquareX’s vision: A future where internet security is a non-issue

With an ever-evolving landscape of cyber threats, the necessity for innovative, effective, and user-friendly security products has never been more apparent. Current security solutions, however, seem to lag behind, struggling to adequately address ...