Application Security
Washington startup Chainguard banks $61 million in new financing as investors make hefty wagers on software supply chain security companies.
Hi, what are you looking for?
As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.
Washington startup Chainguard banks $61 million in new financing as investors make hefty wagers on software supply chain security companies.
Michigan startup raises $75 million in new funding as venture capital investors bet big on attack surface management technologies.
Blockaid raises a Series A funding round to build technology to secure blockchain applications from hacks and scams.
Microsoft patches more than 100 vulnerabilities across the Windows ecosystem and warns that three are already being exploited in the wild.
Atlassian confirms that “a handful of customers” were hit by exploits targeting a remotely exploitable flaw in its Confluence Data Center and Server products.
Threat actors have been using stolen GitHub personal access tokens to push malicious code posing as Dependabot contributions.
Google has released the source code of BinDiff, a binary file comparison tool popular within the security research community, on GitHub.
The cash-and-stock transaction provides capabilities for CrowdStrike to beef up its enterprise cloud security portfolio.
CISA details its plan to support the open source software ecosystem and secure the use of open source software within the federal government.
Israeli security startup Zenity banks $16.5 million in new venture capital funding to work on ‘low-code/no-code’ security technology.
Truffle Security has discovered thousands of popular websites leaking their secrets, including .git directories and AWS and GitHub keys.
GitHub Enterprise Server 3.10 released with additional security capabilities, including support for custom deployment rules.
The Crates.io Rust package registry was targeted in preparation of a malware attack aimed at developers, according to Phylum.
Google sprinkles magic of generative-AI into its open source fuzz testing infrastructure and finds immediate success with code coverage.
Adobe rolls out a big batch of security updates to fix at least 30 Acrobat and Reader vulnerabilities affecting Windows and macOS users.
To boost user privacy, Apple is requiring app developers to declare a reason to use specific APIs.
Thinking through the good, the bad, and the ugly now is a process that affords us “the negative focus to survive, but a positive...
Securing APIs is a noble, though complex journey. Security teams can leverage these 10 steps to help secure their APIs.
QuickBlox SDK and API vulnerabilities impact chat and video applications used by industries including telemedicine, smart IoT, and finance.
Software maker calls special attention to CVE-2023-29300, a deserialization of untrusted data bug with a CVSS severity score of 9.8/10.