Application Security
ANCHORAGE, Alaska (AP) — Alaska revenue officials shut down online applications for annual oil wealth checks after personal information of other users popped up...
Hi, what are you looking for?
As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.
ANCHORAGE, Alaska (AP) — Alaska revenue officials shut down online applications for annual oil wealth checks after personal information of other users popped up...
The European Union is offering a total of more than €850,000 – nearly $1 million – for vulnerabilities found in 14 widely used free...
Twitter recently addressed a security vulnerability that resulted in certain applications not correctly showing all of the permissions they had.
Tigera, a San Francisco-based company that provides security and compliance solutions for Kubernetes platforms, announced on Wednesday that it raised $30 million in a...
A team of researchers has introduced the concept of smart greybox fuzzing, which they claim is much more efficient in finding vulnerabilities in libraries...
Amazon Web Services on Wednesday announced the launch of AWS Security Hub, a service designed to aggregate and prioritize alerts from AWS and third-party...
The United States Postal Service (USPS) has fixed an API flaw that potentially exposed data on 60 million customers. A researcher reported the flaw...
A recent attack targeted Drupal web servers with a chain of vulnerabilities that included the infamous Drupalgeddon2 and DirtyCOW flaws, Imperva security researchers say.The...
Private equity investment firm Thoma Bravo on Monday announced that it has entered an agreement to acquire application security testing company Veracode from Broadcom.Thoma...
According to new research, 98% of leading companies across the U.S. and Europe are vulnerable to cybercriminals through their web applications. While this figure...
The Department of Defense announced on Wednesday that its “Hack the Pentagon” bug bounty program will run all year long and will target the...
Chef Software has announced the latest version of its InSpec compliance automation platform for DevSecOps. InSpec provides an open source high-level language to share...
IBM Security on Monday unveiled a new cloud-based platform that combines the company's own capabilities with data, applications and tools from more than a...
Google announced Monday it is shutting down the consumer version of its online social network after fixing a bug exposing private data in as...
Facebook has shared another update on the hacker attack disclosed last week. The social media giant says there is no evidence that the attackers...
When was the last time you thought about what permissions the apps on your phone have? Often, when downloading something new from the app...
Credential stuffing is a growing threat. It is not new, but for many companies it is treated as annoying background noise that can be...
BGP (Border Gateway Protocol) routing isn’t secure and organizations should embrace Resource Public Key Infrastructure (RPKI) to improve security, Cloudflare says.
Rapid7 announced on Thursday that its Insight Platform now features automation and orchestration capabilities through a new tool called InsightConnect.
Comprehensive Data Security Measures Should Include a Formal Process for Application Security and Vulnerability Assessment