Application Security News and Articles


Webinar: Tips from MSSPs to MSSPs – starting a vCISO practice

There is a consensus among MSPs and MSSPs that vCISO services pose an excellent opportunity for a new revenue stream, but how do you successfully do that? Watch this panel discussion to hear from MSSP leaders who already sell vCISO services as ...

Concentric AI’s DSPM solution detects sensitive or business critical content

Concentric AI announced a DSPM solution with support for optimized large language models delivering improved data security and protection. As a result, Concentric AI’s Semantic Intelligence delivers semantic understanding of data and leverages ...

Motorola Solutions releases new Avigilon security suite to improve enterprise security

Motorola Solutions announced the new Avigilon physical security suite that provides secure video security and access control to organizations of all sizes around the world. The Avigilon security suite includes the cloud-native Avigilon Alta and ...

Tanium expands XEM platform with enhanced device and policy management

Tanium has released its new certificate manager and enhanced policy management capabilities, offering organizations convenient tool consolidation, cost and time savings, and more accurate reporting via Tanium’s XEM platform. Organizations today ...

Startpage enhances search features to make privacy accessible to anyone

Startpage’s latest enhancements include private local in-map results, knowledge panels and instant answers, providing users with a more intuitive search experience while also prioritizing user privacy. They also feature what every user wants, ...

Two U.S. Men Charged in 2022 Hacking of DEA Portal

Two U.S. men have been charged with hacking into a U.S. Drug Enforcement Agency (DEA) online portal that taps into 16 different federal law enforcement databases. Both are alleged to be part of a larger criminal organization that specializes in ...

Cloudflare integrates with Atlassian, Microsoft, and Sumo Logic to boost zero trust security

Cloudflare announced new integrations with Atlassian, Microsoft, and Sumo Logic to help businesses of any size secure the tools and applications they rely on with enterprise-ready zero trust security. Now businesses will be able to use security ...

Canonical collaborates with MediaTek to optimize Ubuntu for IoT innovations

Canonical is partnering with MediaTek to meet the growing demands of the IoT industry, reduce development costs and accelerate time-to-market. By partnering to enable Ubuntu on the Genio platform, MediaTek and Canonical will make it easier for ...

Replatforming 101: Everything You Need to Know

In today's rapidly evolving digital landscape, businesses must keep pace with the latest technology to remain competitive. One way to do this is through re-platforming or migrating from an outdated platform to a newer one, often in the cloud. ...

Why You Need a Team of Ninja Threat Hunters to Protect Your Data

In today’s digital age, cyber threats have become a major concern for organizations of all sizes and industries. Recent high-profile data breaches have made it clear that no organization is immune to the dangers of cyber attacks. The fact is, ...

‘Black Skills’ Is Killnet’s Attempt to Form a ‘Private Military Hacking Company’

A clear riff on the growing presence of private military companies in Russia (primarily the Wagner Group), Killmilk’s so-called 'Private Military Hacking Company' is an apparent overture to Russia to leverage its services The post ‘Black ...

Microsoft SmartScreen Zero-Day Exploited to Deliver Magniber Ransomware

A cybercrime group has been exploiting a Microsoft SmartScreen zero-day vulnerability tracked as CVE-2023-24880 to deliver the Magniber ransomware. The post Microsoft SmartScreen Zero-Day Exploited to Deliver Magniber Ransomware appeared first on ...

Microsoft patches zero-days used by state-sponsored and ransomware threat actors (CVE-2023-23397, CVE-2023-24880)

It’s March 2023 Patch Tuesday, and Microsoft has delivered fixes for 74 CVE-numbered vulnerabilities, including two actively exploited in the wild (CVE-2023-23397, CVE-2023-24880) by different threat actors. About CVE-2023-23397 ...

ChatGPT: AI’s Evolving Capabilities and Consequences for Cybersecurity

ChatGPT has taken the tech world by storm. This super interesting technology responds to queries and exchanges information back-and-forth in a manner that is almost human. The impressive responses, with the content and flow of a human-to-human ...

Secrets Exposed: How hackers are gaining access to software secrets

Until recently, malicious actors who wanted to get their hands on sensitive corporate data or IT systems followed a few, well-worn paths. Those included phishing attacks on privileged employees, attacking the organization’s public-facing ...

USENIX Security ’22 – Bodong Zhao, Zheming Li, Shisong Qin, Zheyu Ma, Ming Yuan, Wenyu Zhu, Zhihong Tian, Chao Zhang – ‘StateFuzz: System Call-Based State-Aware Linux Driver Fuzzing’

Our thanks to USENIX for publishing their Presenter’s outstanding USENIX Security ’22 Conference content on the organization’s’ YouTube channel. Permalink The post USENIX Security ’22 – Bodong Zhao, Zheming Li, Shisong Qin, ...

Meet Frank Tingle: Values Champion

  The post Meet Frank Tingle: Values Champion appeared first on Security Boulevard.

Microsoft Patches 80 Security Vulns, Warns of Outlook Zero-Day Exploitation

Patch Tuesday: Redmond calls special attention to a pair of Windows security flaws marked as 'actively exploited' in the wild. The post Microsoft Patches 80 Security Vulns, Warns of Outlook Zero-Day Exploitation appeared first on SecurityWeek.

The Top 8 Cloud Application Threats in 2023

In this blog post, we'll discuss 8 of the top threats targeting cloud applications in 2023. Taking steps to protect your cloud applications against these 8 threats will to help keep your business secure and avoid vulnerabilities. The post The Top ...

The State of Supply Chain Cybersecurity in 2023

Supply chain cybersecurity risks continue to cause concern for companies of all sizes in 2023. These risks are more prominent than ever partly because complex IT ecosystems make it hard to maintain visibility over and even define a supply chain. ...