A zero-day vulnerability represents an unknown and unpatched flaw in software, hardware, or firmware...
True Positives - Application Security Blog
AppSec best practices, news, and actionable insights to help improve your security posture.
T+ AppSec Newsletter
Shift left and secure your code early with actionable insights, news, and the latest tools from True Positives.
- Aug 23, 2024 12:10:50 PM
- Aug 20, 2024 11:10:45 AM
Latest Posts
Vulnerability scanning plays a crucial role in protecting your applications against potential threat...
Over the past few years, cross-site scripting (XSS) remains a top concern for web developers and sec...
True Positives is excited to announce our strategic partnership with Katilyst, a leader in fostering...
Have you ever wondered if the person you put as an emergency contact will answer the call or respond...
Over the last few years, with the rise of applications, having a robust AppSec testing program has b...
When most of us think about our application security we think about it just as an expense – somethin...
With a continuously evolving threat landscape, the security of web applications needs to be a priori...
In today's interconnected digital landscape, Application Programming Interfaces (APIs) play a crucia...
On July 19, 2024, CrowdStrike released a crucial update that unintentionally caused major disruption...
In the realm of cybersecurity, threat modeling is a vital practice, especially when it comes to appl...
In today’s digital age, cybersecurity is no longer a concern only for large enterprises. Small busin...
In today's interconnected world, traditional security paradigms are becoming increasingly inadequate...
The phrase “You can’t do it all” is more relevant than ever, especially for businesses. In today’s c...
In today's rapidly evolving digital landscape, vulnerability management has become a critical compon...
In the world of business, preparedness is key to mitigating risks and ensuring long-term success. Tw...
CDK Global appears to have experienced multiple breaches over the past week, leading to significant ...
In the rapidly evolving landscape of software development, ensuring robust security measures is para...
In the modern digital landscape, ensuring the security of applications is paramount. With the rise o...
In the realm of cybersecurity threats, the Open Web Application Security Project (OWASP) serves as a...
In today's digital landscape, applications are the lifeblood of businesses, but they also represent ...
In today's landscape, application security should be a major focus for your business. A single breac...
Application security testing (AST) tools are essential for identifying vulnerabilities before they c...
The software industry is on the brink of a revolution and Artificial intelligence (AI) is the drivin...
In the digital age, where data is the new gold, the security of our databases is paramount. One of t...
In today's digital landscape, applications are the lifeblood of businesses, but they also represent ...
In the ever-evolving landscape of cybersecurity, safeguarding applications from vulnerabilities is p...
DataDog recently released its State of DevSecOps research findings which you can find here. In it, t...
True Positives selects Invicti to Strengthen Managed Application Security Services Chehalis, WA – Ap...
In an era of escalating cyber threats, application security is more critical than ever for businesse...
AI Software Engineering is here. This isn’t code completion. This isn’t a code generation framework....
Rising application security costs are effecting the global market.
It’s 2023. Threats aren’t just a consideration, they are a priority in the software industry. As a r...
The price of remediating security findings can range from free to decimating the capabilities of a p...
Routes to real progress and success exist beyond outdated and painful hiring practices. Evidence of ...
Imagine if there was an open-source add-on that turned your browser into a powerful and feature-pack...
Building software and constantly keeping it secure is a weighty task. The Wall Street Journal report...
The number of tools for performing various application security tests is increasing at a very rapid ...
I enjoy fly fishing, but I’m not that good at it. It’s not my full-time sport, nor my day job, so wh...
Many of us in the development world rely on our code to be secure to ensure that our customers are s...
As I noted in April, 2020:
There’s no easy path to success for a modern AppSec program. You’ll absolutely fail if you don’t com...
DAST vs. SAST: Is It Better to Know Too Much or Too Little? “In our new application security program...
Risk - everyone in AppSec or software security talks about it. Pundits advise that we base our decis...
What AppSec Can Learn from Cloud Security In cloud computing, some of the responsibility for securit...
The State of Static Application Security Testing (SAST) Until Now Traditional SAST systems are big, ...
In Application Security the focus is always on Shift Left . The theory goes that the sooner the team...
T+ AppSec Newsletter
Shift left and secure your code early with actionable insights, news, and the latest tools from True Positives.