Application Security Topic Center
Application security news, in-depth articles and more
Application Security News
7 steps to securing Java
Java, the popular OS-independent platform and programming language, runs on just about every kind of electronic device imaginable, including computers, cell phones, printers, TVs, DVDs, home security systems, automated teller machines, navigation systems, games and medical devices.
Read more...
Apple keeps patching Java on OS X Snow Leopard after proposed drop-dead date
Apple on Tuesday patched Java for the aged OS X Snow Leopard and tweaked Safari to give users more control over what websites they let run the vulnerability plagued Oracle software.
Google adds IT admin features for Chrome browser
Google has beefed up the administration and management controls that IT staff have over their users' Chrome browsers.
Oracle pulls Java 6 plug, but Apple likely to keep patching OS X Snow Leopard
Apple on Monday patched Java 6 for OS X, following Oracle's lead and quashing a browser plug-in vulnerability that hackers have been exploiting.
Adobe releases emergency Flash fixes for two zero-day bugs
Adobe updated Flash Player to patch a pair of zero-day vulnerabilities that hackers were already using to hijack Windows PCs and Macs.
Experts prod Oracle to fix broken Java security
Beset by some very public vulnerabilities in Java, and apparently unable to properly patch those bugs, Oracle must dramatically step up its security game, experts said.
Google revs up Chrome, crushes bugs
Google on Thursday upgraded Chrome, improving the browser's start-up performance and patching two dozen security vulnerabilities.
Oracle to stop patching Java 6 in February 2013
Java 6 will be retired from security support in less than two months, and users and businesses should prepare now for its demise, experts said today.
Skype blocks password resets after account hijacking flaw made public
Skype has disabled the account password reset option on its website following reports that the feature can be abused to hijack Skype accounts if the attackers know the email addresses associated with them.
Fatal half-measures in incident response
It's not a matter of if, but when, you are breached. So what's your plan?
Application Security In Depth
The true root causes of software security failures
Developers being overly trusting is one of them.
Security Manager's Journal: Rights can be so wrong
Windows service accounts used by software are often given domain administrator rights, just because it's quick and easy. That sort of thing rubs security managers the wrong way.
There's no magic pill for security
Too often, New Year's resolutions to get into better shape are derailed because of a lack of realistic planning. The same thing happens in the security sphere.
Security Manager's Journal: A reality check for the department's maturity
An assessment of the information security department shows that it has a lot of growing up to do yet.
Kenneth van Wyk: The good and bad of Android and iOS
Both Google's and Apple's mobile platforms have security drawbacks and advantages. Is there a clear winner?
Security Manager's Journal: Security has to extend to your customers
When a security manager's company sells software, he can't ignore the potential vulnerability of those products.
Why passwords are failing us -- still!
Three decades into the digital revolution, passwords are still complicated, ineffective and a drain on IT's resources. What gives?Insider (registration required)
Security Manager's Journal: At budget time, you ask and hope to receive
Our manager has a long wish list going into this year's budget season.
Kenneth van Wyk: Digital duct tape for SSL
Secure Sockets Layer has been implicated in several security problems of late. Certificate pinning might patch it up for a bit longer.
On the Lookout for Rogue IT
A seemingly innocent request leads to the discovery of an unapproved, customer-facing SaaS application.
- IT Certification Study Tips
- Register for this Computerworld Insider Study Tip guide and gain access to hundreds of premium content articles, cheat sheets, product reviews and more.
Application Security White Papers
- Harness IT -- An Introduction to Business Intelligence Solutions
- Learn the key selection criteria required to provide your organization with the capability to address structured data, unstructured data and mobile demands so...
- Business Intelligence Shows its Smarts
- Today's Business Intelligence (BI) tools provide a new way to think about data with self-service capabilities and user-friendly analytics that can be used...
- Proactive Planning for Big Data
- Big data is less about the terabytes and more about the query tools and business intelligence needed to make sense of massive amounts...
- Inquiry Spotlight: Consumer-Facing Identity
- The challenges of consumer-facing identity management, access management, and authentication differ in ways subtle and dramatic from those of the employee-facing variety.
- IDC Security Infographic
- From the Era Before security to this current era of empowerment this infographic from Blue coat provides a timeline navigates the rise of... All Application Security White Papers
Application Security Webcasts
- Becoming An Analytics Driven Organization
- Join us on Tuesday, June 18, 2013, 11:00 AM EDT and learn how your agency can create an analytics culture that will enable...
- 3 Reasons Why Sepaton is the World's Fastest Backup Solution
- Leading analyst, Storage Switzerland learns how Sepaton backs up and deduplicates massive data volumes while maintaining the industry's fastest performance - all in...
- Enterprise File Sharing: All You Need to Know
- Security. Scalability. Control. These are just some of the many benefits of enterprise cloud file-sharing that you'll discover in this KnowledgeVault, packed with...
- Bridging HTTP and FTP with FileXpress Internet Server
- What if you could take an FTP server on your internal network, and allow external users (partners or customers) to securely access it...
- MFT and FileXpress - An Overview
- Business users and applications exchange files on a regular basis. File transfer is a core part of the flow of business activity. All Application Security Webcasts