Application Security News and Articles


Chronon: Open-source data platform for AI/ML applications

Chronon is an open-source, end-to-end feature platform designed for machine learning (ML) teams to build, deploy, manage, and monitor data pipelines for machine learning. Chronon enables you to harness all the data within your organization, ...

Microsoft’s Copilot+ Recall Feature, Slack’s AI Training Controversy

Episode 331 of the Shared Security Podcast discusses privacy and security concerns related to two major technological developments: the introduction of Windows PC’s new feature ‘Recall,’ part of Microsoft’s Copilot+, which captures ...

Digital ID adoption: Implementation and security concerns

As digital transformation accelerates, understanding how businesses are preparing for and implementing digital ID technologies is crucial for staying ahead in security and efficiency, according to Regula. The role of digital identity in ...

Ransomware operators shift tactics as law enforcement disruptions increase

Ransomware remains one of the most pressing cybersecurity threats in 2024, with attackers continually evolving their methods to maximize impact and evade detection. In this Help Net Security round-up, we present excerpts from previously recorded ...

4 Reasons Why SaaS Security Must Change | Grip

Explore four pivotal changes in SaaS and learn why a more modern approach to SaaS security is needed to protect your company against today’s identity risks. The post 4 Reasons Why SaaS Security Must Change | Grip appeared first on Security ...

USENIX Security ’23 – ARGUS: Context-Based Detection of Stealthy IoT Infiltration Attacks

Authors/Presenters:Phillip Rieger, Marco Chilese, Reham Mohamed, Markus Miettinen, Hossein Fereidooni, Ahmad-Reza Sadeghi Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations ...

Navigating the AI Revolution: The Global Battle for Tech Supremacy

Artificial intelligence is yielding unprecedented benefits, battles, opportunities and fears — and advancing faster than ever. What is the latest on the global AI landscape?   The post Navigating the AI Revolution: The Global Battle for Tech ...

Week in review: Google fixes yet another Chrome zero-day exploit, YouTube as a cybercrime channel

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Google fixes yet another Chrome zero-day exploited in the wild (CVE-2024-5274) For the eighth time this year, Google has released an emergency ...

What is Azure Identity Protection and 7 Steps to a Seamless Setup

Protecting credentials has become increasingly critical in recent years, with everyday employees using more passwords, devices, and systems than ever before.  Remote work has significantly increased the risk of identity attacks. 55% of remote ...

USENIX Security ’23 – Network Detection of Interactive SSH Impostors Using Deep Learning

Authors/Presenters:Julien Piet, Aashish Sharma, Vern Paxson, David Wagner Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong commitment to Open Access. Originating from ...

Top Cyber Security Companies in Bangalore

Bangalore, often referred to as the Silicon Valley of India, is home to numerous companies specializing in cybersecurity. Given the increasing prevalence of cyber threats and attacks, investing in cybersecurity has become imperative for ...

Courtroom Recording Software Compromised in Supply Chain Attack

Threat actors compromised a popular audio-visual software package used in courtrooms, prisons, government, and lecture rooms around the world by injecting a loader malware that gives the hackers remote access to infected systems, collecting data ...

Cloud Monitor Makes Online Learning Safer, More Secure and Easy for Education

Recently, we hosted Michael Tapia, Chief Technology Director at Clint ISD in Texas, and Kobe Brummet, Cybersecurity Technician at Hawkins School District in Tennessee, for a live webinar. Michael and Kobe volunteered to share with other K-12 tech ...

ShrinkLocker Ransomware Leverages BitLocker for File Encryption

The ransomware resizes system partitions to create a new boot partition, ensuring the encrypted files are loaded during system startup, which locks out the user. The post ShrinkLocker Ransomware Leverages BitLocker for File Encryption appeared ...

Deepfactor 3.6 Introduces CLI Support for Windows and Mac Users, and Robust Enterprise Capabilities and User Management

... Read more » The post Deepfactor 3.6 Introduces CLI Support for Windows and Mac Users, and Robust Enterprise Capabilities and User Management appeared first on Deepfactor. The post Deepfactor 3.6 Introduces CLI Support for Windows and Mac ...

ThreatAlert® on Google Cloud Platform: A Proven Solution for Comprehensive Security

Alec Meyer, Sr. Cloud Solutions Specialist As cloud adoption continues its meteoric rise, so too does the complexity of securing diverse environments. At stackArmor, our ThreatAlert® Security Platform has been a cornerstone for achieving and ...

New Publication From the Cloud Security Alliance (CSA): Hardware Security Modules as a Service

I’ve been part of the Cloud Security Alliance (CSA) Cloud Key Management working group for... The post New Publication From the Cloud Security Alliance (CSA): Hardware Security Modules as a Service appeared first on Entrust Blog. The post New ...

USENIX Security ’23 – Detecting Union Type Confusion in Component Object Model

Authors/Presenters:Yuxing Zhang, Xiaogang Zhu, Daojing He, Minhui Xue, Shouling Ji, Mohammad Sayad Haghighi, Sheng Wen, Zhiniang Peng Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the ...

Emulating the Open-Source Remote Access Trojan (RAT) AsyncRAT

AttackIQ has released two new attack graphs that seek to emulate the Tactics, Techniques and Procedures (TTPs) associated with and exhibited by the open-source Remote Access Trojan AsyncRAT during its activities in 2023. The post Emulating the ...

Resolving the Zero Trust Encryption Paradox

PKI and cryptography are critical components of a Zero Trust strategy, driving the use of... The post Resolving the Zero Trust Encryption Paradox appeared first on Entrust Blog. The post Resolving the Zero Trust Encryption Paradox appeared first ...