Application Security

Application security news, trends, analysis and practical advice

Hacking stealing password data.

Microsoft wants antivirus vendors to remember who the bad guys are

Competing antivirus vendors should remember that cooperation is the key to fighting malware, a top Microsoft security official said.


Microsoft will use Aorato buy to boost Active Directory protection

Microsoft plans to beef up Active Directory's security with machine learning technology from Aorato, the startup firm it has acquired.

lock on a metal fence. Security concept

November Patch Tuesday: A massive update with a few misses

This is a massive update for Microsoft Patch Tuesday with sixteen patches release for November 2014. Comparatively speaking, November has generally been a quiet month with an average five or six security updates over the past 10...

desi accuvote

Election Day was just another chance to worry about security

We’re surrounding ourselves with devices that rely on software, but their designers never seem to take security seriously.

Secure

The best secure messaging apps that protect you from surveillance

If you use Skype, SnapChat, Facebook chat, WhatsApp, or Google off-the-record chat, then it’s time for you to rethink your digital communications strategy and switch to other more secure messaging programs. The EFF evaluated 39...

Google releases tool to test apps and devices for SSL/TLS weaknesses

The tool simulates man-in-the-middle attacks to detect SSL/TLS vulnerabilities and implementation issues

What's new with Java

There are three latest versions of Java. Tweaking Java to disable SSL 3.0. Securing Java. Explaining the security messages when running Java applets. Expiring old versions of Java.

detour

Detoured by Shellshock and Poodle

As our manager tries to assess the risks he needs to mitigate at his new company, a couple of major vulnerabilities turn up to distract him.

keep calm

Keep calm and plug the holes

Panicked reactions are no way to cope with zero-day vulnerabilities. We all should know that there’s always another one just around the corner.

trick or treat on keyboard

A bumper harvest patch of updates for October

This October Patch Tuesday brings a bumper harvest of updates from a number of vendors including Microsoft, Adobe, Apple, Oracle and Google. Of the Microsoft patches, three are rated as critical and six updates are rated as...

renault reuters oct2014

Renault to roll out Salesforce globally to put it ‘in the driver's seat of change'

Renault will use a combination of three Salesforce products to link dealerships with customer information for better service.

Password obscured.

What to consider when choosing a password manager

Many security experts think passwords are no longer sufficient to keep online accounts safe from hackers. But we're still a long way from widespread adoption of biometrics and alternatives.

IT industry group slams burdens imposed by proposed EU privacy policy

A proposal by EU justice ministers to relax data protection rules for low-risk personal data doesn't go far enough, industry lobbyists say.

chrome logo

Google pays $75K in bug bounties to fix 159 Chrome flaws

Google yesterday released Chrome 38, paying out more than $75,000 in bounties for some of the 159 vulnerabilities patched in the massive security update.

Hacking stealing password data.

EPIC seeks enforcement action over Arizona data breaches

A privacy watchdog filed a complaint with the Federal Trade Commission against a community college district in Arizona that lost the personal data of 2.5 million students and employees in two data breaches.

Carlsberg taps Office 365 to connect 20,000 global employees

Global brewing brand gives cloud collaboration tools to 20,000 staff.

Adobe releases previously delayed patches for Reader and Acrobat

After a one-week delay, Adobe Systems has released security updates for Reader and Acrobat to patch critical vulnerabilities that could lead to computers being compromised.

wells fargo avast screenshot

'Tiny banker' malware targets US financial institutions

A banking trojan, known for its small size but powerful capabilities, has expanded the number of financial institutions from which it can collect data, according to security vendor Avast.

human head with an interface icons 149147192

BBC developing common platform API to connect with business partners

The BBC has iover 100 APIs that are used both internally and are open to external partners to develop new products.

Load More