Application Security News and Articles


NIST’s NVD has encountered a problem

Whether the cause is insurmountable technical debt, lack of funds, a third reason or all of them, NIST’s National Vulnerability Database (NVD) is struggling, and it’s affecting vulnerability management efforts. What happened? Anyone ...

Taking Cyber Asset and Exposure Management to the Boardroom

Learn how to articulate the ROI of Noetic in today’s boardrooms with the insights from Brad LaPorte’s research—From Risk to Returns: Noetic Cyber Asset and Exposure Management. Explore the platform’s transformational role in driving ...

Traefik Labs updates address rising Kubernetes adoption and API management

Traefik Labs has unveiled product updates that address the escalating adoption of Kubernetes and the crucial role of API management in modern digital infrastructure. The updates include a Kubernetes-native API gateway, integration of a Web ...

Read code like a pro with our weAudit VSCode extension

By Filipe Casal Today, we’re releasing weAudit, the collaborative code-reviewing tool that we use during our security audits. With weAudit, we review code more efficiently by taking notes and tracking bugs in a codebase directly inside VSCode, ...

Fairwinds Insights Release Notes 15.1.1-15.5.0 App Groups Auto-Updates

This month, we’ve been working hard to make improvements to Fairwinds Insights that will make it easier to use, so you can make informed decisions about your Kubernetes environment faster. These updates include List Ticket Auto-Updates, CI ...

What is API Threat Detection?

API threat detection is one of the critical aspects of API security and is the process of identifying API threats intended to exploit API vulnerabilities. As API usage becomes more prevalent across organizations, they have also become a primary ...

Sonatype SBOM Manager identifies and mitigates vulnerabilities within the software supply chain

Working with the world’s largest enterprises and global policymakers to address the complexities of optimizing your software supply chain with SBOMs (Software Bill of Materials), Sonatype announced SBOM Manager. This solution provides an ...

Threat Actors are Exercising New Attack Techniques to Bypass Machine Learning Security Controls

“Conversation Overflow” attacks are the latest attempt to get credential harvesting phishing emails into your inbox SlashNext threat researchers have uncovered a dangerous new type of cyberattack in the wild that uses cloaked emails to trick ...

Delivering Digital Immunity: Taking a Holistic Approach to Optimize Your Network

Organizations must develop digital immunity to protect their apps and services from software bugs or security issues. The post Delivering Digital Immunity: Taking a Holistic Approach to Optimize Your Network appeared first on Security Boulevard.

What does security instrumentation do for Application Security? A basketball analogy | Contrast Security

It's not just any basketball — it’s a sensor-packed basketball called the 94Fifty.  The post What does security instrumentation do for Application Security? A basketball analogy | Contrast Security appeared first on Security Boulevard.

AppViewX Provides Certificate Lifecycle Management for HAproxy Fusion Control Plane

Load balancing is essential for exposing new applications on production IP addresses and requires knowledge of the network from the network operations (NetOps) team to manage the process. Other teams must open a ticket when they need to load ...

Verimatrix Counterspy safeguards content across various devices

Verimatrix released its new Verimatrix Counterspy anti-piracy solution. Counterspy leverages technology first developed by the company’s cybersecurity team back in 2021 to offer an innovative new way to counter the rise in video piracy in ...

SUSE announces new enhancements to help users manage business-critical workloads

SUSE announced enhancements across its cloud native and Edge portfolio to enable customers to securely deploy and manage business-critical workloads anywhere. New capabilities in Rancher Prime 3.0, SUSE’s commercial offering of Rancher and ...

PoC exploit for critical Fortra FileCatalyst MFT vulnerability released (CVE-2024-25153)

Proof-of-concept (PoC) exploit code for a critical RCE vulnerability (CVE-2024-25153) in Fortra FileCatalyst MFT solution has been published. About CVE-2024-25153 Fortra FileCatalyst is an enterprise managed file transfer (MFT) software solution ...

Case Study: Fatty Liver Foundation Improves Enterprise Domain Security with PowerDMARC

Reading Time: 2 min Learn how the Fatty Liver Foundation, a global non-profit, enhanced enterprise domain security with PowerDMARC’s intuitive cloud platform. The post Case Study: Fatty Liver Foundation Improves Enterprise Domain Security with ...

Author Q&A: A patient’s perspective of advanced medical technology and rising privacy risks

A close friend of mine, Jay Morrow, has just authored a book titled “Hospital Survival.” Related: Ransomware plagues healthcare Jay’s book is very personal. He recounts a health crisis he endured that began to manifest at the start of what ...

AI and the Evolution of Social Media

Oh, how the mighty have fallen. A decade ago, social media was celebrated for sparking democratic uprisings in the Arab world and beyond. Now front pages are splashed with stories of social platforms’ role in misinformation, business ...

Vultr Cloud Inference simplifies AI deployment

Vultr launched Vultr Cloud Inference, a new serverless platform. Leveraging Vultr’s global infrastructure spanning six continents and 32 locations, Vultr Cloud Inference provides customers with scalability, reduced latency, and enhanced cost ...

LogRhythm and SOC Prime Announce Partnership to Accelerate Threat ​Detection ​and Hunting​

New partnership combines LogRhythm Axon’s analytics and threat management with SOC Prime’s cutting-edge capabilities  LogRhythm, the company helping security teams stop breaches by turning disconnected data and signals into trustworthy ...

Cohesity partners with NVIDIA to harness the power of generative AI

Cohesity announced a collaboration with NVIDIA to help organizations safely unlock the power of generative AI and data using the recently announced NVIDIA NIM microservices and by integrating NVIDIA AI Enterprise into the Cohesity Gaia platform. ...