Top Guns: Defending Corporate Clouds from Malicious Mavericks

December 4, 2023 at 11:50AM Applications and cloud infrastructure, despite having distinct risk profiles and security needs, should be integrated into a cohesive enterprise defense strategy. (Note: The title “Top Guns: Defending Corporate Clouds from Malicious Mavericks” and the source “SecurityWeek” were not included in the summary as they are considered metadata rather than content … Read more

The XBOM vs SBOM debate

November 21, 2023 at 09:00AM Webinar: Learn why a Software Bill of Materials (SBOM) may not provide sufficient protection for your application’s attack surfaces. Introducing an eXtended Software Bill of Materials (XBOM) that offers a more accurate and comprehensive view of your application, infrastructure, and pipeline components. Join the webinar on 28 November at 5pm … Read more

Application Security Startup Aikido Security Raises €5 Million

November 15, 2023 at 09:57AM Belgium-based application security startup Aikido Security has raised €5 million ($5.4 million) in seed funding. The investment round was led by Notion Capital and Connect Ventures, with participation from Inovia Capital Precede Fund I and angel investors. Aikido aims to provide SaaS businesses with an all-in-one platform for managing application … Read more

Cycode Introduces Complete Approach to Application Security Posture Management (ASPM)

November 14, 2023 at 09:59PM Cycode, the leader in Application Security Posture Management (ASPM), has launched ConnectorX, an ASPM connector capability. It also includes enhancements to its Risk Intelligence Graph (RIG). This allows for a complete approach to ASPM, enabling security and development teams to collaborate effectively. The new platform aims to address the conflict … Read more

‘BlazeStealer’ Malware Delivered to Python Developers Looking for Obfuscation Tools

November 9, 2023 at 09:42AM Malicious Python packages posing as obfuscators are being used to target developers, according to cybersecurity firm Checkmarx. These packages deploy a payload called ‘BlazeStealer’, which allows the attackers to control infected systems and spy on victims. The malware can steal system information, passwords, files, capture screenshots, and even control the … Read more

Myrror Security Emerges From Stealth With $6M Seed Round to Prevent Attacks on the Software Development Process

November 7, 2023 at 05:16PM Myrror Security, a company specializing in application security for organizations using open-source packages, has received $6 million in seed funding from Blumberg Capital and Entrée Capital. The funds will be used to expand product capabilities and distribution channels. Myrror Security aims to address the increasing rate of software supply chain … Read more

Myrror Security Emerges From Stealth Mode With $6 Million in Funding

November 7, 2023 at 08:06AM Israeli application security startup Myrror Security has come out of stealth mode with $6 million in funding. The Tel Aviv-based company aims to address security threats in the software supply chain by using AI and binary-to-source code analysis. It identifies malicious code in open source dependencies and CI/CD attacks in … Read more

Do Small Companies Need Fractional AppSec Teams Akin to vCISOs?

October 24, 2023 at 01:54PM Zatik, a consulting firm founded by Kymberlee Price and Jon Callas, aims to address the lack of application security expertise available to small companies. They provide fractional security consulting services, helping startups and smaller businesses incorporate secure-by-design principles into their software development process. Their goal is to establish a security-focused … Read more

Do Small Companies Need Fractional AppSec Teams Akin to vCISOs?

October 24, 2023 at 01:47PM Secure-by-design software development emphasizes the need to incorporate security considerations from the beginning. Small companies often struggle to access and afford application security expertise, resulting in insecure software. Zatik, a consulting firm founded by Kymberlee Price and Jon Callas, aims to provide fractional security consulting services to help startups and … Read more