Resources

“Voice of the Customer” 2025 for Cloud Web Application and API Protection

Weekly Threat Report September 23–29, 2026

Weekly Threat Report September 23–29, 2026: Citrix NetScaler RCE, F5 BIG-IP APM OAuth RCE, Next.js ImageResponse RCE, Cloudflare Containers Isolation, and AI-Agent Access Risk

This week, the main focus was on vulnerabilities affecting internet-facing applications and identity infrastructure. There

WAAP for Cybersecurity Mesh Architecture

WAAP for Cybersecurity Mesh Architecture: One Policy Across Kubernetes, Cloud and On-Prem Apps

Key Takeaways Cybersecurity mesh architecture (CSMA) replaces one network perimeter with security controls placed at

AI Security in Financial Services

AI Security in Financial Services: Risks, Threats, and How to Secure AI Systems

Key Takeaways FinCEN’s November 2024 alert (FIN-2024-Alert004) confirmed a rise in deepfake-enabled fraud against financial

CICD Pipeline Security

CI/CD Pipeline Security: Protect Every App and API You Release Without Slowing Your Pipeline

Key Takeaways CI/CD pipeline security covers two layers: the pipeline itself (code, secrets, dependencies, runners)

Account Takeover Attack Prevention

Account Takeover Attack Prevention: The Attack Surface Most Security Teams Miss

Key Takeaways Most account takeover attack prevention programs are built around credential stuffing and stop

GraphQL API Security Best Practices

GraphQL API Security Best Practices: 10 Controls to Enforce Behind a WAAP

Key Takeaways GraphQL sends every request to one endpoint and lets the client define the

OAuth API Security

OAuth API Security: Closing the Token Gaps Attackers Actually Exploit

Key Takeaways OAuth is a token-based authorization framework: it lets an application access a user’s

AI Security Strategy

AI Security Strategy: How to Build a Framework for Securing Enterprise AI

Key Takeaways AI security spans models, agents, data, identities, and third-party integrations – not just

API Gateway Security

API Gateway Security: Risks, Best Practices and How WAAP Closes the Gaps

Key Takeaways API gateway security is the set of controls, mainly authentication, authorization, and rate

Weekly Threat Report September 9–16, 2026

Weekly Threat Report September 9–16, 2026: GitLab API File Read, Cisco ISE Bypass, WSO2 JWT Forgery & Issabel PBX RCE

Reporting Convention New this week refers to vulnerabilities, exploits, or incidents disclosed between September 9–16.

AI Security Threat Report 2026 Growing Attack Surface

The Attack Surface Is Growing. Here’s What the AI Security Threat Report Reveals

Two decades ago, security meant building a wall. Today, the wall is gone. Every AI

1 2 3 … 12
Scroll to Top
Popup Webinar Image

FREE WEBINAR

AI-Native Firewalling: Real-Time Defense for LLM & Agentic Applications

Get practical insights into protecting LLM and agentic applications from emerging attacks before they become your next security incident.