Application Security
Webcast: Wednesday, July 31 at 1 PM ET / 10 AM PT
Hi, what are you looking for?
As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.
Webcast: Wednesday, July 31 at 1 PM ET / 10 AM PT
A technical advisory from Command Five, an Australian security consultancy, has outlined the recently patched flaws in Atlassian’s Crowd Single Sign-on (SSO) software package....
Looking at BYOD from the viewpoint of data matters most. New York’s Mobile Helix is shifting away from train of thought that says security...
Facebook on Friday said that phone numbers and email addresses belonging to roughly 6 million of its users had been improperly shared due to...
In my previous SecurityWeek column, I wrote about Managing Security with the Business in Mind and discussed briefly the importance of taking an application-centric...
Risk I/O, a vulnerability intelligence platform designed to help organizations efficiently report and mitigate security vulnerabilities, on Wednesday announced that it now analyzes real-time,...
The Open Web Application Security Project (OWASP) released an update to its Top 10 list of risks facing developers. As in previous years, injection...
Trend Micro has launched a new security as a service solution that uses automated and expert analysis to help protect web applications.
On Tuesday, Jerry Davis, the VA’s former CISO, told members of the House Veterans' Affairs oversight and investigations subcommittee the sensitive personal information the...
Fortinet has introduced a new operating system for its FortiWeb Web application firewalls.
A new analysis by NSS Labs puts Microsoft Internet Explorer 10 ahead of the pack when it comes to browser protections against malware downloads.
Today’s businesses must be able to rapidly adapt to changing market conditions – to support a new venture, merger/acquisition, etc. As business needs change,...
Microsoft's coding practices and methodology complies with an international standard for developing secure software, the company said Tuesday.
Smaller open source projects tend to be more secure than proprietary applications, but the opposite is the case for software with more than a...
Georgetown University said on Monday that it would launch a new Security and Software Engineering Research Center (S2ERC) later this month that will that...
While some best practices such as software security training are effective in getting developers to write secure code, following best practices does not necessarily...
The recent increase in the number and severity of cyber attacks around the world demonstrate that we’re squarely in an era referred to as...
According to a report released by Imperva this week, threat-blocking efficiency is greatly increased with the addition of crowd-sourced threat intelligence.
This week in London, during the InfoSecurity Europe conference, HP released an update to its WebInspect application security tool, designed to replicate real-world attacks...
"Effective Security is about Solving problems, Not Chasing Hype..."