Application Security News and Articles


Australian Enterprise Software Maker TechnologyOne Resumes Trading Following Hack

Australian enterprise software maker TechnologyOne said its internal Microsoft 365 system was compromised in a cyberattack. The post Australian Enterprise Software Maker TechnologyOne Resumes Trading Following Hack appeared first on SecurityWeek.

1 Million WordPress Sites Impacted by Exploited Plugin Vulnerability

Exploitation of a critical vulnerability in the Essential Addons for Elementor WordPress plugin started immediately after a patch was released. The post 1 Million WordPress Sites Impacted by Exploited Plugin Vulnerability appeared first on ...

Why DevOps and CloudOps are Critical for Successful Cloud Implementations

The advent of cloud computing has transformed the way businesses operate, allowing them to access scalable resources and improve their agility. Cloud computing has enabled organizations to quickly and easily provision resources on-demand, ...

Top 3 trends shaping the future of cybersecurity and IAM

The need to protect sensitive information from unauthorized access and theft has never been greater, and cybersecurity and IAM technologies are evolving to meet this challenge while providing users with more convenience. There are three key ...

New infosec products of the week: May 12, 2023

Here’s a look at the most interesting products from the past week, featuring releases from Aqua Security, Feedzai, Nebulon, OpenVPN, Trua, and Zscaler. Aqua Security strengthens software supply chain security with pipeline integrity scanning ...

Fraud victims risk more than money

Digital fraud has significant financial and psychological repercussions on victims, according to Telesign. Businesses may find a new reason to fear digital fraud as the negative impacts of digital fraud on companies’ brand perception and the ...

CISOs’ confidence in post-pandemic security landscape fades

Most CISOs have returned to the elevated concerns they experienced early in the pandemic, according to Proofpoint. Elevated concerns among CISOs Globally, 68% of surveyed CISOs feel at risk of a material cyber attack, compared to 48% the year ...

Digital Trust Digest: This Week’s Must-Know News

The Digital Trust Digest is a curated overview of the week’s top cybersecurity news. Here's what happened the week of May 8, 2023. The post Digital Trust Digest: This Week’s Must-Know News appeared first on Keyfactor. The post Digital Trust ...

Secure Messaging Arrives on Twitter – Sort of. ‘Don’t Trust It Yet,’ Musk Warns

Twitter launched encrypted messaging, offering select users the ability to communicate more securely. But its new service is much more of a baby step than a giant leap forward. The post Secure Messaging Arrives on Twitter – Sort of. ...

The Super Mario Bros. Pirate

ReasonLabs researchers discovered multiple files downloaded to its users’ devices which were supposed to be Super Mario Bros. but were instead files distributing malicious software. The post The Super Mario Bros. Pirate appeared first on ...

How to empower AppDev & security teams | Customer fireside chat | Contrast Security

Derek Fisher — author of the newly published, acclaimed Application Security Program Handbook: A guide for software engineers and team leaders — is an award-winning author, speaker, leader and university instructor who’s built ...

NIST SP 800-171 SPRS score vs. SPRS risk assessment scores: What’s the difference?

The Department of Defense’s (DoD’s) recently released DFARS 252.204-7024 has created some confusion about SPRS scores, while at the same time shedding light on how the DoD uses its SPRS system. DFARS 7024 requires DoD contracting officers to ...

How to Use Cyber Risk Quantification for Business Decision Support

Gartner, the leading technology research firm, recently published this finding on organizations that have adopted cyber risk quantification (CRQ): “Only 36% have achieved action-based results, including reducing risk, saving money or actual ...

What Are Lookalike Domains & How to Detect Them

Lookalike domains are fraudulent domains that mimic legitimate ones in order to trick users into divulging sensitive information or downloading malware. These domains can be used for phishing attacks, domain name spoofing, and other malicious ...

Detect and Fix API Vulnerabilities Using Validation, Secure Principles and Real-time Response

API vulnerabilities are often introduced in early development stages. Build safer APIs using validation, real-time response, and more. The post Detect and Fix API Vulnerabilities Using Validation, Secure Principles and Real-time Response appeared ...

USENIX Enigma 2023 – Suchakra Sharma – ‘Building An Automated Machine For Discovering Privacy Violations At Scale’

Our thanks to USENIX for publishing their Presenter’s outstanding USENIX Enigma ’23 Conference content on the organization’s’ YouTube channel. Permalink The post USENIX Enigma 2023 – Suchakra Sharma – ‘Building An ...

A Step-by-Step Guide to Adopting a Hybrid IT Environment

As organizations increasingly adopt digital transformation, the need for a more agile, scalable, and cost-effective IT infrastructure is paramount. Hybrid IT environments, which combine on-premise data centers, colocation facilities, cloud, and ...

Okta Adds Security Center to Provide Real-Time Threat Visibility

Okta this week made available Security Center, an extension of the Okta Customer Identity Cloud that provides a real-time view of authentication events, potential security incidents and threat response efficacy. Ian Hassard, senior director of ...

Daniel Stori’s ‘$ Beware Of Dog’

via the webcomic talent of the inimitable Daniel Stori at Turnoff.US Permalink The post Daniel Stori’s ‘$ Beware Of Dog’ appeared first on Security Boulevard.

Bitdefender unveils App Anomaly Detection to detect malicious activity in Android apps

Bitdefender has unveiled App Anomaly Detection, the real-time, behavior-based protection layer available now in Bitdefender Mobile Security for Android, that continuously detects anomalous and malicious behavior in Android applications as it ...