Skip to content

AppSec Observer: RASP

The latest trends and tips in DevSecOps through instrumentation and security observability. Learn about real-world insight and “in-the-trenches” experiences on topics ranging from application and information security to DevOps and risk management.

Subscribe Now
Log4j still an issue, but CodeSec audit can help

Log4j still an issue, but CodeSec audit can help

Landing on the incident response boards for software engineering teams worldwide in December 2021, the Log4j..

Building a modern API security strategy — API protection

Building a modern API security strategy — API protection

Part four of the five-part series, Building a modern API security strategy.

Debunking the myths around RASP

Debunking the myths around RASP

Welcome to the second part of this series examining some of the myths that I’ve heard in many conversations around..

Apache Struts CVE-2019-0230 and How to Block Attacks | Contrast Labs

Apache Struts CVE-2019-0230 and How to Block Attacks | Contrast Labs

Note: Special thanks to Alvaro Muñoz (https://twitter.com/pwntester) for correcting us on some very important technical..

Emerging from the Tool Swamp to a Unified AppSec Platform

Emerging from the Tool Swamp to a Unified AppSec Platform

Traditional approaches to application security (AppSec) rely on a patchwork of disconnected tools and processes that..

State-of-the-Art AppSec Goes Beyond Perimeter Into Application Runtimes

State-of-the-Art AppSec Goes Beyond Perimeter Into Application Runtimes

When it comes to protecting running applications, traditional defenses that sit on the perimeter lack effective..

What You Need to Know About the New IAST and RASP Guidelines in NIST 800-53

What You Need to Know About the New IAST and RASP Guidelines in NIST 800-53

 

RASP vs WAF: Why You Need Both a WAF and RASP to Protect Your Web Applications

RASP vs WAF: Why You Need Both a WAF and RASP to Protect Your Web Applications

One thing that you learn in the technology space is that change is constant. Companies, solutions, and people who sit..

Why Blue Teams Need RASP: Continuous Application Threat Monitoring with Runtime Exploit Prevention

Runtime Application Self-Protection (RASP) adds threat visibility and security control to application runtimes so you..