Application Security News and Articles


Introducing the book: The VC Field Guide

In this Help Net Security video interview, cybersecurity entrepreneur, founder, innovator, and investor William Lin discusses his new book – The VC Field Guide. In this book, Lin demystifies the inner workings of venture capital. He offers ...

Cybercriminals use proxies to legitimize fraudulent requests

Bot attacks were previously seen as relatively inconsequential type of online fraud, and that mentality has persisted even as threat actors have gained the ability to cause significant damage to revenue and brand reputation, according to HUMAN. ...

Using multiple solutions adds complexity to your zero trust strategy

Companies’ operating models today are significantly more complex than they were just a couple of years ago, according to BeyondTrust. Remote employees accessing key systems and data, more applications, and information stored and flowing through ...

Infosec products of the month: April 2023

Here’s a look at the most interesting products from the past month, featuring releases from: Abnormal Security, Arista Networks, Armorblox, BigID, Binarly, Cofense, Cyera, Cynalytica, D3 Security, Eclypsium, GitGuardian, Guardz, Halo Security, ...

MY TAKE: A few reasons to believe RSAC 2023’s ‘stronger together’ theme is gaining traction

The theme of RSA Conference 2023 — ‘stronger together’ — was certainly well chosen. Related: Demystifying ‘DSPM’ This was my nineteenth RSAC. I attended my first one in 2004, while covering Microsoft for USA TODAY. It certainly was ...

USENIX Enigma 2023 – Ian Haken – ‘Adventures in Authentication and Authorization’

Our thanks to USENIX for publishing their Presenter’s outstanding USENIX Enigma ’23 Conference content on the organization’s’ YouTube channel. Permalink The post USENIX Enigma 2023 – Ian Haken – ‘Adventures in ...

RADAR: How DevSecOps is Revolutionizing Security at Snapp

Implementing DevSecOps in an Agile Environment: Challenges and SolutionsContinue reading on Medium »

A Step by Step Guide to SS7 Attacks

Global mobile use has been on a major upswing for quite some time. From toddlers who learn to operate a mobile phone before they can even The post A Step by Step Guide to SS7 Attacks appeared first on FirstPoint. The post A Step by Step Guide to ...

RSAC 2023: Generative AI Takes the Cybersecurity Industry by Storm

Yes, generative AI stole the show at RSA Conference 2023 in San Francisco last week. Here’s a roundup of the top news from the biggest cybersecurity conference in the world. The post RSAC 2023: Generative AI Takes the Cybersecurity Industry by ...

Week in review: PaperCut vulnerabilities, VMware fixes critical flaws, RSA Conference 2023

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: RSA Conference 2023 RSA Conference 2023 took place at the Moscone Center in San Francisco. Check out our microsite for related news, photos, ...

UK Cyber Security Council launches certification mapping tool

The UK Cyber Security Councilv has launched the first phase of its certification mapping tool. It has been created to map all available cyber security certifications onto the 16 specialisms identified by the Council, with the first phase now ...

USENIX Enigma 2023 – Kenn White, MongoDB – ‘The Edge Of Developed Practice In Searching Encrypted Data’

Our thanks to USENIX for publishing their Presenter’s outstanding USENIX Enigma ’23 Conference content on the organization’s’ YouTube channel. Permalink The post USENIX Enigma 2023 – Kenn White, MongoDB – ‘The Edge Of ...

Supreme Annotations Plot Redux & An OJS Plot↔ggplot2 Rosetta Stone

Back in 2016, I did a post on {ggplot2} text annotations because it was a tad more challenging to do some of the things in that post back in the day. Since I’ve been moving back and forth between R and Observable (and JavaScript in general), I ...

CSI releases IT Governance to meet growing regulatory expectations

CSI has released its new robust IT Governance Services, which is available within its Advisory Services offering. Coupled with CSI’s Compliance & Risk Management Services, IT Governance Services combines domain expertise with leading ...

Codenotary unveils SBOMcenter to ensure software supply chain security

Codenotary has unveiled SBOMcenter, providing a central, secure place for software producers and consumers to freely generate, store and share Software Bills of Materials (SBOMs). In May 2021, the US government issued an executive order requiring ...

Digital Trust Digest: This Week’s Must-Know News

The Digital Trust Digest is a curated overview of the week’s top cybersecurity news. Here's what happened the week of April 24, 2023. The post Digital Trust Digest: This Week’s Must-Know News appeared first on Keyfactor. The post Digital ...

Big Game Hunting is back despite decreasing Ransom Payment Amounts

Ransomware threat actors are moving back up-market in search of lost profits as the cyber extortion economy seeks to halt its contraction.  The post Big Game Hunting is back despite decreasing Ransom Payment Amounts appeared first on Security ...

Free DoD Tools to Help Contractors with Cybersecurity and Compliance

In a recent PreVeil webinar, Stacy Bostjanick (DoD’s CMMC Program Head and Chief of DIB Cybersecurity) highlighted several free resources designed to help defense contractors comply with DFARS 7012 . The tools were recommended by Bostjanik as ...

Y Combinator’s Winter 2023 Cybersecurity, Privacy, and Trust Startups

Analyzing opportunities and challenges for the nine cybersecurity, privacy, and trust startups in Y Combinator's Winter 2023 batch. The post Y Combinator’s Winter 2023 Cybersecurity, Privacy, and Trust Startups appeared first on Security ...

Risk Management: Addressing Shortcomings and Paving the Way Forward

Risks are like icebergs. Will you sink or sail? In today’s ever-changing business landscape, managing risk is crucial for the success and longevity of any organization. From financial risks to operational risks and cyber threats, businesses ...