Application Security News and Articles


Running a security program before your first security hire

In this Help Net Security video, Matt Spitz, Head of Engineering at Vanta, talks about pragmatic security and illustrates what a small company with limited resources needs to do to lay the groundwork for effective protection. The post Running a ...

What the food and building industry can teach us about securing embedded systems

As one of the leading experts in product security with over 15 years of experience in security engineering and 120 cybersecurity patents under his belt, Adam Boulton is one of the most experienced software security professionals in the industry. ...

Balancing security risks and innovation potential of shadow IT teams

Shadow IT teams, also known as rogue IT teams, have grown in popularity in recent years due to the rise of cloud-based apps and remote work. However, this has led to operational tension and security risks within many businesses. 58% of SMBs have ...

Tausight expands its AI-based PHI Security Intelligence platform to cover new attack vectors

Tausight has expanded its AI-based PHI Security Intelligence platform which automates the discovery and identification of electronic PHI to enhance the protection of healthcare patients’ most valuable confidential information. On March 7, ...

Understanding the EMA research report on ‘API Security: Debunking the Myths’

When a research report on API security claims that the responses they received “showed a remarkable disconnect between perception and the reality of the security that the respondents’ organizations use for the APIs”, you have to take a ...

Hunters integrates its SOC Platform with Databricks Lakehouse

Hunters has integrated its SOC (Security Operations Center) Platform with the Databricks Lakehouse. For the first time, Databricks customers will be able to stand up a security data lake for security operations (data ingestion, detection, ...

AU10TIX partners with Microsoft on decentralized verifiable credentials

AU10TIX has unveiled that it is working with Microsoft on Reusable ID – a verifiable credentials (VC) architecture for identity management. VCs are reusable, unalterable digital credentials that prove the identity of a person or entity and ...

GUEST ESSAY — The rationale for pursuing a culture of cybersecurity– and a roadmap to get there

Organizations with strong cybersecurity cultures experience fewer cyberattacks and recover faster than others. Related: Deploying human sensors This results from emulating the culture building approaches of high-risk industries like construction ...

Microsoft: No-Interaction Outlook Zero Day Exploited Since Last April

Microsoft says it has evidence that Russian APT actors were exploiting a nasty Outlook zero-day as far back as April 2022, upping the stakes on organizations to start hunting for signs of compromise. The post Microsoft: No-Interaction Outlook ...

Cyber-readiness and Changing Federal Government SBOM Requirements

Separately, Australia has offered a number of generous tax incentives to encourage rollout of cyber security protections, partnerships and cybersecurity-related R&D.Almost two years ago, President Biden’s Executive Order 14208, “Improving ...

Survey Surfaces Need to Change SecOps Priorities

A survey of 250 senior cybersecurity and IT professionals found well over half of respondents (57%) reported that security operations (SecOps) are more chaotic today than two years ago, with 96% planning to reevaluate their priorities. Conducted ...

Streaming Services and Cybersecurity

The popularity of streaming platforms and apps have exploded in recent years. Streaming services have now become the norm, rather than the exception, as more households “cut the cord” with their cable providers. Streaming services provide ...

Threat Spotlight: Generative AI

Two converging trends are on the precipice of reshaping the cyber threat landscape dramatically. The world is in the midst of a technological revolution that looks likely to cause significant and disruptive changes to society. Generative AI ...

US to Adopt New Restrictions on Using Commercial Spyware

Executive order will require the head of any U.S. agency using commercial spyware programs to certify that the program doesn’t pose a significant counterintelligence or other security risk. The post US to Adopt New Restrictions on Using ...

USENIX Security ’22 – ‘QuORAM: A Quorum-Replicated Fault Tolerant ORAM Datastore’

Complete Title: 'USENIX Security '22 - Sujaya Maiyya, Seif Ibrahim, Caitlin Scarberry, Divyakant Agrawal, Amr El Abbadi, Huijia Lin, Stefano Tessaro, Victor Zakhary - ‘QuORAM: A Quorum-Replicated Fault Tolerant ORAM Datastore’ Our thanks to ...

Imperva recognized as a Strong Performer in Forrester Wave: Data Security Platforms, Q1 2023

Imperva Data Security Fabric demonstrates robust security and risk management practices to reduce risks across hybrid multicloud environments The Forrester Wave™ evaluated the largest end-to-end providers of data security capabilities across a ...

Hackers Earn Over $1 Million at Pwn2Own Exploit Contest

Security researchers raked in more than $1 million in prizes at this year's CanSecWest Pwn2Own software exploitation contest. The post Hackers Earn Over $1 Million at Pwn2Own Exploit Contest appeared first on SecurityWeek.

Randall Munroe’s XKCD ‘Relative Terms’

via the comic artistry and dry wit of Randall Munroe, resident at XKCD! The post Randall Munroe’s XKCD ‘Relative Terms’ appeared first on Security Boulevard.

Managed Cyber Security Services Benefits: A Rapid-Fire View

As a cybersecurity leader, you know that security is the foundation of your business’s success. Not only are you responsible for proactively monitoring and responding to threats, but also ensuring compliance with up-to-date regulations.  But ...

Menlo Security Earns 5-Star Rating in 2023 CRN® Partner Program Guide

Mountain View, CA, March 27, 2023 — Menlo Security, a leader in cloud security, has been recognized by CRN®, a brand of The Channel Company, with a prestigious 5-star rating in its 2023 Partner Program Guide. This annual guide offers essential ...