Application Security News and Articles


Nextcloud Hub 9 released: New features, more security, updated performance

Nextcloud has launched Nextcloud Hub 9, a significant update to its open-source cloud-based collaboration platform. It introduces several new features to improve user experience, performance, and security. Enhanced security in Nextcloud Hub 9 ...

HYAS Protect and ConnectWise: Together at Last

At HYAS, our mission has always been to empower our clients with cutting-edge cybersecurity solutions that not only protect but also work within their environment and streamline their security operations. Too much of the cyber security industry ...

Tackle Cyber Resilience Act requirements with our CRA checklist

Recent Cybersecurity regulations in the EU impact providers of digital products by setting down new requirements along the software supply chain. Our Cyber Resilience Act (CRA) checklist covers key elements of CRA and how the Sonatype platform ...

What is Network Security Automation?

The post What is Network Security Automation? appeared first on AI-enhanced Security Automation. The post What is Network Security Automation? appeared first on Security Boulevard.

Sonatype can help you navigate DORA compliance

Providers of digital products and services to the EU are being impacted by a suite of new cybersecurity regulations coming into force. Among them is the Digital Operations Resilience Act (DORA), and we've developed a checklist to help you manage ...

USENIX NSDI ’24 – Flow Scheduling With Imprecise Knowledge

Authors/Presenters:Wenxin Li, Xin He, Yuan Liu, Keqiu Li, Kai Chen, Zhao Ge and Zewei Guan, Heng Qi, Song Zhang, Guyue Liu Our sincere thanks to USENIX, and the Presenters & Authors for publishing their superb 21st USENIX Symposium on ...

Countering the Codex: The Rise of LLM Platform Abuse

A New Threat Vector Emerges Consider this perspective: You’re adept at navigating the rapidly evolving threat landscape, because you’re experienced. Your company stands as one of the most targeted enterprises by bad actors globally, and that ...

Training Your Team on the Security of CPS & IoT Systems

(Part 3 of our 3 part 2024 Summer IoT Security Series)After you’ve deployed and maintained security practices across IoT/CPS systems at scale comes having ongoing training and awareness building about security.  It not only reduces ...

100% of MSSPs Plan to Use AI—But How?

Artificial intelligence (AI) is going to revolutionize security operations. That much should be uncontroversial. The real questions are what form will that revolution take and how far into it are we? Sometimes it seems like every vendor is ...

Compliance webinar series: Understanding the Cyber Resilience Act

If your organization is not already preparing to comply with the Cyber Resilience Act (CRA), now's the time to begin. This is a European-wide regulation, which means it will be implemented in the same way across all European Union (EU) member ...

Product Updates: Escape’s Advanced Jira Integration – Send Remediation Details to Your Developers

We’re thrilled to introduce Escape’s advanced Jira integration! Bridging the gap between security and development has never been easier. The post Product Updates: Escape’s Advanced Jira Integration – Send Remediation Details to Your ...

Randall Munroe’s XKCD ‘Every Scientific Field’

via the comic humor & dry wit of Randall Munroe, creator of XKCD Permalink The post Randall Munroe’s XKCD ‘Every Scientific Field’ appeared first on Security Boulevard.

News alert: Aembit’s 2024 survey report highlights major gaps in securing ‘Non-Human Identities’

Silver Spring, MD, Sept. 19, 2024, CyberNewswire — Aembit, the non-human identity and access management (IAM) company, today released its 2024 Non-Human Identity Security Report, a definitive survey highlighting how organizations currently ...

Century-Long Innovation: A Legacy of Outpacing Cyber Threats

Discover how Komori, a century-old printing giant, is leading the charge in cybersecurity innovation by adapting to internet-connected risks and utilizing advanced solutions like NodeZero to safeguard their legacy. The post Century-Long ...

USENIX NSDI ’24 – Sifter: An Inversion-Free and Large-Capacity Programmable Packet Scheduler

Authors/Presenters:Peixuan Gao, Anthony Dalleggio, Jiajin Liu, Chen Peng, Yang Xu, H. Jonathan Chao Our sincere thanks to USENIX, and the Presenters & Authors for publishing their superb 21st USENIX Symposium on Networked Systems Design and ...

CVE-2024-38856 and CVE-2024-45195 – Apache OFBiz Security Vulnerabilities – August 2024

Critical Security Vulnerabilities (CVE-2024-38856 and CVE-2024-45195) in Apache OFBiz Expose Enterprise Systems to Potential Data Breaches and Disruption of Critical Business Functions Affected Platform  Apache OFBiz is an open-source framework ...

How DataDome Protected a US News Website from a 12-Hour DDoS Attack

A US news website recently faced a 1.85 billion request DDoS attack. Learn how DataDome stopped the attack in its tracks, keeping the customer safe. The post How DataDome Protected a US News Website from a 12-Hour DDoS Attack appeared first on ...

The EU AI Act and the Need for Data-Centric Security

Artificial intelligence (AI) is already embedded deep into the economic and social fabric of the world. It does everything from operating website chatbots to authenticating users with their bank. It keeps planes in the sky and cars on the road. ...

Defending Against Ransomware Threats: Tactics and Procedures Revealed by CISA

In a recent announcement, the Cybersecurity and Infrastructure Security Agency (CISA) issued a warning about the increasing ransomware threat posed by Iran-based cyber actors. The advisory highlighted the specific tactics, techniques, and ...

Windows users targeted with fake human verification pages delivering malware

For a while now, security researchers have been warning about fake human verification pages tricking Windows users into inadvertently installing malware. A recently exposed campaign showed how some users end up on these pages. Beware of fake ...