Posts

Showing posts from May 4, 2025

15 cloud WAAP security providers ranked

SecureIQLab, a provider of cloud security validation solutions, has shared the results of its 2025 Cloud Web Application Firewall and API Protection (WAAP) validation study.  SecureIQLab, known for its cloud cybersecurity validation, leveraged its proprietary SocX , an AI-powered validation platform, to validate cloud WAAP solutions against the OWASP Top:2023 critical security risks.  The validation study that was conducted from January through April 2025 attempted to evaluate over 15 leading enterprise-class cloud WAAP providers. The study focused on overall security efficacy use-cases targeted around 15 distinct attack vectors and 1,360 attack techniques. The results also exposed key operational gaps around efficiently deploying and managing these solutions, as highlighted in the 60 or more operational scenarios that were evaluated as a part of the study. "Today's sophisticated cyberthreats require equally sophisticated defence mechanisms," said David Ellis, VP Corpo...

CrowdStrike is securing data across endpoints, cloud, gen AI and SaaS

CrowdStrike has announced new Falcon Data Protection innovations, enabling security teams to protect sensitive data across endpoints, cloud environments, generative AI (gen AI) and software-as-a-service (SaaS) applications. According to CrowdStrike, data is now a primary adversary target. Adversaries are shifting from disruption to data theft, targeting misconfigurations and trusted identities to exfiltrate sensitive information and fuel downstream attacks. Groups like SCATTERED SPIDER compromise single sign-on (SSO) accounts to harvest SharePoint and Outlook passwords, virtual private network (VPN) instructions and internal documents to aid lateral movement and extortion.  Others, like FAMOUS CHOLLIMA , gain insider access to company-issued endpoints and cloud environments, using remote access tools to steal intellectual property and customer data. As gen AI adoption accelerates, misconfigured applications and unsecured usage are creating new vectors for data exposure. CrowdStri...