The Ultimate Guide to Application Security
A curated Irish edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.
What to know about Application Security
Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.
Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.
Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.
Analyst Insights
Research and market analysis connected to Application Security
Survey finds AI access controls lag behind confidence
Broadcom launches TrueSource for secure open source
Netscout adds CDN-bypassing DDoS protection features
Gartner sees securing AI market hit USD $4.8bn in 2027
Fortinet buys Virtue AI to boost AI security tools
Featured News
Humanoid robots, 0-day defence among Info-Tech trends for '27
Agentic AI, zero-day surge, sovereign cloud, and humanoid robots will define IT strategy in 2027, Info-Tech Research Group warns.
Exabeam: Ruthless efficiency can make agentic AI malicious
Behavioural analytics is becoming essential as AI agents can pursue tasks so efficiently that they may cause damage without any malicious intent.
Expert Columns
AI closes vulnerability window as zero-day exploits surge
When AI memory, simulation and provenance collide
Supercharged security: Cyber risk in the age of frontier AI
A strategic blueprint for governing AI-enabled software development
Your annual penetration testing is already out of date
Why ERP is not just another platform you can rebuild with AI code
As agentic development accelerates, workflow auditability becomes a bottleneck
The evolving role of the CSO: From technical guardian to business strategist
Secure by default: Moving beyond secure by design
Why the next endpoint and SASE disruption will not come from a security vendor
Interviews
Interviews and video coverage from the networkRecent Application Security News
Reco launches Browser Guard for enterprise AI security
Security teams now have to police shadow AI in browsers, where Reco says Browser Guard can block prompts, data leaks and rogue actions.
Westcon-Comstor signs Sonar deal across EMEA & APAC
Partners across EMEA and APAC gain a route into AI coding and DevSecOps projects as SonarQube checks aim to cut security and governance risks.
AI-generated cyber attacks to hit firms soon, warn experts
Many firms lack the capacity to fix existing flaws fast enough, leaving them exposed as AI-generated attacks scale up, experts warn.
Kobalt.io signs security partnerships across North America
Enterprise buyers and defence contractors will get a clearer route to certification as Kobalt.io broadens its North American security network.
Cloudflare launches Adaptive Intelligence for bot attacks
Businesses facing a surge in automated abuse could see faster bot blocking as Cloudflare says its system learns from live traffic and updates continuously.
TrendAI tops CyberGym with 97% exploit-remediation rate
Enterprises could cut their exposure window as TrendAI's AESIR scored 97% on an independent benchmark against confirmed software flaws.
Atsign adds post-quantum crypto to SDKs for legacy data
Long-lived data could be exposed to harvest-now, decrypt-later attacks, as Atsign bakes NIST-approved quantum-safe algorithms into its SDK layer.
CREST launches AI testing standard for cyber firms
Buyers of AI tools now have a benchmark to judge testing providers, as CREST's new standard targets gaps in assurance and due diligence.
Google Cloud urges stronger cyber basics amid AI attacks
As attackers use AI to speed up phishing and malware, companies are being told that multi-factor authentication and patching matter more than ever.
GitLab adds enterprise controls for agentic AI tools
Regulated teams can now keep AI processing inside GitLab Dedicated, with new secret handling, spending caps and security fixes added in 19.3.
Barracuda finds average web app has 20 security flaws
Basic security lapses are leaving web apps exposed, with Barracuda saying routine misconfigurations account for most of 20 flaws per site.
Allure Security uncovers 2,200 phantom bank domains
Hundreds of users could be exposed to fake banking portals built from a low-cost template, as researchers linked 2,200 suspect domains.
Prem launches CyberScan for Bitcoin security audits
The new tool aims to catch Bitcoin software flaws between formal audits after a regression led to more than USD $116 million stolen.
ESET brings private scanning tools to AWS Marketplace
AWS customers can now buy ESET's file-scanning software through existing accounts, speeding deployment for cloud security teams across three regions.
Endor Labs adds buildless C support to AI SAST tool
Developers can now scan C code earlier in the process, as Endor Labs says its buildless AI SAST found 96 of 102 known bugs in tests.
Pathlock & mindsquare expand DACH governance access
The tie-up gives German-speaking enterprises a local route to tighter SAP access controls as support changes and cloud migration raise compliance pressure.
Sonatype warns AI is speeding software risk growth
Enterprise software teams are facing far more vulnerabilities as AI-assisted development multiplies application output and speeds exposure growth.
Google Cloud unveils AI harness that finds flaws fast
In two days, the system uncovered more than 100 critical bugs in stolen code repositories, outpacing manual review and aiding incident response.
NASA lab console flaw allows unauthorised commands
Unauthorised access could let attackers send arbitrary commands to spacecraft and instruments via NASA's AIT-GUI console, now fixed in version 2.5.2.
ArmorCode gets verified Claude access for cyber defence
Verified access to Anthropic's Claude models should sharpen ArmorCode's exploitability scoring as security teams race to cut alert noise.