Skip to content

AppSec Observer: Runtime Security

Contrast's application security blog provides the latest trends and tips in DevSecOps through instrumentation and security observability.

Subscribe Now
    Topics
    Contrast discovers CSRF vulnerability in NSA’s SkillTree training platform that allows attackers to modify content

    Contrast discovers CSRF vulnerability in NSA’s SkillTree training platform that allows attackers to modify content

    Contrast Security Assess — Contrast’s Interactive Application Security Testing (IAST) Application Security (AppSec)..

    Contrast wins 2024 PwC Luxembourg Award for Cybersecurity & Privacy Solution of the Year

    Contrast wins 2024 PwC Luxembourg Award for Cybersecurity & Privacy Solution of the Year

    Contrast Security just won the highly competitive 2024 PwC Luxembourg Award for Cybersecurity & Privacy Solution of the..

    How Contrast ‘secures from within:’ Code vulnerabilities set off smoke alarms; runtime incidents & cyberattacks trigger the sprinklers

    How Contrast ‘secures from within:’ Code vulnerabilities set off smoke alarms; runtime incidents & cyberattacks trigger the sprinklers

    What does Contrast Security mean when we say “secure from within?”

    Cybersecurity Insights with Contrast CISO David Lindner | 5/31/24

    Cybersecurity Insights with Contrast CISO David Lindner | 5/31/24

    Insight #1 Transparency isn't just about promising action, it's about proving it. It means sharing the data and results..

    Cybersecurity Insights with Contrast CISO David Lindner | 5/24/24

    Cybersecurity Insights with Contrast CISO David Lindner | 5/24/24

    Insight #1 Tool consolidation continues, with Palo Alto’s plans to absorb IBM's QRadar software. This movement will..

    Cybersecurity Insights with Contrast CISO David Lindner | 4/19/24

    Cybersecurity Insights with Contrast CISO David Lindner | 4/19/24

    Insight #1 One of the most significant errors an organization can make is assuming they are not a target. This belief..

    CISA asks software devs to stamp out ‘unforgivable’ SQL injection vulnerabilities

    CISA asks software devs to stamp out ‘unforgivable’ SQL injection vulnerabilities

    On Wednesday, March 27, CISA and the FBI issued a cry for help: We need to stamp out SQL injection vulnerabilities, and..

    Elevating Node.js security with the latest v5 Node agent

    Elevating Node.js security with the latest v5 Node agent

    Node.js is an incredibly popular programming environment, highly regarded for its efficiency and scalability. It powers..

    Critical zero-day Confluence RCE vulnerability blocked by Contrast Runtime Security

    Critical zero-day Confluence RCE vulnerability blocked by Contrast Runtime Security

    If your organization is running an older version of Atlassian Confluence Server that’s affected by CVE-2023-22527 — the..