Application Security News and Articles


Diddy Do It? Or Did Cybercriminals? How Hackers Are Turning Scandals Into Cyber Attacks 

Attackers often capitalize on public interest in high-profile scandals to spread malware and exploit users’ curiosity. The recent Sean “Diddy” Combs scandal is no exception. As public attention skyrockets around the story, cybercriminals ...

How to Improve Security Posture with Automation

The post How to Improve Security Posture with Automation appeared first on AI-enhanced Security Automation. The post How to Improve Security Posture with Automation appeared first on Security Boulevard.

Automating Certificate Lifecycle Management in Windows OS with AppViewX AVX ONE CLM

It is a common experience that automating certificate lifecycle management (CLM) in a Windows OS environment comes with several challenges. These challenges arise from the complexity of the Windows ecosystem, security considerations, integration ...

Spring 2021 Product Update

We're excited to share what we've been busy building! Support for more DBs, subsetting advances, FK relationships across DBs, differential privacy generators, commenting, undo/redo, and more. Register for our Spring Launch webinar to see ...

5 Common Data Security Challenges Businesses Face and How to Overcome Them

Find out how data observability can help you overcome common data security challenges that most businesses face. The post 5 Common Data Security Challenges Businesses Face and How to Overcome Them appeared first on Security Boulevard.

Your Data is Safe — Math Guarantees It!

Hot off the heels of the Privacy Hub, we’re introducing more privacy protecting features to Tonic! Today we’re excited to announce the introduction of differential privacy to... The post Your Data is Safe — Math Guarantees It! appeared ...

Dockerize Mongo to Get Consistent Data Across Your Development Environments

Figuring out how to dockerize and seed your development mongoDB database for consistent replication across environments might not seem so straightforward. Check out this tutorial highlighting learnings that have worked for Tonic! The post ...

CRQ Loss Exceedance Curves for Risk Management | Kovrr

Articles related to cyber risk quantification, cyber risk management, and cyber resilience. The post CRQ Loss Exceedance Curves for Risk Management | Kovrr appeared first on Security Boulevard.

Randall Munroe’s XKCD ‘Maslow’s Pyramid’

via the comic humor & dry wit of Randall Munroe, creator of XKCD Permalink The post Randall Munroe’s XKCD ‘Maslow’s Pyramid’ appeared first on Security Boulevard.

SBOM-a-Rama Fall 2024: Sonatype’s top 5 takeaways

This month's SBOM-a-Rama Fall 2024 event, hosted by the Cybersecurity and Infrastructure Security Agency (CISA), marked a milestone in the ongoing evolution of software bill of materials (SBOM) adoption. The post SBOM-a-Rama Fall 2024: ...

Microsoft Pushes Governance, Sheds Unused Apps in Security Push

Microsoft outlined steps it's taken over the past year under its Security Future Initiative, which was launched late last year in the wake of a high-profile attack by Chinese attackers and only months before another serious breach by a ...

Join KubeCrash Fall 2024 for Platform Engineering the Cloud Native Way

I’m excited to be back at KubeCrash this fall! Mark your calendars to join us on Wednesday, October 9th starting at 10 AM ET, as KubeCrash pulls together a day packed with actionable insights and practical takeaways on platform engineering in ...

SaaS Data Breaches on the Rise

SaaS is an integral part of the IT infrastructure for companies of all sizes nowadays. This model lets employees access useful software tools via the cloud, and it powers everything from customer relationship management and financial tracking to ...

GUEST ESSAY: Massive NPD breach tells us its high time to replace SSNs as an authenticator

Ever since the massive National Public Data (NPD) breach was disclosed a few weeks ago, news sources have reported an increased interest in online credit bureaus, and there has been an apparent upswing in onboarding of new subscribers. Related: ...

ICS Security strategy for manufacturing

With increasing attacks on OT/ICS infrastructure and the rising need to secure industrial output, the focus on ICS security has never been greater. Beyond attacks, manufacturers are also reaping the benefits of higher asset and network visibility ...

USENIX NSDI ’24 – MuCache: A General Framework for Caching in Microservice Graphs

Authors/Presenters:Haoran Zhang, Konstantinos Kallas, Spyros Pavlatos, Rajeev Alur, Sebastian Angel, Vincent Liu Our sincere thanks to USENIX, and the Presenters & Authors for publishing their superb 21st USENIX Symposium on Networked Systems ...

Transportation, logistics companies targeted with lures impersonating fleet management software

Financially motivated threat actors are targeting North American companies in the transportation and logistics sector with tailored lures, info-stealing malware, and a clever new trick. How the attack unfolds According to Proofpoint threat ...

Osano reduces complexity for data privacy professionals

Osano announced advanced capabilities within its platform, including tighter integration of its data mapping and assessment modules and powerful reporting and risk management capabilities. Privacy teams are often under-resourced and overwhelmed ...

KELA Identity Guard detects and intercepts compromised assets

KELA launched Identity Guard, the first line of defense to help combat the #1 cause of data breaches – compromised corporate assets and identities. Identity Guard is a critical module of KELA’s threat intelligence platform, already in ...

Cloudflare helps secure popular messaging applications

Cloudflare announced a new service to verify the integrity of public keys in the end-to-end encryption of popular messaging applications. When using end-to-end encryption messaging applications, a public-private key exchange encrypts messages to ...