Application Security News and Articles


Embracing Modern Data Center Management: The Benefits of DCIM Software Over Microsoft Excel

The data center is the nerve center of any modern organization, providing the infrastructure that powers critical business operations. Ensuring that these facilities run efficiently and effectively is crucial to an organization's success. As the ...

Tracking Patch Tuesday Vulnerabilities: May 2023

Patch Tuesday is a recurring monthly event when Microsoft and many other vendors publish vulnerabilities affecting their software. The post Tracking Patch Tuesday Vulnerabilities: May 2023 appeared first on Flashpoint. The post Tracking Patch ...

Patch Tuesday May 2023: Microsoft Addresses 49 Vulnerabilities

On May 9th 2023, Microsoft released their May Patch Tuesday and revealed 38 vulnerabilities fixes, 11 vulnerabilities fixes published on May 5th (9 of them are in the Microsoft Edge (Chromium-based, non-Microsoft CVEs) ) and 14 updates to old ...

The Power Shift: Prioritizing Behavioral Threat Hunting Over Panic Patching

Hello CISOs, it’s time for a serious conversation about a hot-button issue in cybersecurity – our industry’s reactive, panic patching-first mentality. Are we really making the best use of our resources by scrambling to patch every new ...

SafeBreach Coverage for US-CERT Alert (AA23-129A) – Snake Malware

SafeBreach coverage for US-CERT Alert (AA23-129A) - Hunting Russian Intelligence "Snake" Malware The post SafeBreach Coverage for US-CERT Alert (AA23-129A) – Snake Malware appeared first on SafeBreach. The post SafeBreach Coverage for US-CERT ...

USENIX Enigma 2023 – Marcus Hodges – ‘Meaningful Hardware Privacy For A Smart And Augmented Future’

Our thanks to USENIX for publishing their Presenter’s outstanding USENIX Enigma ’23 Conference content on the organization’s’ YouTube channel. Permalink The post USENIX Enigma 2023 – Marcus Hodges – ‘Meaningful Hardware ...

How You Can Save Time During a SOC 2 Audit

POV: an important prospect requires all of their partners to get a SOC 2 audit. You’ve just met with your auditing firm and you’ve been tasked with evidence collection, which sounds like tracking down a lot of people and documents. No one can ...

Unlocking the Power of Threat Hunting with MITRE ATT&CK

In the complex terrain of the modern cybersecurity landscape, static defenses and traditional Indicators of Compromise (IOCs) are insufficient. As cyber attackers grow increasingly sophisticated, proactive threat hunting becomes essential. ...

Google Now Lets US Users Search Dark Web for Their Gmail ID

Google is now letting Gmail users in the US run scans to learn whether their Gmail ID appears on the dark web. The post Google Now Lets US Users Search Dark Web for Their Gmail ID appeared first on SecurityWeek.

Equifax Releases Security and Privacy Controls Framework  

Equifax released its security and privacy controls framework to provide a public blueprint to help organizations to build or enhance their own cybersecurity programs. The post Equifax Releases Security and Privacy Controls Framework   appeared ...

Red Hat delivers latest releases of Red Hat Enterprise Linux

Red Hat has unveiled the general availability of Red Hat Enterprise Linux 9.2 and the forthcoming availability of Red Hat Enterprise Linux 8.8. These new releases further Red Hat’s efforts to simplify and streamline complex Linux platform tasks ...

Aqua Security strengthens software supply chain security with pipeline integrity scanning

Aqua Security added pipeline integrity scanning to prevent software supply chain attacks and assure CI/CD pipeline integrity. Powered by eBPF technology, Aqua’s pipeline integrity scanner detects and blocks suspicious behaviour and malware in ...

Comic Agilé – Mikkel Noe-Nygaard, Luxshan Ratnarav – #241 — Team

via the respected Software Engineering expertise of Mikkel Noe-Nygaard as well as the lauded Software Engineering and Enterprise Agile Coaching talent of Luxshan Ratnarav at Comic Agilé! The post Comic Agilé – Mikkel Noe-Nygaard, Luxshan ...

Feedzai ScamPrevent protects bank customers from financial scams

Feedzai announced significant enhancements to its RiskOps Platform, enabling banks to better protect their customers from a wide variety of financial scams. These new Feedzai ScamPrevent capabilities deliver detection, classification, and ...

IBM Quantum Safe technology prepares clients for the post-quantum era

IBM announced its new IBM Quantum Safe technology: a comprehensive set of tools and capabilities, combined with IBM’s deep security expertise, designed as an end-to-end solution to be made available as organizations, including governmental ...

Dell Technologies boosts cyber resilience and advances IT efficiency with software innovations

Dell Technologies advances software-driven innovation across its storage portfolio, driving increased cyber resiliency, energy efficiency and automation to power customers’ multicloud journeys. Dell’s commitment to software ...

TruaID helps consumers keep personal information secure

Trua launched a new product called TruaID, which will give consumers a greater sense of security with their private information while providing businesses a more efficient means of screening customers and prospective employees. Simultaneously, ...

Open Source Threat Intelligence Tools & Feeds: A Complete 2023 List

The rapidly evolving cyber threat landscape demands constant vigilance from organizations seeking to protect their digital assets. Open source threat intelligence tools and feeds have emerged as invaluable resources in this endeavor, offering ...

Appeals Court Sides With Corellium in Apple Copyright Case

US appeals court sides with Corellium in the copyright infringement lawsuit filed by Apple against the company over its security research tools. The post Appeals Court Sides With Corellium in Apple Copyright Case appeared first on SecurityWeek.

What are Indicators of Compromise in Threat Intelligence?

Managing security in today’s highly interconnected world can be like trying to put out fires with a collection of squirt guns. You have the tools, but they never feel powerful enough. With security teams working tirelessly to protect systems, ...