Application Security News and Articles


Cybersecurity teams gear up for tougher challenges in 2024

In this Help Net Security video, Tom Gorup, VP of Security Services at Edgio, discusses the continually changing threat landscape. It is riddled with vulnerabilities that are frequently exploited and only intensify as geopolitics and ...

Widespread data silos slow down security response times

Although the goals and challenges of IT and security professionals intersect, 72% report security data and IT data are siloed in their organization, which contributes to corporate misalignment and elevated security risk, according to Ivanti. ...

34% of organizations lack cloud cybersecurity skills

Incident response today is too time consuming and manual, leaving organizations vulnerable to damage due to their inability to efficiently investigate and respond to identified threats, according to Cado Security. The incident response challenge ...

D3 Is Security Automation that Makes Your Team Better

Who do you want running your security operations: robots or cyborgs? For our less nerdy readers, robots are entirely machines, whereas cyborgs are humans that have been augmented with technology. In cybersecurity, the “robot” path would mean ...

Current State of Transport Layer Security (TLS) Post-Quantum Cryptography

AI models rely on huge input data sets. It’s vital that access and transit of these data sets are secure including confidentiality, integrity, and authenticity of their critical and sensitive information. Mutually authenticated Transport Layer ...

City of Helsinki Data Breach: What You Need to Know

On May 2, 2024, the City of Helsinki announced the data breach targeting its Education Division. However, the breach was discovered on April 30, 2024, and an investigation was promptly carried out. It was found that it has impacted tens of ...

Alert: Google Chrome Zero-Day Patch Fixes Critical Flaw

In recent cybersecurity news, Google has swiftly addressed a critical security concern by releasing an emergency update for its Chrome browser. This update targets the third zero-day vulnerability detected in less than a week. Let’s have a look ...

Ascension Cyber Attack Leaves Healthcare Sector Reeling

On May 9, Ascension, the largest nonprofit and Catholic health system in the United States, announced that it fell victim to a major cyber attack. This occurs in the wake of the recent massive Change Healthcare cyber incident. But the attack on ...

Scytale Launches Vendor Risk Management, Ensuring a Seamless and Integrated Process for Managing Vendors

Scytale’s Vendor Risk Management ensures your vendors adhere to top data security practices to maintain compliance standards. The post Scytale Launches Vendor Risk Management, Ensuring a Seamless and Integrated Process for Managing Vendors ...

Continuous Threat Exposure Management (CTEM) – The Ultimate Guide for CISOs

A security breach. Headlines scream, investors panic, and fingers get pointed.  But what if you could anticipate an attack with the help of CTEM before it happens? For years, organizations... The post Continuous Threat Exposure Management (CTEM) ...

Detectify platform enhancements address growing attack surface complexity

Detectify announced a new Domains page and major improvements to existing capabilities for setting custom attack surface policies. These updates bring control over attack surface data and enable organizations to seamlessly configure alerts for ...

Rising Like A Phoenix, ShowMeCon 2024 Resurrects A Security Community In The Midwest

2024 marked the triumphant return of ShowMeCon, where cybersecurity experts shared their knowledge about distributed security, pentesting, and combating misinformation. The post Rising Like A Phoenix, ShowMeCon 2024 Resurrects A Security ...

Uncontrolled AI: Navigating Ethical Dilemmas and Shadow AI Risks

Generative AI has captured the world’s imagination, evident in its remarkable adoption rate and popularity worldwide.  According to a Deloitte survey, one in four UK citizens have dabbled in Generative AI. The research also found that nearly a ...

NetworkMiner 2.9 Released

NetworkMiner 2.9 brings several new and improved features to help analysts make sense of network traffic from malware, criminals and industrial control systems. Highlights from this new version include: TZSP supportStealC extractorImproved Modbus ...

Understanding and Mitigating Privilege Escalation Vulnerabilities in the Linux Kernel

Privilege escalation is a critical security issue in Linux systems, potentially leading to full system compromise. The Dirty COW and Dirty Pipe vulnerabilities are popular examples of privilege escalation vulnerabilities in the Linux kernel. ...

AI Governance

What is the Centraleyes AI Governance Framework? The AI Governance assessment, created by the Analyst Team at Centraleyes, is designed to fill a critical gap for organizations that use pre-made or built-in AI tools. While many official ...

The Importance of Patching Vulnerabilities in Cybersecurity

One of the most critical yet often overlooked aspects of cybersecurity is the timely patching of vulnerabilities. While much attention is given to sophisticated phishing attacks and the menace of password brute-forcing, the importance of ...

Lunch & Learn With Dr. Freund During The Gartner Risk Summit | Kovrr

Articles related to cyber risk quantification, cyber risk management, and cyber resilience. The post Lunch & Learn With Dr. Freund During The Gartner Risk Summit | Kovrr appeared first on Security Boulevard.

United States Memorial Day 2024

Photograph Courtesy of the United States Marine Corps, Photographer: Caitlin Brink, CPL, USMC Permalink The post United States Memorial Day 2024 appeared first on Security Boulevard.

Human error still perceived as the Achilles’ heel of cybersecurity

While fears of cyber attacks continue to rise, CISOs demonstrate increasing confidence in their ability to defend against these threats, reflecting a significant shift in the cybersecurity landscape, according to Proofpoint. CISOs’ ...