Application Security News and Articles


MSI Incident Part 2: Binary Analysis

In the first part of this series, we described the incident between MSI and a new ransomware group known as Money Message. The group claimed to be able to release malicious firmware with what they had stolen, which included MSI’s development ...

Governments Try to Ban Encryption (Yet Again)

Déjà vu: Yet again, they’re tugging on the “think of the children” strings. But you can’t make math illegal. The post Governments Try to Ban Encryption (Yet Again) appeared first on Security Boulevard.

Randall Munroe’s XKCD ‘Helium Reserve’

via the comic artistry and dry wit of Randall Munroe, resident at XKCD! Permalink The post Randall Munroe’s XKCD ‘Helium Reserve’ appeared first on Security Boulevard.

Votiro Executive and Innovative Technology Named Winner In Industry Award Programs

We are proud to announce that Aviv Grafi, CTO and Founder of Votiro has been named a Gold Winner in the Executive of the Year | Security Cloud/SaaS category by the 2023 Globee Cybersecurity World Awards. The Globee Cybersecurity World Awards ...

Adrian Stone Joins Moderna as CISO

Former Peloton CISO Adrian Stone has been tapped to steer the security ship at pharmaceutical and biotechnology giant Moderna. The post Adrian Stone Joins Moderna as CISO appeared first on SecurityWeek.

Don’t let manual processes hold you back, automate your AppSec

At RSA Conference 2023, the key theme for Mend is automation. Their focus is on helping people put their application security programs on autopilot. They encourage and enable the automation of as much of AppSec as possible because the manual ways ...

Top Cover – Threat Hunting Management Workshop: Reporting & Communication

Join us for a unique interactive threat hunting management workshop where Cyborg Security’s Senior Threat Hunter, Scott Poley, will guide you through the crucial skill of writing effective threat hunting reports. This workshop is designed for ...

Huntress: Most PaperCut Installations Not Patched Against Already-Exploited Security Flaw

Researchers warn that majority of Windows and macOS PaperCut installations still vulnerable to critical vulnerability already exploited in malware attacks. The post Huntress: Most PaperCut Installations Not Patched Against Already-Exploited ...

RiskLens Named Winner of Global InfoSec Award during RSA Conference 2023

RiskLens Wins Editor's Choice Risk Management Award in 11th Annual Global InfoSec Awards at #RSAC 2023 The post RiskLens Named Winner of Global InfoSec Award during RSA Conference 2023 appeared first on Security Boulevard.

GitGuardian Wins 2 Coveted Global InfoSec Awards during RSA Conference 2023

We are thrilled to announce that GitGuardian has been honored with two prestigious awards from Cyber Defense Magazine (CDM) during the RSA Conference 2023! The post GitGuardian Wins 2 Coveted Global InfoSec Awards during RSA Conference 2023 ...

D3 Security MSSP Client Portal simplifies information sharing between MSSPs and clients

D3 Security will unveil its MSSP Client Portal this week at the 2023 RSA Conference. The MSSP Client Portal is a one-stop shop for managed security service providers (MSSPs) and their clients to manage interactions and share information. Taking ...

Why We Built Flashpoint Ignite: Unity, Power, and Performance

Flashpoint's Chief Product and Engineering Officer, Patrick Gardner, introduces Flashpoint Ignite—our new platform to accelerate cross-functional threat detection and risk mitigation for CTI, Vulnerability, National Security, and Physical ...

Flashpoint Ignite accelerates cross-functional risk mitigation and prevention

Flashpoint has released Ignite, a new intelligence platform that accelerates cross-functional risk mitigation and prevention across CTI, vulnerability management, national security, and physical security teams. Ignite combines Flashpoint’s ...

Getting Ready for the Next Generation of PCI DSS: Version 4.0

PCI DSS v4.0 takes effect on March 31, 2024, and replaces PCI DSS version 3.2.1 to better address and combat emerging threats and technologies. The post Getting Ready for the Next Generation of PCI DSS: Version 4.0 appeared first on ...

Strategies for Automating a Cyber Risk Assessment

Cybersecurity leaders and teams are overburdened by several growing trends and issues. And when your cybersecurity team is overworked and unequipped to manage cyber risk proactively, the organization is bound to falter to cyber threats - putting ...

Akamai Brand Protector defends against phishing attacks and fake websites

At RSA Conference 2023, Akamai Technologies unveiled Brand Protector, a new solution that detects and disrupts phishing sites, fake stores, and brand impersonations. Brand Protector enables organizations to retain and grow customer loyalty while ...

Trellix Threat Intelligence enhancements accelerate threat analysis and response

At RSA Conference 2023, Trellix announced it has expanded its Threat Intelligence portfolio to increase threat expertise and actionable intelligence to help global customers stay ahead of cyber adversaries. The new offerings include Vulnerability ...

New Data Sharing Platform Serves as Early Warning System for OT Security Threats

Several OT cybersecurity firms have teamed up to create an information sharing platform designed to serve as an early warning system for critical infrastructure. The post New Data Sharing Platform Serves as Early Warning System for OT Security ...

Organizations are stepping up their game against cyber threats

Global median dwell time drops to just over two weeks, reflecting the essential role partnerships and the exchange of information play in building a more resilient cybersecurity ecosystem, according to Mandiant. Modern cyber defense capabilities ...

3CX breach linked to previous supply chain compromise

Pieces of the 3CX supply chain compromise puzzle are starting to fall into place, though we’re still far away from seeing the complete picture. In the meantime, we now also know that: The source of the 3CX breach was a compromised installer ...