The Ultimate Guide to Application Security
A curated Kiwi edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.
What to know about Application Security
Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.
Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.
Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.
Kiwi Application Security News
Regional stories with direct local relevance
Safety isn't just a launch state, it's a discipline
AI wellbeing coaches face persistent probing, and the company says health tools must be monitored daily as attacks grow more sophisticated.
Wellington startup launches Metaport for agency risk
Wellington startup Dcentrica has unveiled Metaport, a platform giving digital agencies real-time visibility of security and maintenance risk.
Capture The Bug adds US tech leaders for North American push
Hamilton-born Capture The Bug taps top US tech leaders to drive North American growth as demand rises for continuous security testing.
'Be very, very suspicious': Neighbourly breach makes users vulnerable - expert
Neighbourly breach puts up to a million users at risk as stolen GPS data and messages hit dark web, experts urge extreme vigilance online.
Rapid7 partners with Duo for strategic distribution in New Zealand
New Zealand's cybersecurity expenditure could boost as Rapid7 appoints Duo, a branch of Sektor, for strategic distribution.
Top cybersecurity achievements celebrated at 2023 iSANZ Awards
New Zealand's cybersecurity heroes, including KPMG's Philip Whitmore and BNZ teams, were honoured at the 2023 iSANZ Awards for advancing digital resilience nationwide.
Analyst Insights
Research and market analysis connected to Application Security
RevEng.AI launches binary analysis models for code
Survey finds AI access controls lag behind confidence
Broadcom launches TrueSource for secure open source
Netscout adds CDN-bypassing DDoS protection features
Gartner sees securing AI market hit USD $4.8bn in 2027
Featured News
AI models expose new attack surfaces through misconfiguration
Misconfigured models are giving attackers a fresh route into cloud systems, raising the risk of data theft and service compromise.
Exabeam: Ruthless efficiency can make agentic AI malicious
Behavioural analytics is becoming essential as AI agents can pursue tasks so efficiently that they may cause damage without any malicious intent.
Expert Columns
AI closes vulnerability window as zero-day exploits surge
When AI memory, simulation and provenance collide
Supercharged security: Cyber risk in the age of frontier AI
Buying more tools won't scale your security ambitions, operational maturity will
Safety isn't just a launch state, it's a discipline
A strategic blueprint for governing AI-enabled software development
Why ERP is not just another platform you can rebuild with AI code
As agentic development accelerates, workflow auditability becomes a bottleneck
Why organisations in Asia Pacific are rethinking their AI deployment strategies
The evolving role of the CSO: From technical guardian to business strategist
Interviews
Interviews and video coverage from the networkRecent Application Security News
Radware and Spark NZ enter cybersecurity partnership
Radware and Spark NZ have signed a partnership agreement to offer application and network security services in New Zealand.
Snyk expands reach across NZ market with new structure and leadership roles
Snyk is expanding its reach across the NZ market, aiming to further cement its place in the developer-focused security space.
Auldhouse significantly expands cybersecurity training offerings
Auldhouse set to become one of New Zealand's leading cybersecurity training providers, gaining official rights to the world's top cybersecurity certifications.
NZ financial firms bolster secure software development with Checkmarx
Two major financial institutions in New Zealand have refreshed their application security measures with the help of security specialist Checkmarx.
Chillisoft to distribute Imperva security solutions
Chillisoft adds Imperva to its cybersecurity portfolio, offering enterprise data security, web application, BOT protection, and CDN solutions.
The three-pronged security approach to multi-cloud environments
As enterprises adopt multi-cloud strategies, vArmour simplifies security with a three-pronged approach: auto-discovery, policy computation, and enforcement.
Cycode launches agentic code scanning & attack chaining
Security teams could see fewer false positives and faster fixes as Cycode's new system blends rule-based checks with AI to trace attack paths.
JFrog launches AI-era security tools for software supply
As AI coding agents speed up development, JFrog is adding controls meant to keep governance, compliance and patching from lagging.
Reco launches Browser Guard for enterprise AI security
Security teams now have to police shadow AI in browsers, where Reco says Browser Guard can block prompts, data leaks and rogue actions.
Westcon-Comstor signs Sonar deal across EMEA & APAC
Partners across EMEA and APAC gain a route into AI coding and DevSecOps projects as SonarQube checks aim to cut security and governance risks.
AI-generated cyber attacks to hit firms soon, warn experts
Many firms lack the capacity to fix existing flaws fast enough, leaving them exposed as AI-generated attacks scale up, experts warn.
Kobalt.io signs security partnerships across North America
Enterprise buyers and defence contractors will get a clearer route to certification as Kobalt.io broadens its North American security network.
Cloudflare launches Adaptive Intelligence for bot attacks
Businesses facing a surge in automated abuse could see faster bot blocking as Cloudflare says its system learns from live traffic and updates continuously.
TrendAI tops CyberGym with 97% exploit-remediation rate
Enterprises could cut their exposure window as TrendAI's AESIR scored 97% on an independent benchmark against confirmed software flaws.
CREST launches AI testing standard for cyber firms
Buyers of AI tools now have a benchmark to judge testing providers, as CREST's new standard targets gaps in assurance and due diligence.
Horizon3 & Deloitte forge cyber resilience alliance
Australian and New Zealand businesses face greater pressure to prove cyber controls work as the firms back continuous testing over periodic reviews.
Google Cloud urges stronger cyber basics amid AI attacks
As attackers use AI to speed up phishing and malware, companies are being told that multi-factor authentication and patching matter more than ever.
TrendAI adopts Claude Opus 5 for vulnerability triage
Security teams could cut exposure faster as the model helps rank exploitable flaws and apply temporary defences before vendor fixes arrive.
Akamai maps distributed cloud shift for APAC AI workloads
Enterprises in Asia-Pacific are moving AI from trials to production, driving demand for low-latency, distributed computing closer to users and data.
NVIDIA, SAP back OpenBao as secrets tool gains ground
Growing use by major tech groups is helping open source secrets manager OpenBao win trust as cloud and AI credential risks mount.