Application Security News and Articles


What’s hot at RSA Conference 2023: 6 must-see malware analysis and threat hunting talks

The RSA Conference is happening next week in San Francisco and bringing some of the top minds in information security together to meet, mingle, deal — and also learn. The event started more than 30 years ago as a confab for cryptographers. ...

Cybersecurity Hygiene—Building Blocks to Protect Your Attack Surface

Cybersecurity breaches or ransomware-induced shutdowns can crush a company. Financial loss. Reputation damage. Legal penalties. Nobody wants to be responsible for any of these, but attacks are on the rise. The average corporate data breach in the ...

Introducing BloodHound 4.3 — Get Global Admin More Often

Introducing BloodHound 4.3 — Get Global Admin More Often Discover new attack paths traversing Microsoft Graph and seven new Azure Resource Manager objects. Checking out BloodHound for the first time? Here are some handy resources: Get ...

Elon Musk Says He’ll Create ‘TruthGPT’ to Counter AI ‘Bias’

Elon Musk plans to create an alternative to the popular AI chatbot ChatGPT that he is calling “TruthGPT,” which will be a "maximum truth-seeking AI that tries to understand the nature of the universe.” The post Elon Musk Says He’ll Create ...

The Future of Data Security: DSPM is Leading Change | Eureka Security

Eureka Security named as a Representative Provider in 2023 Gartner® Innovation Insight: Data Security Posture Management Report | Eureka Security The post The Future of Data Security: DSPM is Leading Change | Eureka Security appeared first ...

Introducing DevOpt: A Multifunctional Backdoor Arsenal

Summary In recent years, malware attacks have become increasingly sophisticated, and attackers are always finding new ways to exploit vulnerabilities and steal sensitive data. To stay ahead of these threats, security researchers must constantly ...

Enterprise Organizations Must go Back to Cybersecurity Basics

With more than $170 billion spent on cybersecurity in 2022 (Gartner), enterprise organizations are still struggling to adequately protect their data. From the medical sector to the financial industry, education sector and beyond, data breaches ...

The illusion of safety: Unmasking evasive browser attacks for a secure cyber landscape

Security used to be pretty straightforward. Enterprises would build a strong perimeter defense in front of a robust data center and shore up entry points into the network—ensuring that malicious actors couldn’t gain access. Then, a few ...

Mandiant 2023 M-Trends Report Provides Factual Analysis of Emerging Threat Trends

In a year dominated by kinetic/cyber war in Ukraine, North Korea doubles down on cryptocurrency thefts, China and Iran continue to take advantage, and a new form of personal intimidation of company personnel emerges. The post Mandiant 2023 ...

Lockr Raises $2.5 Million for Identity and Data Protection Platform

Personal identity and data protection provider Lockr has raised $2.5 million in pre-seed funding. The post Lockr Raises $2.5 Million for Identity and Data Protection Platform appeared first on SecurityWeek.

Cyberinsurance Backstop: Can the Industry Survive Without One?

The purpose of a backstop would be to make cyberinsurance more widely available and affordable to the whole market – but it isn’t yet clear whether this can be achieved. The post Cyberinsurance Backstop: Can the Industry Survive Without One? ...

How Static Application Security Testing Can Help You Achieve Compliance

Compliance is a crucial aspect of software development, especially when dealing with sensitive data such as personal information…Continue reading on Medium »

CISA Adds Chrome, macOS Bugs to Known Exploited Vulnerabilities Catalog

CISA has added two vulnerabilities to its ‘must patch’ list, including a recently fixed Chrome flaw and a macOS flaw exploited by the DazzleSpy malware. The post CISA Adds Chrome, macOS Bugs to Known Exploited Vulnerabilities Catalog appeared ...

Ensure Your SBOM Enhances Compliance With Our Guide

Failing to comply with software licensing agreements can cost you. This is one of many arguments – particularly in the financial realm – that motivate organizations to be in compliance  – and a Software Bill of Materials (SBOM) is an ...

Akamai Report Surfaces Spike in Attacks Against Web Apps and APIs

A report published by Akamai Technologies suggested that in addition to launching attacks against web applications, more cybercriminals are specifically looking to compromise application programming interfaces (APIs). Overall, the attacks against ...

Cybersecurity M&A Roundup for April 1-15, 2023

Sixteen cybersecurity-related M&A deals were announced in the first half of April 2023. The post Cybersecurity M&A Roundup for April 1-15, 2023 appeared first on SecurityWeek.

Creative Software Maker Affinity Informs Customers of Forum Breach

UK-based creative software developer Affinity recently informed the 175,000 users of its forum of a data breach that occurred on April 6. The post Creative Software Maker Affinity Informs Customers of Forum Breach appeared first on SecurityWeek.

RSAC Fireside Chat: Extending ‘shift left’ to achieve SSCS — ‘software supply chain security’

One of the nascent security disciplines already getting a lot of buzz as RSA Conference 2023 gets ready to open next week at San Francisco’s Moscone Center is “software supply chain security,” or SSCS. Related: How SBOMs instill ...

Techniques employed by Threat Actors to evade the WAF

Introduction WAF (Web Application Firewalls) is an essential component of any secure network infrastructure. They are designed to protect a network from external threats such as unauthorized access, malware, and other malicious attacks. WAF works ...

Six Key Considerations When Choosing a Web Application Firewall 

Looking for a web application firewall? Consider these six key consideration to make an informed choice for your web security needs. The post Six Key Considerations When Choosing a Web Application Firewall  appeared first on Indusface. The post ...