Skip to content

AppSec Observer

Contrast's application security blog provides the latest trends and tips in DevSecOps through instrumentation and security observability.

Subscribe Now
    Topics
    Contrast Security serves up vulnerability data integrated into AWS Security Hub

    Contrast Security serves up vulnerability data integrated into AWS Security Hub

    In the world of incident response, you need the right information, at the right time, and you need it where you want to..

    Cybersecurity Insights with Contrast CISO David Lindner | 9/15

    Cybersecurity Insights with Contrast CISO David Lindner | 9/15

    Insight #1 Software Bills of Materials (SBOMs) are nothing more than a data point for determining risk. They shouldn’t..

    Why we shouldn't treat the CVSS base score as gospel

    Why we shouldn't treat the CVSS base score as gospel

    On Sept. 6, Cisco issued an urgent fix for an authentication bypass flaw affecting the single sign-on (SSO)..

    Cybersecurity Insights with Contrast CISO David Lindner | 9/8

    Cybersecurity Insights with Contrast CISO David Lindner | 9/8

    Insight #1 Prompt injection is becoming a serious concern for those using current AI technologies. When using AI, make..

    Trust ‘zero trust’ for Application Security

    Trust ‘zero trust’ for Application Security

    The perimeter cybersecurity model is like the defensive walls that surround ancient cities. For thousands of years,..

    3 reasons why upskilling the nation’s cybersec savvy won’t solve the skills gap

    3 reasons why upskilling the nation’s cybersec savvy won’t solve the skills gap

    The White House recently announced its new National Cyber Workforce and Education Strategy & Implementation (NCWES): a..

    Cybersecurity Insights with Contrast CISO David Lindner | 9/1

    Cybersecurity Insights with Contrast CISO David Lindner | 9/1

    Insight #1 There will never be an environment that is totally, 100% secure — at least, not one that provides any..

    Contrast Assess uncovers Spring-Kafka deserialization zero day

    Contrast Assess uncovers Spring-Kafka deserialization zero day

    Earlier in August, a Contrast Security customer reported what they initially thought was a false positive: a..

    Cybersecurity Insights with Contrast CISO David Lindner | 8/25

    Cybersecurity Insights with Contrast CISO David Lindner | 8/25

    Insight #1 When looking at bringing in new security products it’s imperative to clearly outline your goals, which..