Skip to content

AppSec Observer

Contrast's application security blog provides the latest trends and tips in DevSecOps through instrumentation and security observability.

Subscribe Now
    Topics
    Secure your PHP Applications with Contrast Security

    Secure your PHP Applications with Contrast Security

    Contrast is pleased to announce that Assess and SCA support is now available for PHP applications. Although PHP..

    Preventing the initial Spring4Shell exploit, a demonstration

    Preventing the initial Spring4Shell exploit, a demonstration

    The hits keep coming. Spring4Shell is the latest zero-day security issue that takes advantage of a vulnerability in a..

    7 Tips For Women To Land Their Dream Job in Tech

    7 Tips For Women To Land Their Dream Job in Tech

    As Women's History Month comes to an end, we reflect on the impact women have made in shaping our industry. At..

    New Spring4Shell Zero-Day Vulnerability Confirmed: What it is and how to be prepared

    New Spring4Shell Zero-Day Vulnerability Confirmed: What it is and how to be prepared

    On March 29, 2022, a Chinese cybersecurity research firm leaked an attack that could impact most enterprise Java..

    ESG analyst discusses how to ship secure, tested code and rapidly remediate issues without headaches

    ESG analyst discusses how to ship secure, tested code and rapidly remediate issues without headaches

    Securing the DevOps pipeline can be a challenge, even for companies that have security in their DNA. And you're not..

    CISO Thoughts with David Lindner - March 25

    CISO Thoughts with David Lindner - March 25

    Insight #1 When communicating to your stakeholders and the public about an incident, it’s extremely important to be..

    Cyber Incident Reporting For Critical Infrastructure Act of 2022

    Cyber Incident Reporting For Critical Infrastructure Act of 2022

    On March 15, 2022, United States President Joe Biden signed the Cyber Incident Reporting For Critical Infrastructure..

    CISO Thoughts with David Lindner - March 18th

    CISO Thoughts with David Lindner - March 18th

    Insight #1 If you can accomplish one thing in your AppSec program this year, it should be keeping secrets out of your..

    New Gartner® Report Details How Businesses Should Incorporate SBOMS Into The SDLC

    New Gartner® Report Details How Businesses Should Incorporate SBOMS Into The SDLC

    The proliferation of third-party software, especially open-source software (OSS), is a mainstay in modern development...