Application Security
The Security Revolution Will Be AutomatedInformation security teams have the largely thankless responsibility of simultaneously keeping pace with trends in enterprise computing as well...
Hi, what are you looking for?
As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.
The Security Revolution Will Be AutomatedInformation security teams have the largely thankless responsibility of simultaneously keeping pace with trends in enterprise computing as well...
The Open Web Application Security Project (OWASP) announced on Wednesday the availability of version 4 of the OWASP Testing Guide.
Veracode, a Burlington, Massachusetts-based provider of web and mobile application security testing solutions, today announced that it has closed a late-stage $40 million funding...
A popular WordPress plugin that enables users to easily create responsive sliders is plagued by a security hole that has been actively exploited by...
Cybercriminals have compromised the website of an industrial company to conduct a watering hole attack with the goal to collect information on the site's...
Skyfence, a cloud security gateway startup acquired by Imperva earlier this year, announced on Tuesday the availability of a free tool designed to provide...
The IEEE (Institute of Electrical and Electronics Engineers) Center for Secure Design has published some advice to help software developers dodge common mistakes that compromise security.
An analysis of free applications in the Google Play app store found many popular Android apps had SSL vulnerabilities that left them susceptible to...
Researchers at dxw Security have discovered a flaw in the WordPress Mobile Pack plugin that can be exploited to access password-protected posts.
Over the last year or so, the “Cloud Access Security Broker” market, as defined by Gartner, has exploded (451 Research calls it the “Cloud...
For the first time ever, the security teams at Drupal and WordPress have worked together on addressing a remotely exploitable vulnerability that affects tens...
Pwn Pulse Combines “Hack-in-a-box” Sensors with Central Management for Remote Location Intelligence
Pre-release notes published by Apple for OS X Mavericks 10.9.5 and Yosemite Developer Preview 5 are informing developers that they might have to re-sign...
An Australian security researcher has uncovered a bug that provided him access to an unsecured administration panel for an internal content management system (CMS)...
Enterprises Can Gain Competitive Advantages by Having IT Focus on the Things That Matter – Users and Information
Network security solutions provider Fortinet announced on Monday that it has introduced a new on-demand, pay-as-you-go offering for its FortiWeb-VM Web Application Firewalls (WAFs)...
PayPal has fixed a filter bypass flaw and a persistent input validation vulnerability affecting its MultiOrder Shipping application. PayPal MultiOrder Shipping (MOS) is a...
Security threats do not always start with malware sneaking its way onto a computer. Sometimes, they can begin with applications downloaded knowingly by employees...
The Covert Redirect issue, the reportedly "serious vulnerability" uncovered recently in login tools OAuth and OpenID, places the responsibility for user security in the...