TechDay New Zealand - Aotearoa's technology news network
Kiwi Edition · 2026

The Ultimate Guide to Application Security

A curated Kiwi edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.

What to know about Application Security

Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.

Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.

Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.

Kiwi Application Security News

Regional stories with direct local relevance

Analyst Insights

Research and market analysis connected to Application Security

Expert Columns

Interviews

Interviews and video coverage from the network

Recent Application Security News

Snyk expands reach across NZ market with new structure and leadership roles
App development

Snyk expands reach across NZ market with new structure and leadership roles

Snyk is expanding its reach across the NZ market, aiming to further cement its place in the developer-focused security space.

Tue, 18th Jan 2022

Auldhouse significantly expands cybersecurity training offerings
DevSecOps

Auldhouse significantly expands cybersecurity training offerings

Auldhouse set to become one of New Zealand's leading cybersecurity training providers, gaining official rights to the world's top cybersecurity certifications.

Tue, 2nd Nov 2021

NZ financial firms bolster secure software development with Checkmarx
App development

NZ financial firms bolster secure software development with Checkmarx

Two major financial institutions in New Zealand have refreshed their application security measures with the help of security specialist Checkmarx.

Mon, 6th Jul 2020

Chillisoft to distribute Imperva security solutions
Breach Prevention

Chillisoft to distribute Imperva security solutions

Chillisoft adds Imperva to its cybersecurity portfolio, offering enterprise data security, web application, BOT protection, and CDN solutions.

Tue, 2nd Jun 2020

The three-pronged security approach to multi-cloud environments
Multi-cloud

The three-pronged security approach to multi-cloud environments

As enterprises adopt multi-cloud strategies, vArmour simplifies security with a three-pronged approach: auto-discovery, policy computation, and enforcement.

Mon, 8th Oct 2018

Secure Code Warrior launches Bedrock security training
Risk & Compliance

Secure Code Warrior launches Bedrock security training

Developers using generative AI will get hands-on lessons on prompt injection and data leakage as AWS expands Bedrock adoption.

Yesterday

AI now routine in cyber attacks, Google report finds
Threat intelligence

AI now routine in cyber attacks, Google report finds

Security teams face a broader threat as criminals and state-backed actors use generative AI to speed hacks, phishing and malware.

Yesterday

Sonatype joins Linux Foundation registry working group
Advanced Persistent Threat Protection

Sonatype joins Linux Foundation registry working group

Sonatype joins Linux Foundation registry working group to tackle funding, governance and security pressures as package downloads near 10 trillion.

2 days ago

Netskope launches AgentSkope AI agents for security teams
Productivity

Netskope launches AgentSkope AI agents for security teams

It aims to reduce alert fatigue for security teams, with one beta customer processing 14 million daily alerts in minutes instead of hours.

2 days ago

WatchGuard buys Perimeters.io in cloud security push
Outsourcing

WatchGuard buys Perimeters.io in cloud security push

MSPs will gain a single platform for cloud threat detection as the deal widens WatchGuard's reach into identity and SaaS security.

2 days ago

KnowBe4 partners Secure Code Warrior on AI training
Encryption

KnowBe4 partners Secure Code Warrior on AI training

Organisations using AI in software development will get training on secure coding and governance as vulnerabilities and data risks mount.

Last week

OpenAI launches GPT-5.5-Cyber for vetted defenders
Firewalls

OpenAI launches GPT-5.5-Cyber for vetted defenders

Vetted security teams will get fewer refusals on authorised tasks as OpenAI tightens access around its most permissive cyber model.

Last week

Rapid7 joins OpenAI cyber programme to speed defence
Digital Transformation

Rapid7 joins OpenAI cyber programme to speed defence

The tie-up could help security teams cut false alarms and patch faster as automated attacks shrink defenders’ reaction time.

Last week

Synack launches Sara AI Pentesting for wider coverage
Data Protection

Synack launches Sara AI Pentesting for wider coverage

The move aims to widen security coverage as firms struggle to test expanding attack surfaces quickly enough.

Last week

Malicious OpenClaw skill spreads Remcos RAT & GhostLoader
SmartPhones

Malicious OpenClaw skill spreads Remcos RAT & GhostLoader

AI agent workflows are being targeted by a fake OpenClaw skill that installs Remcos RAT and GhostLoader on Windows, macOS and Linux.

Last week

AI inference becomes core operational workload in firms
Business Continuity

AI inference becomes core operational workload in firms

Most firms are now running AI in production, with hybrid clouds and security controls becoming crucial as inference overtakes training.

Last week

Vega spots Weaver E-cology attacks within days of patch
Threat intelligence

Vega spots Weaver E-cology attacks within days of patch

Attackers were exploiting a critical Weaver E-cology flaw within five days of the vendor patch, Vega said, with repeated attempts blocked.

Last week

Saiga phishing kit returns to bypass multifactor auth
QR code

Saiga phishing kit returns to bypass multifactor auth

Session cookie theft lets attackers slip past multifactor checks, putting enterprise email accounts at risk even after login.

Last week

Kamiwaza launches AI platform for regulated sectors
Government

Kamiwaza launches AI platform for regulated sectors

Regulated organisations can now run AI across distributed data while preserving access controls, audit trails and compliance boundaries.

Last week

Chainguard launches compliant EKS add-ons in AWS Marketplace
Public Sector

Chainguard launches compliant EKS add-ons in AWS Marketplace

The listing gives regulated AWS customers a faster route to compliant Kubernetes components, avoiding custom hardening and patching work.

Last week

Job Moves