Application Security News and Articles


Counting Down to the EU NIS2 Directive

Counting Down to the EU NIS2 Directive madhav Thu, 05/23/2024 - 05:16 Our recently released 2024 Data Threat Report showed a direct correlation between compliance and cyber security outcomes. 84% of organizations that failed a compliance audit ...

CISOs pursuing AI readiness should start by updating the org’s email security policy

Over the past few years, traditional phishing messages — with their pervasive linguistic errors, thinly-veiled malicious payloads, and often outlandish pretexts — have been on the decline. Easily detected by most of today’s standard email ...

Strategies for transitioning to a SASE architecture

In this Help Net Security, Prakash Mana, CEO at Cloudbrink, discusses the primary challenges companies face when transitioning to a SASE architecture and how to overcome them. What are companies’ primary challenges when transitioning to a ...

Ransomware fallout: 94% experience downtime, 40% face work stoppage

Within the last 12 months, 48% of organizations identified evidence of a successful breach within their environment, according to Arctic Wolf. To fully understand the gravity of this statistic, it is important to understand that, although 48% of ...

2024 sees continued increase in ransomware activity

In this Help Net Security video, Ryan Bell, Threat Intelligence Manager at Corvus Insurance, discusses how ransomware will continue to grow in 2024. In January, Corvus reported that global ransomware attacks in 2023 set a record high, surpassing ...

Machine identities lack essential security controls, pose major threat

Siloed approaches to securing human and machine identities are driving identity-based attacks across enterprises and their ecosystems, according to CyberArk. The CyberArk 2024 Identity Security Threat Landscape Report was conducted across private ...

BTS #30 – Systems Of Trust – Robert Martin

Bob Martin comes on the show to discuss systems of trust, supply chain security and more! Show Notes The post BTS #30 - Systems Of Trust – Robert Martin appeared first on Eclypsium | Supply Chain Security for the Modern Enterprise. The ...

Human Error and AI Emerge as Key Challenges in Survey of CISOs

The 2024 Proofpoint “Voice of the CISO” report is a useful barometer for understanding the current cybersecurity landscape, providing valuable insights from 1,600 CISOs globally. This year’s findings reveal a complex picture where ...

Prompt Injection Threats Highlight GenAI Risks

88% of participants in the Immersive “Prompt Injection Challenge” successfully tricked a GenAI bot into divulging sensitive information. The post Prompt Injection Threats Highlight GenAI Risks appeared first on Security Boulevard.

Responsible AI Licenses (RAIL): Here’s What You Need to Know

Learn about this family of licenses that seek to limit harmful use of AI models. The post Responsible AI Licenses (RAIL): Here’s What You Need to Know appeared first on Mend. The post Responsible AI Licenses (RAIL): Here’s What You Need to ...

USENIX Security ’23 – PET: Prevent Discovered Errors from Being Triggered in the Linux Kernel

Authors/Presenters:Zicheng Wang, Yueqi Chen, Qingkai Zeng Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong commitment to ...

Security Compliance 101: What It Is and How to Master It

Talk to any compliance officer today, and they will all agree that modern security compliance — fulfilling your organization’s regulatory obligations to keep data safe, secure, and intact — must be a top priority for every business. But ...

CFO Deepfake Redux — Arup Lost $26M via Video

Deepfake Zoom of Doom: Construction giant Arup Group revealed as victim of January theft—10% of net profit lost. The post CFO Deepfake Redux — Arup Lost $26M via Video appeared first on Security Boulevard.

Ransomware, BEC, GenAI Raise Security Challenges

According to a global Arctic Wolf survey of over 1,000 senior IT and cybersecurity decision-makers, seven in 10 organizations were targeted by BEC attacks in the past year. The post Ransomware, BEC, GenAI Raise Security Challenges appeared first ...

Daniel Stori’s ‘Irrelevance’

via the inimitable Daniel Stori at Turnoff.US! Permalink The post Daniel Stori’s ‘Irrelevance’ appeared first on Security Boulevard.

What You Need to Know About SEC Compliance Requirements

Catch up on the latest SEC compliance guidance and learn how risk-based vulnerability management can help you align to reporting requirements. The post What You Need to Know About SEC Compliance Requirements appeared first on Security Boulevard.

US Healthcare Cyber Attacks In Focus: How Axio empowers improved Cyber Insurance Options

Cyber-attacks continue unbated including the resurgence of ransomware across a platitude of industry segments, picking off the most vulnerable and exposed; threat actors continue to be successful due to continued Read More The post US Healthcare ...

SOC 2 Compliance: What You Need to Know and Need to Do

Businesses today are storing increasing amounts of data on customers, and it’s not just users who are concerned about the safety of their data. One of the compliance standards that has emerged in an effort to ensure data protection is Service ...

USENIX Security ’23 – USENIX Security ’23 – Content-Type: multipart/oracle – Tapping into Format Oracles in Email End-to-End Encryption

Authors/Presenters: Fabian Ising, Damian Poddebniak and Tobias Kappert, Christoph Saatjohann, Sebastian Schinzel Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong ...

Strike Graph VerifyAI gives businesses flexibility and control for audits

Strike Graph launches VerifyAI, an innovative AI-powered technology for intelligent testing that goes beyond basic security control automation to understand the nuances of your business. Security audits, a necessary burden for businesses, require ...