Application Security News and Articles


Windows Server 2025 gets hotpatching option, without reboots

Organizations that plan to upgrade to Windows Server 2025 once it becomes generally available will be able to implement some security updates by hotpatching running processes. What is hotpatching? “Hotpatching has been around for years in ...

Cloudflare AI Audit helps websites control how their content is used by AI models

Cloudflare announced AI Audit, a set of tools to help websites of any size analyze and control how their content is used by AI models. For the first time, website and content creators will be able to quickly and easily understand how AI model ...

RightCrowd SmartAccess platform enhancements boost enterprise security

RightCrowd announced significant advancements in its product portfolio with the launch of enhanced RightCrowd SmartAccess platform, the broadest set of mobile credential capabilities with expanded partnerships with Wavelynx, HID, and Sentry, and ...

Unmasking Malware Through IP Tracking: How Attackers Exploit IP and Geo-Location Data to Target Your Network 

Identifying and tracking the origin of an attack is critical for mitigating the damage caused by malware. One of the most effective methods to do so is by analyzing IP addresses, which can provide clues about when and where an attack first took ...

Public Sector Compliance: Passwords and Credentials Matter

Helping government agencies and organizations operating in the public sector navigate password and credential security. The post Public Sector Compliance: Passwords and Credentials Matter appeared first on Security Boulevard.

Organizations are changing cybersecurity providers in wake of Crowdstrike outage

More often than not, a cyber attack or a cyber incident that results in business disruption will spur organizations to make changes to improve their cybersecurity and cyber resilience – and sometimes that means changing cybersecurity ...

Building The Next Generation of Travel Risk and Critical Event Management Solutions 

Combining world-class emergency services expertise from International SOS with Ontic’s purpose-built platform to strengthen global workforce protection Today, we announced a partnership with International SOS, the global leader in travel risk ...

Take Advantage of FCC Funding with ManagedMethods

Cloud Monitoring, Data Loss Prevention, and Security Audits for K-12 We recently hosted a live webinar that discussed what you need to know about the FCC Schools and Libraries Cybersecurity Pilot Program. This webinar outlines an overview of the ...

Iranian-Linked Group Facilitates APT Attacks on Middle East Networks

The threat group UNC1860, linked to Iran's security intelligence agency, gains initial access into networks around the region and hands that access off to other Iranian-associated hackers to established persistent and long-term access, Mandiant ...

Step-by-Step Guide: How to Create a Risk Register for Your Cybersecurity Strategy

Cyber risk management has become more critical in today's challenging digital landscape. Organizations face increased pressure to identify, assess, and mitigate risks that could disrupt their operations. One of the foundational tools that can ...

Complete your Kubernetes security with runtime protection

Kubernetes today is the de facto standard for container orchestration, deployment automation, scaling, and management of containerized apps. The post Complete your Kubernetes security with runtime protection appeared first on ARMO. The post ...

Will Smaller Companies Buckle Under the SEC’s Incident Reporting Requirements?

The SEC’s new incident reporting requirements have brought about many questions and concerns among security professionals and government bodies. The post Will Smaller Companies Buckle Under the SEC’s Incident Reporting Requirements? appeared ...

The Importance of Cybersecurity Awareness and Insider Threat Management 

Insider threats, which involve individuals within an organization who exploit their access for malicious purposes or unwittingly cause security breaches due to human error, are a significant security challenge. The post The Importance of ...

TuxCare Aims to Help Further Boost Enterprise Adoption of AlmaLinux through Donation of OEM Support Contracts

PALO ALTO, Calif. – September 23, 2024 – TuxCare, a global innovator in enterprise-grade cybersecurity for Linux, today announced it continues to bolster its support for the open-source community by donating OEM Enterprise Support contracts ...

The Problem With Third-Party Breaches: A Data Protection Dilemma  

Third-party breaches pose a significant challenge to organizations, demanding meticulous attention and measures to prevent data compromises. The post The Problem With Third-Party Breaches: A Data Protection Dilemma   appeared first on Security ...

Bitdefender debuts GravityZone PHASR, enhancing security through user behavior analysis

Bitdefender has unveiled Bitdefender GravityZone Proactive Hardening and Attack Surface Reduction (PHASR), a technology that transforms how defense-in-depth-security is applied and managed across businesses. GravityZone PHASR analyzes individual ...

Critical Expat Vulnerabilities Fixed: Urgent Update Required

A recent discovery has highlighted significant security risks within the widely used Expat XML parsing C library. Security researcher Shang-Hung Wan identified three critical Expat vulnerabilities that could potentially lead to denial-of-service ...

Implement DevOps Best Practices for Web Apps on Linux

If you need clarification about why or how you should use Linux in your DevOps project for web app development, then this article is for you.  In an era when DevOps is trending, underestimating the potential of Linux can prove to be a very fatal ...

Risks and Mitigation of Insider Threats

Risks and Mitigation of Insider Threats Insider attacks are growing, whereby 60% of organizations in the past year alone have suffered employee-related data breaches. Surprised? Most businesses get blindsided by the people they put their most ...

PIPEDA

What is PIPEDA? The Personal Information Protection and Electronic Documents Act (PIPEDA) is Canada’s main privacy law for businesses. It sets out the rules for how companies should collect, use, and share personal information in a way that ...