Microsoft misconfigurations expose millions of records globally
Monday, November 18, 2024 by Freeman Lightner
In September 2024, significant data exposure was discovered within Microsoft Power Pages, a low-code SaaS platform, due to misconfigured access controls. The exposure, which potentially affected millions of individuals, highlights the risks associated with excessive permissions granted to the platform's "Anonymous" and "Authenticated" user roles....
AWS App Studio lands from Amazon
Friday, August 2, 2024 by Richard Harris
At AWS Summit New York, Amazon Web Services, Inc. (AWS), announced the release of AWS App Studio, a generative artificial intelligence (AI)-powered service that uses natural language to create enterprise-grade applications. A user simply describes the application they want, what they want it to do, and the data sources they want to integrate with, and in just minut...
Red Hat Developer Hub is available now
Wednesday, January 24, 2024 by Richard Harris
Red Hat, Inc., the provider of open-source solutions, announced the general availability of Red Hat Developer Hub, an enterprise-grade internal developer platform (IDP) based on Backstage, an open-source Cloud Native Computing Foundation (CNCF) project. Featuring a self-service portal, standardized software templates, dynamic plug-in management, enterprise role-ba...
API security risks report exposes Netflix and Wordpress
Monday, November 27, 2023 by Richard Harris
Wallarm, the end-to-end API and app security company, announced the release of its Q3-2023 Wallarm API ThreatStats report. The quarterly report details the surge in threats centered around APIs and uncovers critical vulnerabilities, like injections and API data leaks, that have recently impacted leading firms, including Netflix, VMware, and SAP.
The new report i...
You can now use Google Clouds BigQuery with Velotix
Monday, October 30, 2023 by Richard Harris
Velotix announced an integration with Google Cloud’s BigQuery, a serverless enterprise data warehouse, to provide AI-driven data protection and access management for sensitive data stored in Google Cloud. The Velotix data security platform governs and controls compliant access to data throughout the data access lifecycle to provide maximum data utilization wi...
Automated service to service access emerges from Otterize
Tuesday, April 18, 2023 by Brittany Hainzinger
Otterize, an open-source solution that's re-inventing how to connect services securely, to each other and to their infrastructures, today announced $11.5M in seed funding and publicly unveiled its new Otterize Cloud product, which is now in GA. The round was led by Index Ventures, followed by Dig Ventures, and Vine Ventures, with participation by Jibe Ventures, Crew...
Identity will hold the keys to the kingdom for cybercriminals
Wednesday, February 8, 2023 by Brittany Hainzinger
In 2023, identity will continue to hold the keys to the kingdom for cybercriminals. This is a continuation from 2022, with the Verizon Data Breach Investigations Report (DBIR) attributing 80% of basic web application attacks to the use of stolen credentials like passwords. Security incidents usually involve a variety of techniques, from social engineering to supply chai...
TrueNAS R30 launches from iXsystems
Friday, December 23, 2022 by Freeman Lightner
iXsystems, the company behind TrueNAS, has announced the RELEASE of TrueNAS SCALE 22.12 "Bluefin", the second major version of TrueNAS SCALE and the industry’s most powerful open source hyper-converged storage OS. Developed in true open source fashion alongside the hundreds of thousands of members in the TrueNAS Community, this storage software release f...
Change Data Capture adapter launches
Tuesday, March 29, 2022 by Brittany Hainzinger
Push Technology has announced the launch of a new Change Data Capture (CDC) Adapter. The adapter is particularly appropriate for event-driven use cases in IoT transportation data, global equity/derivative exchange market data, and retail and eCommerce.
The Diffusion Platform-Gateway has an array of adapters to capture all forms of data feeds, the latest addition to i...
Software cyberattack predictions for 2022
Tuesday, January 4, 2022 by Richard Harris
Nigel Thorpe hails from a software development background and moved to the IT security industry with Entrust Technologies during the early days of PKI. His knowledge has benefited a number of security companies in the UK, Canada, and the USA, and he now serves as Technical Director at SecureAge Technology. With a wide range of experience in different business environmen...
Moonwalk NFT Utility Wallet launches
Tuesday, December 7, 2021 by Richard Harris
Moonwalk has announced the official unveiling of the Moonwalk-branded NFT Utility Wallet, a no-code solution for brands, gaming companies, and creators looking to create NFT communities and deploy NFT-powered unlocks and gamification. Available for desktop, mobile web, chrome extension and API deployment, Moonwalk’s unique NFT Utility Wallet acts as a ho...
Offshore software developers risks and advantages
Thursday, October 28, 2021 by Vivien F. Peaden
The onset of COVID-19 has hastened CEOs’ prioritization of digital transformation to future-proof their organizations. This paradigm change is driving the IT outsourcing spend to improve operational agility, integrate new technologies, and achieve cost-savings and faster time-to-market.
Risks and advantages of using offshore software developers
The pandemic ...
Open source services from Rafay Systems
Tuesday, October 19, 2021 by Austin Harris
Rafay Systems announced its plans to open-source its Zero-Trust Access and GitOps services. Developers will be able to take advantage of and contribute to, these battle-tested services that significantly reduce the complexities associated with securing access to and automating the ongoing operations of Kubernetes infrastructure and modern applications. These two service...
env0 automates Infrastructure as Code to streamline cloud management
Monday, April 19, 2021 by Brittany Hainzinger
env0 highlighted continued adoption of the company's cloud infrastructure automation platform by organizations globally as users leverage env0 to streamline Terraform, Terragrunt, and IaC Git workflows. Ratings by entities using and analyzing the platform's CD pipeline automation, powerful role-based access control and governance of IaC deployments reveal the si...
5 mistakes businesses make in application development
Friday, October 23, 2020 by Mayur S Shah
5 Mistakes Businesses Make While Prioritizing Speed Over Security in Application Development
Earlier this year, the Democratic party in Iowa announced its plans to use a smartphone app to calculate and transmit their caucus results. One would think that by using technology to improve the speed of governance, what could possibly go wrong? A lot, apparently. The a...
Improve DevOps processes with API catalog
Thursday, March 26, 2020 by Richard Harris
One of the biggest trends in DevOps is the “shift left” approach when it comes to security, so much so that security conferences now host developer days, developer conferences host security days, and the two have melded into DevSecOps. But pragmatically, how do you implement security earlier into your development cycles? According to CloudVector VP of Engine...
Diffusion 6.4 real-time API management platform lands
Wednesday, February 5, 2020 by Brittany Hainzinger
Push Technology released the Diffusion 6.4 Real-Time API Management Platform. With the new release, data model creation and maintenance is simplified, resulting in faster development, increased data stream integration efficiency, and assured data delivery priority -- no matter the size or source of the data.
Easy data stream integration and management
Data s...
The rise of microservices with Anypoint Service Mesh
Wednesday, October 16, 2019 by Freeman Lightner
MuleSoft has announced Anypoint Service Mesh, a new solution that dramatically simplifies how companies can discover, manage and secure microservices. Anypoint Service Mesh brings security and reliability to any microservices-based application, regardless of language or deployment model, freeing developers from custom code. Customers can also now publish and discov...
eiPaaS value as seen from Jitterbit's CTO
Wednesday, September 25, 2019 by Richard Harris
Fragmented technologies have the power to stop an enterprise dead in its tracks. However, there is one secret weapon every business needs to give themselves a fighting chance to quickly grow to the levels of those other major companies. Enterprise integration has become the great growth enabler for today's enterprises. We spoke with, Manoj Chaudhary, CTO and VP...
Service mesh for all
Thursday, September 12, 2019 by Richard Harris
Kong Inc. announced the release of an open-source project called Kuma. Based on the popular open-source Envoy proxy, Kuma is a universal control plane that addresses limitations of first-generation service mesh technologies by enabling seamless management of any service on the network. Kuma runs on any platform – including Kubernetes, containers, virtual machines,...
Code platform Pulumi 1.0 released
Monday, September 9, 2019 by Freeman Lightner
Pulumi Corporation announced the general availability of version 1.0 of its modern Infrastructure as Code platform. Pulumi 1.0 introduces new capabilities designed to help developer and operations teams overcome organizational silos and achieve best-in-class levels of productivity, reliability, and security on any cloud using familiar programming languages and open-sour...
Zeroday vulnerability announced byMcAfee at Defcon
Monday, August 19, 2019 by Richard Harris
At DEFCON, McAfee has announced the discovery of a zero-day vulnerability in a commonly used Delta industrial control system.
The vulnerability found in the Delta enteliBUS Manager could allow malicious actors complete control of the operating system, enabling remote manipulation of access control systems, boiler rooms, temperature control for critical systems and mo...
Data Catalog is now available in public beta
Tuesday, July 2, 2019 by Richard Harris
At Google Cloud Next '19 San Francisco, Google introduced Data Catalog, a fully managed, data discovery and metadata management service that allows you to quickly discover, manage, and understand your data in Google Cloud. We're announcing that Data Catalog is now available in public beta.
Simple and powerful data discovery
Data analysts can now use Data C...
Making IoT devices more reliable gets easier thanks to Silicon Labs
Monday, April 29, 2019 by Richard Harris
Silicon Labs has introduced the next generation of it's Wireless Gecko platform, Series 2, designed to make Internet of Things (IoT) products more powerful, efficient and reliable. Building on the leading RF and multiprotocol capabilities of the Wireless Gecko portfolio, Series 2 delivers the industry’s most versatile and scalable IoT connectivity platform. Th...
Blockchain development with strong APIs
Monday, January 21, 2019 by Richard Harris
2018 was the year of blockchain “pilot” projects - where companies began to truly explore all of the possibilities of the technology. For example, in PwC’s 2018 survey of 600 executives, 84 percent said their organizations had at least some involvement with blockchain technology - but only 15 percent reported having gone live.
As we jump into 2019, ...
5 app development tips to help you avoid disaster
Wednesday, November 28, 2018 by Joe Hanson
Mobile app development: it’s easy and straightforward in the lab, but once your app is deployed to the wild, all bets are off. You need to deliver seamless, fast experiences for users on low-powered devices, in any number of network environments.
When it comes to building mobile apps, uncontrollable user behavior can lead you down the path to death by 1000 pape...
Legacy system gridlock overcome in OutSystems 11
Friday, September 28, 2018 by Richard Harris
OutSystems announced the release of OutSystems 11, a low-code solution to address one of the biggest issues facing IT teams - legacy system gridlock. Building on its low-code platform for web and mobile apps, OutSystems 11 delivers new advanced capabilities to help organizations modernize legacy systems and replace large application portfolios.
“The legac...
DevSecOps showcase by Sumo Logic unravels all their new changes
Monday, September 17, 2018 by Richard Harris
Sumo Logic announced a number of new solutions and enhancements to its platform to empower enterprises to "win in the analytics economy." These innovations, as well as those from DevSecOps ecosystem partners, will be showcased this week at Sumo Logic’s user conference, Illuminate, in Burlingame, Calif. Illuminate will gather over 600 experts in machine d...
GraphQL as a service platform launches by Hasura
Monday, July 23, 2018 by Austin Harris
Hasura launched their open source GraphQL Engine. A solution available that can instantly add GraphQL-as-a-Service onto existing Postgres-based applications - without the time-consuming task of writing backend code that processes GraphQL. Now front-end developers and enterprise application developers can get GraphQL and start working with it in minutes to build scalable...
Machine data and SQL database release from Crate.io
Thursday, June 21, 2018 by Richard Harris
Crate.io announced $11 million in series A funding, along with the commercially-available Crate Machine Data Platform and version 3.0 of the open source CrateDB. The new funding was led by Zetta Venture Partners and Deutsche Invest Equity with participation from Mike Chalfen, Momenta Partners and Charlie Songhurst. Existing investors Draper Esprit, Vito Ventures and Sol...
What some experts are saying about GDPR
Friday, May 18, 2018 by Austin Harris
The GDPR bill is causing an uproar in the industry as the compliance date comes ever nearer. Yet few can say they actually know much about the bill that will come into place on May 25th.GDPR, or the General Data Protection Regulation, is an expansion upon the EU’s previous Data Protection Act of 1998, extending the boundary of its territorial mandate from whatever juris...
Pulse Secure expands to support hybrid IT with secure access
Monday, April 16, 2018 by Richard Harris
Pulse Secure has announced new cloud and virtual appliances to protect access and support applications in hybrid IT environments. Enterprises are quickly moving to deploy hybrid IT, leveraging the cloud to introduce new user services and gain disaster recovery resiliency, as well as continuing to use the data center when they must have total control of the application. ...
Enterprise AI tools launched by Paperspace
Thursday, March 22, 2018 by Austin Harris
Paperspace has announced the launch of Gradient to put the power of artificial intelligence into the hands of every developer. With Gradient, AI and Machine Learning developers of all levels can tap into a dedicated cloud of AI solutions for building, training and deploying machine learning applications.“There’s no denying that AI is the future of every industry, but to...
This API api security solution to use AI
Thursday, February 1, 2018 by Richard Harris
To protect global organizations against ever-increasing security threats, Axway has announced a global partnership with Elastic Beam. Together, the two companies will help organizations achieve optimal security and ecosystem engagement by leveraging an AI engine, integrated with Axway API Gateway, that automatically detects and blocks new attacks on APIs. The Elastic Be...
Device API access control gets easier with new MNO tool
Wednesday, January 31, 2018 by Austin Harris
GlobalPlatform has defined a specification that enables mobile network operators (MNOs) to access certain aspects of the mobile device operating system (OS), which are by default not accessible for security reasons. The specification has received input and support from MNO industry body GSMA and device manufacturers, who recognize that MNOs need this advanced access to ...