Security news aggregator

Latest coverage for Application Security

Stay updated on Application Security trends and threats. Dive into the latest appsec news, expert insights, and solutions for robust app protection.

111 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

Application Security is the practice of defending applications from threats and vulnerabilities throughout their entire lifecycle. In the context of information security, it encompasses the hardware, software, and processes that are used to close security gaps in applications during their design, development, deployment, upgrade, and maintenance phases.

Application security involves various methodologies and tools to protect applications against a wide range of threats such as data breaches, malware attacks, and other security incidents that can exploit weaknesses in an application's code, design, or deployment environment. Techniques used in application security include static application security testing (SAST), dynamic application security testing (DAST), interactive application security testing (IAST), and runtime application self-protection (RASP).

Effective application security is critical, as applications are often an entry point for attackers to infiltrate a network and access sensitive data. Therefore, maintaining robust application security helps to ensure the confidentiality, integrity, and availability of both the application and the data it processes and stores.

Volume over time

Weekly headline count for the current query.

Showing 20 most recent headlines of 111 Filtered view
Bank Info Security 2 months, 3 weeks ago

Why Claude Code Security Has Shaken the Cybersecurity Market

How Claude's New AI Code Scanning Tool Will Challenge Application Security LeadersAnthropic's debut of Claude Code Security jolted cybersecurity stocks and intensified competition in application security testing. It promises deep reasoning around identifying and remediating code vulnerabilities but faces steep challenges matching the feature breadth required by large enterprises.

How Claude's New AI Code Scanning Tool Will Challenge Application Security LeadersAnthropic's debut of Claude Code Security jolted cybersecurity stocks and intensified competition in application security testing. It promises deep reasoning around identifying and remediating code vulnerabilities but faces steep challenges matching the feature breadth required by large enterprises.

Bank Info Security 5 months, 3 weeks ago

Checkmarx Purchases Tromzo to Boost AI Security Automation

Tromzo Acquisition Adds AI Team and Technology for Automated Security RemediationCheckmarx acquired AI security startup Tromzo to jumpstart its roadmap for agentic application security. The deal gives Checkmarx a ready-built platform and team focused on enterprise-grade triage and remediation agents designed to streamline vulnerability management.

Risk list highlights misconfigs, supply chain failures, and singles out prompt injection in AI apps The Open Worldwide Application Security Project (OWASP) just published its top 10 categories of application risks for 2025, its first list since 2021. It found that while broken access control remains the top issue, security misconfiguration is a strong second, and software supply chain issues are still prominent.…

Bank Info Security 6 months, 4 weeks ago

Bugcrowd Purchases Mayhem to Expand AppSec Testing Platform

Joint Platform to Offer Human-Led, Automated Application Security in One PlaceBugcrowd acquired Mayhem Security to integrate automated application testing with human-led testing capabilities. The company plans to embed Pittsburgh-based Mayhem's reinforcement learning tech and AI models into its broader platform to speed up vulnerability detection.

Bank Info Security 8 months, 3 weeks ago

F5 Targets AI Model Misuse With Proposed CalypsoAI Purchase

Calypso’s Red-Teaming and Agentic Threat Tools Boost F5’s Application Security EdgeF5’s latest acquisition brings Dublin, Ireland-based CalypsoAI’s unique AI security stack into its platform to secure application traffic against LLM misuse, data leakage and shadow AI, enhancing protection for hybrid and multi-cloud environments and helping secure apps and APIs.

Bank Info Security 8 months, 4 weeks ago

UltraViolet Adds AppSec Services Depth With Black Duck Deal

Black Duck AppSec Services Buy Marks Shift Toward Offensive Assessment ServicesUltraViolet Cyber’s acquisition of Black Duck's application security testing services deepens its offensive capabilities and adds 400 people to its global workforce. The deal enables greater integration of assessment and defense across the software development lifecycle.

The Register 8 months, 4 weeks ago

Boffins build automated Android bug hunting system

AI agent system said to have found more than 100 zero-day flaws in production apps AI models get slammed for producing sloppy bug reports and burdening open source maintainers with hallucinated issues, but they also have the potential to transform application security through automation.…

Bank Info Security 10 months ago

AI Still Writing Vulnerable Code

GenAI Chooses Insecure Code Nearly Half the Time, Veracode FindsThere's been little improvement in how well AI models handle core security decisions, says a report from application security company Veracode. Large language models introduce vulnerabilities in nearly half of test cases when asked to complete secure code tasks, it found.

Loading more headlines...