Archive

The AppSec Reset: Building Trust in AI-powered Software

November 25, 2025 Author: Manoj Nair, Chief Innovation Officer, Snyk It feels like only yesterday we were grappling with the dawn of open source software and the security challenges it introduced.

Beyond Spicy Autocomplete: Are LLMs Enough for Static Application Security Testing (SAST)?

November 20, 2025 Large Language Models (LLMs) are often marketed as revolutionary tools for static application security testing (SAST): instant bug hunters, tireless auditors, even replacements for h…

The Security Operations Gap: More Tools, Slower Responses, and the Promise of AI 

November 13, 2025 Author: Aaron Landgraf, VP Product Marketing, Red Canary, a Zscaler companySecurity leaders are currently grappling with a puzzling contradiction: Despite increased budgets and more …

The Business Case for AI-augmented Application Security: Beyond the Technical Benefits

November 4, 2025 In the race to innovate, organizations are desperately seeking AI solutions that deliver real value rather than just buzzword compliance.

The Secret Life of APIs: Uncovering Hidden Endpoints and More

August 4, 2025 In the rapidly advancing world of web applications, single-page applications (SPAs) have become a staple for delivering a streamlined and efficient user experience.

The Critical Need for Multi-Role Testing in Application Security

December 19, 2024 As web, thick client, mobile, and IoT applications have become more robust, authentication and authorization has become an incredibly complex and sophisticated problem.

The Capital One Breach: An AppSec Perspective

By now, I’m sure that many, if not all of you are aware of the recent Capital One breach. If you are, great? If not, you’ll be brought up to speed after finishing the next sentence.

Ounces or Pounds: Application Security Practices to Protect Data in the Age of Privacy Regulation

Throughout 2018, the world was presented with some extraordinary data privacy-related headlines.