The Ultimate Guide to Application Security
A curated Indian edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.
What to know about Application Security
Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.
Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.
Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.
Indian Application Security News
Regional stories with direct local relevance
Indian firms lag on software supply chain security
A JFrog study says weak package and container defences are leaving Indian organisations exposed as AI use adds new checks for developers.
JFrog unveils Mumbai speaker line-up on AI software risks
Indian firms are moving to tighten software controls as AI agents and code generation raise new security and auditability risks.
Why DevOps transparency matters more than speed in cloud-native scale
In cloud‑native DevOps, transparency-not raw speed-now determines how safely, cheaply and reliably teams can scale complex systems.
From participation to influence: redefining women's leadership in india's technology transformation era
As India's tech economy surges, women's leadership must shift from presence in teams to real influence over high‑stakes digital decisions.
Azul enhances Java security detection, cutting false positives by 99%
Azul's new Java security tool cuts false positives by 99%, boosting detection accuracy and helping DevOps teams focus on real risks in production code.
Radware enhances security for major Indian airport
Radware has secured a contract to enhance cybersecurity for a major Indian airport to combat a 265% rise in cyber threats, delivering vital protection.
Analyst Insights
Research and market analysis connected to Application Security
Averlon launches Precog to block exploitable risks
Salt Code enforces security policies in AI coding tools
Software Improvement Group named Gartner leader on debt
Cycode launches agentic development lifecycle security
Cognizant launches Secure AI Services for enterprises
Featured News
Exabeam: Ruthless efficiency can make agentic AI malicious
Behavioural analytics is becoming essential as AI agents can pursue tasks so efficiently that they may cause damage without any malicious intent.
Check Point Technologies: On vigilance, Mythos and beyond
AI-driven vulnerability scanning is forcing firms to rethink complacency as Check Point says existing defences still help against Mythos.
Exclusive: Reco COO on securing the AI inside your SaaS stack
Reco COO Zoe Hillenmeyer says enterprises typically underestimate their AI agent exposure by a factor of ten and that gap is widening.
Google Cloud CEO sets out enterprise AI agent plan
Enterprises will get one place to build, govern and run AI agents, as Google Cloud expands Gemini Enterprise across models, data and security.
'Human Risk' takes centre stage - Mimecast CEO
Mimecast chief warns human risk is now cybersecurity's 'eighth layer' as malicious insiders overtake negligence in Australian attacks.
UiPath Accelerates AI in Software Development and Testing
UiPath is pushing AI deeper into software testing, promising autonomous agents that transform quality assurance and developers' roles.
Expert Columns
Why organisations in Asia Pacific are rethinking their AI deployment strategies
The evolving role of the CSO: From technical guardian to business strategist
Why DevOps transparency matters more than speed in cloud-native scale
Leading security in the AI era: Why CISOs must secure AI while using AI to secure the enterprise
Secure by default: Moving beyond secure by design
Why the next endpoint and SASE disruption will not come from a security vendor
From participation to influence: redefining women's leadership in india's technology transformation era
The security challenges in AI-assisted software development
Hybrid mesh security emerges to counter AI cyber risks
How AI-powered log management unlocks observability
Interviews
Interviews and video coverage from the networkRecent Application Security News
F5 announces advancements in multi-cloud networking partnerships
F5 reinforces its multi-cloud leadership, unveiling partnerships with NetApp, Red Hat, and Console Connect amid market growth projections.
Sysdig expands cloud security with new SaaS region in India
Sysdig expands its cloud-native security platform into India with a new SaaS region, addressing the growing cloud economy and increasing demand for local data sovereignty.
Supply chain software security: Remediating the Curl effect
These statistics provide a convincing perspective on how this vulnerability in Curl makes security across the software supply chain sort of defenseless.
Rubrik launches Agent Cloud for Claude code controls
Security teams gain rollback and policy controls as autonomous Claude agents begin writing and deploying code at machine speed.
Fastly & Skyfire link AI agents to verified payments
Businesses could soon verify and charge AI agents in milliseconds at the network edge, as autonomous traffic becomes harder to trust or block.
GitLab launches managed Google Cloud offer for firms
Regulated firms can now run GitLab's DevSecOps platform on Google Cloud with partner management, tighter data residency controls and new Gemini models.
Stack Overflow launches beta product for AI coding agents
Developers using AI assistants may get a verified knowledge base to cut repeated errors, security flaws and duplicated debugging work.
Liquibase Secure adds AI governance for database changes
AI-written database changes can now be checked and traced before deployment, as Liquibase Secure 5.2 targets production risk and audit gaps.
Hugging Face Transformers flaw enabled remote code
Millions of downloads were exposed to silent code execution as a flaw in Hugging Face Transformers let malicious models run on load.
Datadog launches 100 AI tools for operations & security
The rollout aims to help customers tame rising AI-driven complexity as Datadog adds autonomous monitoring, security and agent oversight tools.
CSC adds .brand domain security to CrowdStrike Marketplace
Customers can now access advice on branded web domains as phishing and impersonation risks push more firms to tighten online controls.
Wallarm launches flat-rate AWS infrastructure discovery
Cloud security teams can now map AWS estates without metered costs rising as visibility improves, easing budget pressure on larger organisations.
Synack expands CREST pathways with two new certifications
Security buyers get a stronger benchmark as CREST-certified testers gain faster access to Synack's vetted red team for client engagements.
Broadcom expands Spring security with faster patches
Java developers using Spring will get faster fixes as Broadcom backs day-zero patch access and more secure dependency builds for paying customers.
BeyondTrust joins Anthropic's Project Glasswing push
The partnership could help uncover critical flaws faster as AI-driven attacks and machine identities raise the stakes for infrastructure security.
Anthropic expands Project Glasswing to 150 organisations
The wider rollout targets critical infrastructure and software maintainers after early users found more than 10,000 serious flaws.
Offroad lands USD $7 million to tackle identity risk
Security teams may gain relief from manual identity investigations as Offroad targets risks from human, machine and AI access with USD $7 million.
SecureIQLab publishes APAC cloud WAAP validation reports
Independent tests are giving APAC buyers a clearer basis to compare cloud WAAP products as web and API attacks intensify.
Insight launches managed defence for AI-driven flaws
Mid-sized firms facing faster exploits can now outsource patching, exposure scanning and threat monitoring under one contract.
Sonatype flags 176 npm packages in dependency attack
Developers using npm could have secrets exposed as 176 malicious packages were set up to hijack dependency resolution and run postinstall malware.