TechDay New Zealand - Aotearoa's technology news network
Kiwi Edition · 2026

The Ultimate Guide to Application Security

A curated Kiwi edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.

What to know about Application Security

Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.

Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.

Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.

Kiwi Application Security News

Regional stories with direct local relevance

Analyst Insights

Research and market analysis connected to Application Security

Expert Columns

Interviews

Interviews and video coverage from the network

Recent Application Security News

Snyk expands reach across NZ market with new structure and leadership roles
App development

Snyk expands reach across NZ market with new structure and leadership roles

Snyk is expanding its reach across the NZ market, aiming to further cement its place in the developer-focused security space.

Tue, 18th Jan 2022

Auldhouse significantly expands cybersecurity training offerings
DevSecOps

Auldhouse significantly expands cybersecurity training offerings

Auldhouse set to become one of New Zealand's leading cybersecurity training providers, gaining official rights to the world's top cybersecurity certifications.

Tue, 2nd Nov 2021

NZ financial firms bolster secure software development with Checkmarx
App development

NZ financial firms bolster secure software development with Checkmarx

Two major financial institutions in New Zealand have refreshed their application security measures with the help of security specialist Checkmarx.

Mon, 6th Jul 2020

Chillisoft to distribute Imperva security solutions
Breach Prevention

Chillisoft to distribute Imperva security solutions

Chillisoft adds Imperva to its cybersecurity portfolio, offering enterprise data security, web application, BOT protection, and CDN solutions.

Tue, 2nd Jun 2020

The three-pronged security approach to multi-cloud environments
Multi-cloud

The three-pronged security approach to multi-cloud environments

As enterprises adopt multi-cloud strategies, vArmour simplifies security with a three-pronged approach: auto-discovery, policy computation, and enforcement.

Mon, 8th Oct 2018

Akamai warns of surging DDoS attacks on financial firms
Digital Transformation

Akamai warns of surging DDoS attacks on financial firms

Sustained assaults are disrupting online banking and payments as EMEA becomes the main target for DDoS campaigns against lenders.

Today

OpenText launches AI cyber tools for Australian firms
Digital Transformation

OpenText launches AI cyber tools for Australian firms

Australian firms face rising cyber and compliance costs as OpenText adds tools to govern AI use, data access and application risks.

Yesterday

Anthropic model can chain bugs into exploits, Cloudflare
Patching

Anthropic model can chain bugs into exploits, Cloudflare

The findings suggest AI-assisted bug hunting is edging closer to practical exploitation, raising the stakes for software teams racing to patch flaws.

2 days ago

Concentric AI adds Claude compliance auditing integration
Security Operations Centres

Concentric AI adds Claude compliance auditing integration

Companies using Claude can now log prompts, responses and attachments for compliance, easing oversight of sensitive data shared by staff.

3 days ago

Okta expands AI agent controls with Amazon Bedrock
Digital Transformation

Okta expands AI agent controls with Amazon Bedrock

Customers can now govern AI agents across mixed systems as Okta adds Bedrock support and lets firms keep existing identity providers.

Last week

Synack report says vulnerability testing gap widens
Digital Transformation

Synack report says vulnerability testing gap widens

Enterprises are testing only about 32% of their attack surface, leaving many assets outside regular security checks as threats grow faster.

Last week

HackerOne links validated flaws to Wiz cloud platform
Digital Transformation

HackerOne links validated flaws to Wiz cloud platform

Security teams may cut backlogs as validated HackerOne flaws are mapped into Wiz, linking exploit evidence to cloud assets for faster prioritisation.

Last week

MySQL exposures & slow fixes plague firms, study finds
Digital Transformation

MySQL exposures & slow fixes plague firms, study finds

Nearly half of organisations are leaving risky ports and services open, with midmarket firms taking up to 56 days to fix exposures.

Last week

HackerOne & Wiz link validated findings to cloud risk
Digital Transformation

HackerOne & Wiz link validated findings to cloud risk

Security teams can now rank cloud flaws by exploitability and impact, as validated HackerOne reports feed directly into Wiz's risk graph.

Last week

Sweet launches AI red-team agent to test attack paths
Chief Information Security Officer

Sweet launches AI red-team agent to test attack paths

Security teams under pressure to prove real exploitability can now test live production systems for attack paths rather than theoretical flaws.

Last week

Intruder finds exposed MySQL databases in 26% of firms
Cyber Threat

Intruder finds exposed MySQL databases in 26% of firms

The findings show many firms still leave internet-facing databases and admin tools open, giving attackers easy routes before flaws are even published.

Last week

Cisco open-sources Foundry Security Spec for AI testing
Security Operations Centres

Cisco open-sources Foundry Security Spec for AI testing

Security teams will be able to verify AI-generated vulnerability findings more reliably, as Cisco's framework tackles false positives and invented issues.

Last week

CyberCX report finds 29% of tests exposed severe flaws
Digital Transformation

CyberCX report finds 29% of tests exposed severe flaws

AI systems and social engineering tests proved especially risky, as CyberCX found severe weaknesses in half and 77% of cases respectively.

Last week

Fortinet expands NVIDIA tie-up to secure enterprise AI
Energy efficient

Fortinet expands NVIDIA tie-up to secure enterprise AI

The integration aims to curb prompt injection and data leaks as enterprises push AI agents into production across cloud and on-premises systems.

Last week

Secure Code Warrior launches Bedrock security training
Risk & Compliance

Secure Code Warrior launches Bedrock security training

Developers using generative AI will get hands-on lessons on prompt injection and data leakage as AWS expands Bedrock adoption.

Last week

Job Moves