The Move Toward Continuous Testing

The Move Toward Continuous Testing

DevSecOps is the expansion of DevOps that includes security professionals as well. The idea is for everyone to be looking at the code together, rather than in silos. This will produce the most robust and resilient software with the least amount of time and cost.
A Guide To Automated Continuous Security Testing in DevOps

A Guide To Automated Continuous Security Testing in DevOps

The acceleration of application development has shown no sign of stopping. As a result, we’re seeing increasingly complex, interconnected software. These forces are driving organizations to go beyond merely identifying common security errors or protecting against common attack techniques.
How Fuzzing Redefines Application Security

How Fuzzing Redefines Application Security

The Application Security Testing market is highly fragmented. From SAST to DAST to SCA to IAST to RASP, what is the best? Our answer: Autonomous testing through fuzz testing and symbolic execution.
Addressing the Spectrum of Risks

Addressing the Spectrum of Risks

In this blog, we’ll walk through the spectrum of risk and the types of solutions that are strongest at addressing each risks.
The Case for Autonomous Security Testing

The Case for Autonomous Security Testing

Unlike in the movies, computers probably won't lead the human race to its demise. In fact, they may do the opposite.
Top 3 Takeaways: “Cloudflare TV’s Hacker Time"

Top 3 Takeaways: “Cloudflare TV’s Hacker Time"

On February 12, 2021, ForAllSecure CEO Dr. David Brumley joined Cloudflare’s Head of Product Security, Evan Johnson, to discuss all things software security, fuzz testing, capture-the-flags (CTFs), and cybersecurity certifications.
3 AppSec Predictions For 2021

3 AppSec Predictions For 2021

As we look into the new year, we see three trends emerging for the new year for application security.
Game Theory: Why System Security Is Like Poker, Not Chess

Game Theory: Why System Security Is Like Poker, Not Chess

Cyber offense and defense isn’t chess. It’s a game of poker. In chess, you have complete visibility into your opponent’s position and moves. In poker, you lack that visibility, which also happens in the cyber realm.
Why I'm Not Sold On Machine Learning In Autonomous Security: Some Hard Realities On The Limitations Of Machine Learning In Autonomous NetSec

Why I'm Not Sold On Machine Learning In Autonomous Security: Some Hard Realities On The Limitations Of Machine Learning In Autonomous NetSec

Incorporating machine learning into your autonomous netsec strategy? Think again. ForAllSecure CEO David Brumley shares the realities and limitations of ML for autonomous security, as well as the criteria to keep in mind for implementing autonomous security into your organization.

How about some Mayhem in your inbox?

Subscribe to our monthly newsletter for expert insights and news on DevSecOps topics, plus Mayhem tips and tutorials.

By subscribing, you're agreeing to our website terms and privacy policy.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Add Mayhem to Your DevSecOps for Free.