Skip to content

AppSec Observer

Contrast's application security blog provides the latest trends and tips in DevSecOps through instrumentation and security observability.

Subscribe Now
    Topics
    Why OWASP’s CycloneDX will make you fall in love with SBOMs

    Why OWASP’s CycloneDX will make you fall in love with SBOMs

    It’s well-established: Triple-DES is a feeble encryption algorithm.

    3 crucial steps to inject security into DevOps

    3 crucial steps to inject security into DevOps

    According to a new report from Gartner titled3 Essential Steps to Enable Security in DevOps,by 2027, DevSecOps..

    The evolution of incident response: A fresh approach to an old problem

    The evolution of incident response: A fresh approach to an old problem

    In today's world, software is the lifeblood of organizations, powering operations across sectors and industries...

    Cybersecurity Insights with Contrast CISO David Lindner | 8/4

    Cybersecurity Insights with Contrast CISO David Lindner | 8/4

    Insight #1 While it’s exciting to see the Securities and Exchange Commission (SEC) requiring ( PDF) incident..

    Cybersecurity Insights with Contrast CISO David Lindner | 7/28

    Cybersecurity Insights with Contrast CISO David Lindner | 7/28

    Insight #1 A recent report by Cohesity sees the top three things being required for cyber insurance coverage as being..

    The five dimensions of SBOM quality

    The five dimensions of SBOM quality

    In a memo issued on June 9, the Office of Management and Budget clarified details about how agencies will be required..

    Financial cybercrime trends: Reverse BEC & ‘shoxing’

    Financial cybercrime trends: Reverse BEC & ‘shoxing’

    Turla — a Russian advanced persistent threat (APT) group closely affiliated with the FSB Russian intelligence agency —..

    Cybersecurity Insights with Contrast CISO David Lindner | 7/21

    Cybersecurity Insights with Contrast CISO David Lindner | 7/21

    Insight #1 WormGPT is a thing. The tool — being sold on hacker forums and considered “ChatGPT’s evil cousin” — shows..

    Treat ALL data — not just PII — as if it’s regulated

    Treat ALL data — not just PII — as if it’s regulated

    Poor, poor Boston Globe.