IT Brief India - Technology news for CIOs & IT decision-makers
India
Indian Edition · 2026

The Ultimate Guide to Application Security

A curated Indian edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.

What to know about Application Security

Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.

Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.

Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.

Indian Application Security News

Regional stories with direct local relevance

Analyst Insights

Research and market analysis connected to Application Security

Expert Columns

Interviews

Interviews and video coverage from the network

Recent Application Security News

Sysdig expands cloud security with new SaaS region in India
Digital Transformation

Sysdig expands cloud security with new SaaS region in India

Sysdig expands its cloud-native security platform into India with a new SaaS region, addressing the growing cloud economy and increasing demand for local data sovereignty.

Fri, 12th Jul 2024

Supply chain software security: Remediating the Curl effect
Supply Chain

Supply chain software security: Remediating the Curl effect

These statistics provide a convincing perspective on how this vulnerability in Curl makes security across the software supply chain sort of defenseless.

Mon, 16th Oct 2023

Synack report says vulnerability testing gap widens
Digital Transformation

Synack report says vulnerability testing gap widens

Enterprises are testing only about 32% of their attack surface, leaving many assets outside regular security checks as threats grow faster.

Today

HackerOne links validated flaws to Wiz cloud platform
Digital Transformation

HackerOne links validated flaws to Wiz cloud platform

Security teams may cut backlogs as validated HackerOne flaws are mapped into Wiz, linking exploit evidence to cloud assets for faster prioritisation.

Yesterday

MySQL exposures & slow fixes plague firms, study finds
Digital Transformation

MySQL exposures & slow fixes plague firms, study finds

Nearly half of organisations are leaving risky ports and services open, with midmarket firms taking up to 56 days to fix exposures.

Yesterday

HackerOne & Wiz link validated findings to cloud risk
Digital Transformation

HackerOne & Wiz link validated findings to cloud risk

Security teams can now rank cloud flaws by exploitability and impact, as validated HackerOne reports feed directly into Wiz's risk graph.

Yesterday

Sweet launches AI red-team agent to test attack paths
Chief Information Security Officer

Sweet launches AI red-team agent to test attack paths

Security teams under pressure to prove real exploitability can now test live production systems for attack paths rather than theoretical flaws.

Yesterday

Intruder finds exposed MySQL databases in 26% of firms
Cyber Threat

Intruder finds exposed MySQL databases in 26% of firms

The findings show many firms still leave internet-facing databases and admin tools open, giving attackers easy routes before flaws are even published.

2 days ago

Cisco open-sources Foundry Security Spec for AI testing
Security Operations Centres

Cisco open-sources Foundry Security Spec for AI testing

Security teams will be able to verify AI-generated vulnerability findings more reliably, as Cisco's framework tackles false positives and invented issues.

2 days ago

CyberCX report finds 29% of tests exposed severe flaws
Digital Transformation

CyberCX report finds 29% of tests exposed severe flaws

AI systems and social engineering tests proved especially risky, as CyberCX found severe weaknesses in half and 77% of cases respectively.

3 days ago

Fortinet expands NVIDIA tie-up to secure enterprise AI
Energy efficient

Fortinet expands NVIDIA tie-up to secure enterprise AI

The integration aims to curb prompt injection and data leaks as enterprises push AI agents into production across cloud and on-premises systems.

4 days ago

Secure Code Warrior launches Bedrock security training
Risk & Compliance

Secure Code Warrior launches Bedrock security training

Developers using generative AI will get hands-on lessons on prompt injection and data leakage as AWS expands Bedrock adoption.

4 days ago

AI now routine in cyber attacks, Google report finds
Threat intelligence

AI now routine in cyber attacks, Google report finds

Security teams face a broader threat as criminals and state-backed actors use generative AI to speed hacks, phishing and malware.

4 days ago

Sonatype joins Linux Foundation registry working group
Advanced Persistent Threat Protection

Sonatype joins Linux Foundation registry working group

Sonatype joins Linux Foundation registry working group to tackle funding, governance and security pressures as package downloads near 10 trillion.

5 days ago

Netskope launches AgentSkope AI agents for security teams
Productivity

Netskope launches AgentSkope AI agents for security teams

It aims to reduce alert fatigue for security teams, with one beta customer processing 14 million daily alerts in minutes instead of hours.

5 days ago

WatchGuard buys Perimeters.io in cloud security push
Outsourcing

WatchGuard buys Perimeters.io in cloud security push

MSPs will gain a single platform for cloud threat detection as the deal widens WatchGuard's reach into identity and SaaS security.

5 days ago

KnowBe4 partners Secure Code Warrior on AI training
Encryption

KnowBe4 partners Secure Code Warrior on AI training

Organisations using AI in software development will get training on secure coding and governance as vulnerabilities and data risks mount.

Last week

OpenAI launches GPT-5.5-Cyber for vetted defenders
Firewalls

OpenAI launches GPT-5.5-Cyber for vetted defenders

Vetted security teams will get fewer refusals on authorised tasks as OpenAI tightens access around its most permissive cyber model.

Last week

Rapid7 joins OpenAI cyber programme to speed defence
Digital Transformation

Rapid7 joins OpenAI cyber programme to speed defence

The tie-up could help security teams cut false alarms and patch faster as automated attacks shrink defenders’ reaction time.

Last week

Synack launches Sara AI Pentesting for wider coverage
Data Protection

Synack launches Sara AI Pentesting for wider coverage

The move aims to widen security coverage as firms struggle to test expanding attack surfaces quickly enough.

Last week