Application Security News and Articles


GitHub Secret-Blocking Feature Now Generally Available

GitHub makes push protection generally available to warn developers whenever they include a secret in a commit. The post GitHub Secret-Blocking Feature Now Generally Available appeared first on SecurityWeek.

Zscaler expands Digital Experience with AI-powered insights to support workforce productivity

Zscaler has expanded Zscaler Digital Experience (ZDX), an integrated solution that provides end-to-end visibility and IT troubleshooting capabilities accessed through the Zscaler security cloud. The modern workforce is geographically dispersed, ...

Randall Munroe’s XKCD ‘Planetary Scientist’

via the comic artistry and dry wit of Randall Munroe, resident at XKCD! Permalink The post Randall Munroe’s XKCD ‘Planetary Scientist’ appeared first on Security Boulevard.

SAIC EQADR platform accelerates data driven decision making

SAIC introduced its new encrypted query analytics and data retrieval (EQADR) platform. “Agencies rely on data to help support their missions in a secure environment,” said Andy Henson, VP, Innovation at SAIC. “We are providing our customers ...

Adobe Patches 14 Vulnerabilities in Substance 3D Painter

Adobe has patched more than a dozen vulnerabilities, including critical code execution flaws, in its Substance 3D Painter product. The post Adobe Patches 14 Vulnerabilities in Substance 3D Painter appeared first on SecurityWeek.

Nebulon unveils threat detection solution for cryptographic ransomware

Nebulon announced TripLine, a new threat detection service designed to alert customers when a cryptographic ransomware attack has been detected, as well as the precise location and point-in-time the attack occurred. The company also announced ...

Attacking APIs by tainting data in weird places

Discover ways to modify API requests during testing to corrupt data and manipulate code flow, allowing you to uncover new vulnerabilities. The post Attacking APIs by tainting data in weird places appeared first on Dana Epp's Blog. The post ...

Elevating Balbix’s Partner Ecosystem: A Year of Unprecedented Growth and Impact

Having personally experienced the challenges that CIOs and CISOs face in managing cyber risk in my prior experience, I was eager to join Balbix, a mission-driven company on a fast-growth path and upward trajectory. Time flies, and I realized a ...

How Data Center Automation Streamlines Operations and Reduces Errors

The ever increasing demand for digital services has led to rapid growth in the data center industry, with facilities worldwide working tirelessly to accommodate massive amounts of data storage and processing. To keep pace with this demand while ...

OneLayer Bridge discovers, assesses, and secures IoT device activity

OneLayer released OneLayer Bridge, a security solution for private mobile networks. The use of private cellular networks allows organizations to improve IoT and OT device connectivity. As the adoption of these networks increases, organizations ...

CertifID provides identity verification designed to combat seller impersonation fraud

CertifID released an identity verification solution to help title agencies and real estate firms combat seller impersonation fraud. The solution augments CertifID’s existing capabilities that evaluate more than 150 markers of fraud, including ...

USENIX Enigma 2023 – Emily Schwartz, Bryson Gilette – ‘So You’re Going To Blow The Whistle? Communications Dos And Don’ts For Whistleblowers.’

Our thanks to USENIX for publishing their Presenter’s outstanding USENIX Enigma ’23 Conference content on the organization’s’ YouTube channel. Permalink The post USENIX Enigma 2023 – Emily Schwartz, Bryson Gilette – ‘So ...

ICS Patch Tuesday: Siemens, Schneider Electric Address Few Dozen Vulnerabilities

Siemens and Schneider Electric’s Patch Tuesday advisories for May 2023 address a few dozen vulnerabilities found in their products. The post ICS Patch Tuesday: Siemens, Schneider Electric Address Few Dozen Vulnerabilities appeared first on ...

Data Security and Data Privacy in the Cloud: Yes, You Can Have Both | Eureka Security

Learn how to achieve both data privacy and data security in the cloud with our comprehensive blog. | Eureka Security The post Data Security and Data Privacy in the Cloud: Yes, You Can Have Both | Eureka Security appeared first on Security ...

SafePaaS’ UPAM offering enables discovery, monitoring, and control of privileged accounts

SafePaaS announces its Unified Privileged Access Management (UPAM) solution to protect the digital enterprise without the complexity of traditional PAM solutions that fail to meet the evolving needs of today’s dynamic, complex ...

Persistent Ransomware Attacks on Cities Underscores Need to Upgrade to Real-Time Threat Visibility

Municipalities, in particular, are increasingly being targeted by ransomware attackers. A recent report showed that ransomware attacks on local governments increased by 70% for 34-58% of those surveyed, and that those attacks were more expensive ...

Protecting Our Customers Against the Latest Disruptive Web DDoS Attacks

In a period spanning just two months, from February 18 to April 18, 2023, over 1,800 DoS (denial-of-service) attacks were claimed by hacktivists across 80 Telegram channels. These attacks are high in RPS (Requests Per Second) and sophisticated in ...

Waterfall Security Solutions and Atlantic Data Security improve protection for OT networks

Waterfall Security Solutions and Atlantic Data Security announced a partnership to protect data centers, building automation systems and critical infrastructure facilities. With attacks on OT networks becoming more powerful and pervasive, this ...

Feds Take Down 13 More DDoS-for-Hire Services

The U.S. Federal Bureau of Investigation (FBI) this week seized 13 domain names connected to “booter” services that let paying customers launch crippling distributed denial-of-service (DDoS) attacks. Ten of the domains are reincarnations of ...

DigiCert and Oracle join forces to help joint customers manage their digital trust initiatives

DigiCert announced a partnership to provide DigiCert ONE, the platform for digital trust, on Oracle Cloud Infrastructure (OCI). Customers will benefit from DigiCert ONE’s fast time to value combined with OCI’s high-performance and ...