Application Security News and Articles
Our thanks to CactusCon (The largest annual security conference in Arizona) for publishing their presenter’s outstanding CactusCon 11 Conference content on the organizations’ YouTube channel. Additionally, CactusCon is a Tax Exempt 501(c)3 ...
Parablu has unveiled a multi-year agreement with Microsoft that integrates engineering, go-to-market activities, and co-selling of Parablu’s BluVault and the Ransomware Defense Suite Software-as-a-Service (SaaS) offerings. Parablu will ...
Cloudflare has extended its SASE platform, Cloudflare One, to generative artificial intelligence (AI) services. Cloudflare One for AI, a suite of zero trust security controls, will enable enterprises to safely and securely use the latest ...
3 min read The February 2023 freight train derailment in East Palestine, Ohio reveals the need for stronger integration between physical controls of rail and cybersecurity controls.
The post Rail Security: “Unsafe at Any Speed” appeared first ...
Everbridge and samdesk have expanded its partnership, building on the integration of samdesk’s crisis detection feeds with Everbridge’s CEM suite of products. As a preferred partner, samdesk now integrates directly with Everbridge Visual ...
Brightly Software has started informing roughly three million users that their personal information was compromised in a recent data breach.
The post Brightly Software Notifying 3 Million SchoolDude Users of Data Breach appeared first on ...
Communications and social platform Discord is notifying users of a cyber incident involving a third-party services provider.
The post Discord Informs Users of Data Breach Involving Customer Support Provider appeared first on SecurityWeek.
Detecting ransomware activity has become increasingly difficult because adversaries are constantly evolving their tools, tactics and techniques. For example, threat actors are using new programming languages like Rust to help avoid detection by ...
Cybersecurity threats have been increasing at an alarming rate, and organizations must continuously adapt to address these threats. The convergence of Information Technology (IT) and Operational Technology (OT) has created new challenges for ...
A New Jersey court recently ruled that an insurer was not relieved from its obligation to pay for Merck’s losses after a Russian NotPetya cyberattack. The insurer claimed its ‘Act of War’ exclusion applied to the company’s ...
The rapid increase of the Internet of Things (IoT) technology has transformed the world in many ways. From home automation to industrial control systems, IoT has become an integral part of our daily lives. However, as with any new technology, ...
Three vulnerabilities in Advantech’s EKI series of serial device servers could be exploited to execute arbitrary commands on the OS level. Source: CyberDanube The vulnerabilities Serial device servers are networking devices that ...
PoC exploit targeting an XSS vulnerability in the Advanced Custom Fields WordPress plugin started being used in malicious attacks two days after patch.
The post WordPress Field Builder Plugin Vulnerability Exploited in Attacks Two Days After ...
The personal information of more than 5.8 million was compromised in a data breach at national pharmacy network PharMerica.
The post PharMerica Discloses Data Breach Impacting 5.8 Million Individuals appeared first on SecurityWeek.
Embracing zero trust segmentation, lateral movement protection, and other solutions to overcome the gambling industries cybersecurity challenges The gambling industry is an exceptionally lucrative target for cybercriminals, mainly due to the ...
The recent ransomware attack on Capita may impact millions of customers of hundreds of pension funds in the UK.
The post Capita Cyberattack Hits UK Pension Funds appeared first on SecurityWeek.
An image illustrating AI goes wrong
On March 20th OpenAI took down the popular generative AI tool ChatGPT for a few hours. It later admitted that the reason for the outage was a software supply chain vulnerability that originated in the ...
The Philadelphia Inquirer experienced the most significant disruption to its operations in 27 years due to a cyberattack on Sunday, May 14, 2023.
The post Philadelphia Inquirer Hit by Cyberattack Causing Newspaper’s Largest Disruption in ...
Several old Linux vulnerabilities for which there are no public reports of malicious exploitation have been added to CISA’s KEV catalog.
The post CISA: Several Old Linux Vulnerabilities Exploited in Attacks appeared first on SecurityWeek.
With an ever-evolving landscape of cyber threats, the necessity for innovative, effective, and user-friendly security products has never been more apparent. Current security solutions, however, seem to lag behind, struggling to adequately address ...