Application Security News and Articles


How ChatGPT is changing the cybersecurity game

The cybersecurity industry can leverage GPT-3 potential as a co-pilot to help defeat attackers, according to Sophos. The latest report details projects developed by Sophos X-Ops using GPT-3’s large language models to simplify the search for ...

Most security pros turn to unauthorized AI tools at work

Security experts are increasingly resorting to unauthorized AI tools, possibly because they are unhappy with the level of automation implemented in their organization’s security operation centers (SOCs), according to a study conducted by ...

Tracking the global spread of malware

Approximately 10-16 percent of organizations have shown evidence of malicious command and control (C2) activities, strongly indicating a network breach within the last year, according to Akamai. Emotet and QSnatch Akamai observes nearly seven ...

Elevate Identity enables security teams to automate customization of conditional access policies

Elevate Security has released Elevate Identity, its SaaS offering for Identity and Access Management (IAM) Professionals that integrates Elevate’s user risk profiling capability with IAM tools such as Cisco Duo, Crowdstrike Falcon, and ...

BIgID’s secrets detection capabilities reduce risk from potential data breaches and leaks

BigID has introduced purpose-built AI and ML-based data discovery and classification capabilities designed to detect secrets across enterprise data and reduce risk from potential data breaches and leaks. Secrets – including as API keys, ...

Dell’s new security offerings help enterprises secure their devices, systems and clouds

Dell Technologies has unveiled new security services and solutions to help organizations protect against threats, respond to attacks and secure their devices, systems and clouds. Seventy-two percent of IT business leaders and professionals ...

Perception Point adds DLP capabilities to detect, prevent, and remediate web threats

Perception Point has added browser-centric Data Loss Prevention (DLP) capabilities to its Advanced Browser Security extension. The Browser Security plugin provides comprehensive security measures and granular controls to safeguard corporate ...

HYPR launches Enterprise Passkeys for Microsoft Azure

HYPR announced its newest offering, Enterprise Passkeys for Microsoft Azure and integrated with Microsoft Entra. This new technology turns any smartphone into a FIDO2 virtual security key, providing authentication flexibility, user convenience ...

Atakama Enterprise protects unstructured data against exfiltration

Atakama unveiled its new Multifactor Encryption platform, Atakama Enterprise, featuring the Atakama Intelligence Center. Atakama’s Multifactor Encryption combines advanced Distributed Key Management (DKM) with the proven concept of ...

Splunk Your Way with BlueVoyant help users streamline cyber threat detection

BlueVoyant has enhanced Splunk capabilities, with end-to-end consulting, implementation, and Managed Detection & Response (MDR) services. With the increasing adoption of cloud technologies, organizations face a complex and rapidly evolving ...

Trustwave partners with Trellix to improve detection and response for security teams

Trustwave and Trellix have formed a strategic partnership to bring visibility and more precise detection and response to security teams defending against cyberthreats. Trustwave’s Managed Detection and Response (MDR) provides enterprises across ...

CyberGRX integrates with ServiceNow to develop risk-reducing programs

Through CyberGRX and ServiceNow integration, ServiceNow Vendor Risk Management customers will have access to CyberGRX’s extensive third-party risk data, enabling them to prioritize risk actions and maintain constant visibility on emerging ...

Veeam and Carahsoft provide the public sector with modern data protection solutions

Veeam Software has unveiled a strategic partnership with Carahsoft Technology. Under the agreement, Carahsoft will serve as Veeam’s preferred public sector distributor, expanding public sector access to the Veeam Data Platform (VDP), which ...

Everything You Need To Know About WooCommerce Shortcodes

If you’re new to WooCommerce, you may have noticed the following image on your cart page: This is a WooCommerce shortcode for a cart page. Default pages like the cart and checkout pages use shortcodes to give a page a function. WooCommerce ...

Detecting CVE-2023-23397: How to Identify Exploitation of the Latest Microsoft Outlook Vulnerability

Microsoft recently released patches for nearly 80 new security vulnerabilities, including two zero-day exploits, CVE-2023-23397 and CVE-2023-24880. CVE-2023-23397 is an elevation-of-privilege (EoP) vulnerability in Microsoft Outlook that could ...

Announcing Our 2023 Product of the Year Award: What It Means for Our Customers | Eureka Security

Eureka Security's award-winning DSPM solution provides customers with a comprehensive and non-intrusive approach to securing their cloud data, allowing for innovation and security. | Eureka Security The post Announcing Our 2023 Product of ...

What are control assessments and how do you conduct them in Hyperproof?

Having confidence in the design and operation of your controls is important. NIST recommends it, your auditor will ... Read More The post What are control assessments and how do you conduct them in Hyperproof? appeared first on Hyperproof. The ...

Project Zero: Samsung Mobile Chipsets Vulnerable to Baseband Code Execution Exploits

Critical security flaws expose Samsung’s Exynos modems to “Internet-to-baseband remote code execution” attacks with no user interaction. Project Zero says an attacker only needs the victim’s phone number. The post Project Zero: Samsung ...

How Cybercriminals Will Exploit the Fear Surrounding SVB’s Collapse

The collapse of Silicon Valley Bank (SVB) is one of the greatest collapses since the great depression, coming years to the day after Bear Sterns’ collapse in 2008. Despite the government stepping in to insure deposits, the fall of SVB bank will ...

Threat Hunting in Retail: How it Improved Security and Detection Time

Threat hunting is becoming increasingly important in the retail industry. According to a study by the Ponemon Institute, 69% of retail companies reported using threat hunting to improve their security posture, making it one of the most widely ...