The Ultimate Guide to Application Security
A curated Irish edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.
What to know about Application Security
Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.
Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.
Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.
Analyst Insights
Research and market analysis connected to Application Security
Salt Code enforces security policies in AI coding tools
Software Improvement Group named Gartner leader on debt
Cycode launches agentic development lifecycle security
Cognizant launches Secure AI Services for enterprises
Check Point wins Frost & Sullivan recognition for WAF
Featured News
Exabeam: Ruthless efficiency can make agentic AI malicious
Behavioural analytics is becoming essential as AI agents can pursue tasks so efficiently that they may cause damage without any malicious intent.
Check Point Technologies: On vigilance, Mythos and beyond
AI-driven vulnerability scanning is forcing firms to rethink complacency as Check Point says existing defences still help against Mythos.
Exclusive: Reco COO on securing the AI inside your SaaS stack
Reco COO Zoe Hillenmeyer says enterprises typically underestimate their AI agent exposure by a factor of ten and that gap is widening.
Google Cloud CEO sets out enterprise AI agent plan
Enterprises will get one place to build, govern and run AI agents, as Google Cloud expands Gemini Enterprise across models, data and security.
'Human Risk' takes centre stage - Mimecast CEO
Mimecast chief warns human risk is now cybersecurity's 'eighth layer' as malicious insiders overtake negligence in Australian attacks.
UiPath Accelerates AI in Software Development and Testing
UiPath is pushing AI deeper into software testing, promising autonomous agents that transform quality assurance and developers' roles.
Expert Columns
Interviews
Interviews and video coverage from the networkRecent Application Security News
Broadcom expands Spring security with faster patches
Java developers using Spring will get faster fixes as Broadcom backs day-zero patch access and more secure dependency builds for paying customers.
BeyondTrust joins Anthropic's Project Glasswing push
The partnership could help uncover critical flaws faster as AI-driven attacks and machine identities raise the stakes for infrastructure security.
Anthropic expands Project Glasswing to 150 organisations
The wider rollout targets critical infrastructure and software maintainers after early users found more than 10,000 serious flaws.
Offroad lands USD $7 million to tackle identity risk
Security teams may gain relief from manual identity investigations as Offroad targets risks from human, machine and AI access with USD $7 million.
XAML.io adds browser-based desktop packaging in preview
Developers can now package .NET desktop apps locally in a browser, reducing toolchain setup and keeping source code on their machine.
Insight launches managed defence for AI-driven flaws
Mid-sized firms facing faster exploits can now outsource patching, exposure scanning and threat monitoring under one contract.
Secure Code Warrior launches adaptive learning for AI risk
Personalised prompts will now be triggered by risky AI-assisted code, as firms seek earlier controls on developer behaviour and data exposure.
Sonatype flags 176 npm packages in dependency attack
Developers using npm could have secrets exposed as 176 malicious packages were set up to hijack dependency resolution and run postinstall malware.
OpenClaw adds NVIDIA SkillSpector to ClawHub checks
The registry is tightening checks after malicious uploads exposed a gap between declared skill purpose and actual behaviour.
New Relic touts Microsoft partnership as bookings rise
Marketplace bookings through Microsoft rose by double digits as New Relic deepened integrations aimed at helping customers manage AI-era software risk.
Rubrik uses Anthropic Mythos to probe software flaws
Early access to Anthropic's Mythos in Australia is helping Rubrik scan its code for flaws before attackers can exploit them.
GitHub launches Copilot desktop app for agentic work
Developers can now manage multiple AI coding agents in one place as GitHub tests a desktop Copilot app with worktree automation and review tools.
HackerOne launches AI platform to close security gap
Rising vulnerability volumes are outpacing fix times, prompting HackerOne to roll out an AI system that feeds confirmed threats into developer tools.
Cybanetix launches managed AI service for business risk
Businesses adopting AI now face a single service aimed at filling gaps in governance, monitoring and incident response across workflows.
Secure Code Warrior launches AI governance learning
Companies can now tie AI code-use risks to developer training, with Secure Code Warrior aiming to prove compliance at commit level.
Windows 11 sandbox flaw lets attackers escape with one click
Microsoft patched a CVE-2025-59199 flaw in October after researchers showed a single click could let low-integrity code escape Windows 11's sandbox.
DevOps platform vulnerabilities rise in 2025 report
More than half of patched flaws in major DevOps tools were high or critical in 2025, putting software supply chains at greater risk.
IBM & Red Hat launch £5bn open-source security plan
The move targets vulnerabilities in software used by large firms, as AI makes it easier to find and exploit flaws.
RevEng.AI raises USD $15 million to secure software
The funding will help firms spot hidden flaws and backdoors in compiled code as AI-generated software and supplier risk raise security concerns.
Google Cloud launches AI Threat Defence against attacks
The new service aims to help firms keep pace as AI-powered criminals automate attacks faster than security teams can patch flaws.