Skip to content

AppSec Observer

Contrast's application security blog provides the latest trends and tips in DevSecOps through instrumentation and security observability.

Subscribe Now
    Topics

    How do teams stay afloat in an ocean of vulnerabilities? They remediate faster (3.0x FASTER!)

    As a developer, working through your team's bug backlog can sometimes feel like bailing out a rowboat with only a leaky..

    ProtectSettings

    Using Contrast to prevent the Weblogic Remote Code Execution (RCE) Deserialization Vulnerability - CVE-2019-2725

    On April 17, 2019, Oracle released a Critical Patch Advisory with 254 patches. One of the vulnerabilities addressed was..

    What is the difference between SAST, DAST, and IAST Security Testing

    Quick Review Of Application Security Testing When I attend social functions with friends, people often ask what I do...

    Privilege Escalation in Popular Blogging Platform

    Ghost is a popular open source blogging platform written in Node.js. It is downloaded around 8,500 times a week..

    Contrast Security Recognized as the only "Visionary" in the Gartner Magic Quadrant for Application Security Testing for 2019

    Gartner just released its new Magic Quadrant (MQ) for Application Security Testing (AST) for 2019. Gartner evaluates..

    3 Key Takeaways from Locomocosec

    I had the pleasure of attending this year’s Locomocosec on the beautiful island of Kaua’i. The conference was in its..

    Prevent Bootstrap-sass RubyGem Remote Code Execution (RCE) | Contrast Security

    On March 26, 2019, malicious attackers uploaded a vulnerable version, 3.2.0.3, of the widely used bootstrap-sass Ruby..

    waf-blog-post

    Top 5 Challenges Securing Applications with Web Application Firewalls

    Application Security teams have very few options when it comes to defending their applications in production...

    Cyber Defense Magazine InfoSec Awards Honors Contrast Security as Editor's Choice in Application Security

    We are excited to announce that at RSA last week, Cyber Defense Magazine InfoSec Awards honored Contrast Security as a..