Skip to content

AppSec Observer

Contrast's application security blog provides the latest trends and tips in DevSecOps through instrumentation and security observability.

Subscribe Now
    Topics
    Contrast discovers MLflow framework zero-day that threatens to poison machine language models

    Contrast discovers MLflow framework zero-day that threatens to poison machine language models

    Most Machine Language (ML) tools — including the development frameworks used for managing ML life cycles — are..

    Cybersecurity Insights with Contrast SVP of Cyber Strategy Tom Kellermann | 12/1

    Cybersecurity Insights with Contrast SVP of Cyber Strategy Tom Kellermann | 12/1

    Insight #1 The upcoming disclosure requirements from the Securities Exchange Commission (SEC) (PDF) are game-changing...

    Don’t throw good AppSec money after bad

    Don’t throw good AppSec money after bad

    From the “How does this make sense?” department comes this finding: The more they get breached, the more likely it is..

    Cybersecurity Insights with Contrast CISO David Lindner | 11/24

    Cybersecurity Insights with Contrast CISO David Lindner | 11/24

    Insight #1 It's the holiday season, and malicious actors are primed to take advantage of all the amazing deals you may..

    Let’s talk stats: Why AppSec’s running on broken math

    Let’s talk stats: Why AppSec’s running on broken math

    Let’s say your mean time to respond/remediate (MTTR) security issues is 60 days.

    Cybersecurity Insights with Contrast CISO David Lindner | 11/17

    Cybersecurity Insights with Contrast CISO David Lindner | 11/17

    Insight #1 Organizations are continuing to pay more for top cybersecurity talent, and with the Securities and..

    False positives + false negatives = real costs

    False positives + false negatives = real costs

    Alert: Somebody’s running reconnaissance on your network. Alarm: You’ve got a malware infection.

    Attack-path mapping your applications

    Attack-path mapping your applications

    Contrast Security’s 2023Cyber Bank Heists report showed that hackers and cybercrime cartels from Russia, North Korea..

    Cybersecurity Insights with Contrast CISO David Lindner | 11/10

    Cybersecurity Insights with Contrast CISO David Lindner | 11/10

    Insight #1 The U.S. has launched the Shields Ready campaign: a campaign “about making resilience during incidents a..