Application Security News and Articles


Scammers exploit tax season anxiety with AI tools

25% of Americans has lost money to online tax scams, according to McAfee. Of the people who clicked on fraudulent links from supposed tax services, 68% lost money. Among those, 29% lost more than $2,500, and 17% lost more than $10,000. Moreover, ...

Tech industry’s focus on innovation leaves security behind

The rapid digital transformation and technological progress within the technology sector have enlarged the attack surface for companies operating in this space, according to Trustwave. As the sector evolves, the proliferation of ...

AI and Cybersecurity: Unveiling NSFOCUS’s Innovative Edge at HKIB Cybersecurity Solutions Day 2024

On March 15th, the Cybersecurity Solutions Day event, organized by the Hong Kong Institute of Bankers (HKIB), officially commenced. The event focused on addressing the increasingly complex cybersecurity environment influenced by AI technologies, ...

The Next Evolution of IAM: How Generative AI is Transforming Identity and Access

The shift towards AI-powered IAM promises to enhance security, improve user experiences, and simplify complex access management tasks. The post The Next Evolution of IAM: How Generative AI is Transforming Identity and Access appeared first on ...

Life in the Swimlane with Lindsay Jones, Director of Service Operations

The post Life in the Swimlane with Lindsay Jones, Director of Service Operations appeared first on AI Enabled Security Automation. The post Life in the Swimlane with Lindsay Jones, Director of Service Operations appeared first on Security Boulevard.

Cybersecurity in Financial Disclosures: 11 Topics Your Section 1C of 10-K Filings Should Address

Last year, the Securities and Exchange Commission (SEC) announced new disclosure rules for publicly traded companies. Regulation S-K Item 106, which mandates cybersecurity disclosures in corporate 10-K filings, sheds light on how companies are ...

How to Get the Most From Your Secrets Scanning

Secret scanning is essential for unlocking next-level software supply chain security. Get tips & best practices for optimal secret scanning to secure your code. The post How to Get the Most From Your Secrets Scanning appeared first on ...

The Show Must Go On

It has been a long time since I last posted on this site. Truth be told it was broken for at least three years. Nothing quite like having some free time to catch up. Honestly, it has been somewhat refreshing getting back into technical work and ...

Constella and Social Links Join Forces to Deliver Transformative OSINT Solutions

March 25, 2024[1]  — Social Links, a leading developer of open-source intelligence (OSINT) software, has announced a strategic partnership with Constella Intelligence, a prominent identity signals provider. This collaboration marks a milestone ...

USENIX Security ’23 – Lukas Lamster, Martin Unterguggenberger, David Schrammel, and Stefan Mangard – HashTag: Hash-based Integrity Protection for Tagged Architectures

Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong commitment to Open Access. Originating from the conference’s events situated at the Anaheim Marriott; and via the ...

Top 4 Industries at Risk of Credential Stuffing and Account Takeover (ATO) attacks

All industries are at risk of credential stuffing and account takeover (ATO) attacks. However, some industries are at a greater risk because of the sensitive information or volume of customer data they possess. While cyber-attacks come in all ...

Log Formatting Best Practices for Improved Security

In the event of a security breach, logs play a crucial role in understanding the... The post Log Formatting Best Practices for Improved Security appeared first on Security Boulevard.

AI Regulation at a Crossroads

Ever since ChatGPT debuted in November 2022, the hype and hysteria surrounding artificial intelligence (AI)... The post AI Regulation at a Crossroads appeared first on Entrust Blog. The post AI Regulation at a Crossroads appeared first on ...

China Steals Defense Secrets ‘on Industrial Scale’

UNC5174 ❤ UNC302: CVSS 10 and 9.8 vulnerabilities exploited by Chinese threat actor for People’s Republic. The post China Steals Defense Secrets ‘on Industrial Scale’ appeared first on Security Boulevard.

Randall Munroe’s XKCD ‘Moon Landing Mission Profiles’

via the comic artistry and dry wit of Randall Munroe, creator of XKCD Permalink The post Randall Munroe’s XKCD ‘Moon Landing Mission Profiles’ appeared first on Security Boulevard.

Stuck in Pivotal Cloud Foundry? Make Your Move to Kubernetes Easy

Is your organization feeling stuck using Pivotal Cloud Foundry (PCF), now known as Tanzu Application Service (TAS or sometimes VMware Cloud Foundation)? You're not alone. Broadcom completed its acquisition of VMware in late 2023. To make the most ...

Segregation of Duties for Oracle ERP Cloud

Watch Now 420,000 Oracle Cloud ERP Segregation of Duties violations to zero unexpected conflicts: A case study in Best Practice SoD OptimizationUnaddressed segregation of duties conflicts increase the risk of fraud, error, and rework and pose ...

Is it time to enforce an Authority-to-Operate (ATO) for Healthcare Organizations?

The Change Healthcare security breach has impacted over 94% of hospitals as reported by the American Health Association (AHA). A cascading set of events was unleashed starting with the Feb 21, 2024 announcement of the data breach at Change ...

Event Recap: Highlights from Nuspire’s Time at FutureCon Baltimore

The Nuspire team recently attended FutureCon Baltimore, an event that yielded a myriad of meaningful discussions that not only covered the sharing of cybersecurity knowledge, but also delved into the key challenges and pain points cybersecurity ...

USENIX Security ’23 – Design Of Access Control Mechanisms In Systems-On-Chip With Formal Integrity Guarantees

Authors/Presenters:*Dino Mehmedagić, Mohammad Rahmani Fadiheh, Johannes Müller, Anna Lena Duque Antón, Dominik Stoffel, Wolfgang Kunz* Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the ...