Application Security News and Articles


New York law firm gets fined $200k for failing to protect health data

A New York law firm has agreed to pay $200,000 in penalties to the state because it failed to protect the private and electronic health information of approximately 114,000 patients. How did the data theft happen? Heidell, Pittoni, Murphy and ...

My reflections from GISEC 2023 and the cybersecurity challenges we are faced with in the Middle East region.

According to a new report from analyst firm Frost and Sullivan, the Middle East’s cybersecurity market is expected to reach $31 billion by the year 2030, up from $7.5 billion in 2022. This exponential growth is a clear reflection of the state ...

Visa fraud expert outlines the many faces of payment ecosystem fraud

In this Help Net Security interview, Michael Jabbara, the VP and Global Head of Fraud Services at Visa, delves into digital skimming attacks, highlighting their common causes, and provides insights into what measures merchants can take to prevent ...

Ignoring network automation is a ticking time bomb for security

IT professionals are frustrated due to the rise in network update velocity and tech stack sprawl, lack of support from leadership, and disagreements and concerns about the approach to resolving network issues, according to BackBox. Network and ...

Microsoft announces Microsoft Incident Response Retainer

Microsoft has introduced Microsoft Incident Response Retainer, allowing customers to pre-pay and count on help from Microsoft incident responders before, during and after a cybersecurity crisis. Cybersecurity challenges faced by organizations ...

Netwrix upgrades its product portfolio and launches Netwrix 1Secure

Netwrix has released new versions for five products since September 2022 and launched a new SaaS-based auditing solution tailored for MSPs. Netwrix keeps enhancing its portfolio to help identify, protect, detect, respond, and recover from cyber ...

NTT’s MDR service improves cyber resilience for organizations

NTT has launched its Managed Detection and Response (MDR) security service to help companies achieve business performance objectives through improved cyber resilience. The cloud-native, analytics-driven offering combines human and machine ...

Protegrity Borderless Data Solution enables compliant cross-border data flows

Protegrity has launched the Protegrity Borderless Data Solution to enable easy, secure and compliant cross-border data flows for large global enterprises. The new solution brings together a suite of data security tools designed to help the ...

HackNotice Actions helps people to understand the extent of their data exposure

HackNotice is offering additional tailored protection via its new service, HackNotice Actions. Further empowering employees, HackNotice Actions reaches out to any company where a person’s PII or other data has been compromised, and asks for a ...

Five Things You Have to Know About Your SPRS Score

If you’re a defense contractor handling Controlled Unclassified Information (CUI) then you need to know your SPRS score. If you’re not certain what SPRS is, or its implications, this blog post is for you.   The DoD’s Supplier Performance ...

LogRhythm Expands Partnership with Truvisor to Make Security Easy in Singapore

SINGAPORE – March 29, 2023 — LogRhythm, the company empowering security teams to navigate the ever-changing threat landscape with confidence, and Truvisor today announced that they will expand their partnership that will enable overburdened ...

Endace collaborates with Niagara Networks to accelerate response to network threats

Endace and Niagara Networks announced a partnership that combines Endace’s scalable, always-on packet capture with Niagara Networks’ complete visibility solutions. The combination of the two technologies gives NetOps and SecOps teams the ...

Signifyd and Adobe partner to eliminate the risk of payments fraud

Signifyd has achieved Platinum Partner status in the Adobe Technology Partner Program for Experience Cloud, making it fraud protection solution in the tier to offer complete and guaranteed chargeback protection to brands leveraging Adobe’s ...

Mandiant Catches Another North Korean Gov Hacker Group

Mandiant flags APT43 as a “moderately-sophisticated cyber operator that supports the interests of the North Korean regime." The post Mandiant Catches Another North Korean Gov Hacker Group appeared first on SecurityWeek.

Debating SIEM in 2023, Part 2

So, we went through “Debating SIEM in 2023, Part 1”, now let’s debate a bit more. At this point, everybody who didn’t “rage stop” reading it should be convinced that yes, SIEM does matter in 2023. Debating SIEM in 2023, Part 1 But ...

Episode 8

Cyborg Security is launching a podcast with a twist! Join us for the first fully interactive threat hunting podcast where you can hang out with threat hunters from all over the world! Join a rag-tag bunch of threat hunters as they come out of the ...

How the Dark Web is Embracing ChatGPT and Generative AI

ChatGPT and GPT-4 have been dazzling their users with their linguistic prowess. But, have you ever wondered if (and how) these large language models (LLMs) are also making a splash in the darker corners of the internet? It turns out that threat ...

The Chasm Between Cybersecurity Confidence and Actual Ability

A survey of 316 cybersecurity training strategy decision-makers in the UK, U.S, Canada, Germany and Sweden published today found there is a major disconnect in the confidence they have in their teams have in their abilities and their actual ...

USENIX Security ’22 – Zenong Zhang, Zach Patterson, Michael Hicks, Shiyi Wei – ‘FIXREVERTER: A Realistic Bug Injection Methodology for Benchmarking Fuzz Testing’

Our thanks to USENIX for publishing their Presenter’s outstanding USENIX Security ’22 Conference content on the organization’s’ YouTube channel. Permalink The post USENIX Security ’22 – Zenong Zhang, Zach Patterson, Michael ...

Microsoft Puts ChatGPT to Work on Automating Cybersecurity

Microsoft has rolled out a preview version of Security Copilot, a ChatGPT-powered tool to help organizations automate cybersecurity tasks. The post Microsoft Puts ChatGPT to Work on Automating Cybersecurity appeared first on SecurityWeek.