eCommerceNews New Zealand - Technology news for digital commerce decision-makers
New Zealand
Kiwi Edition · 2026

The Ultimate Guide to Application Security

A curated Kiwi edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.

What to know about Application Security

Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.

Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.

Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.

Kiwi Application Security News

Regional stories with direct local relevance

Analyst Insights

Research and market analysis connected to Application Security

Expert Columns

Interviews

Interviews and video coverage from the network

Recent Application Security News

Snyk expands reach across NZ market with new structure and leadership roles
App development

Snyk expands reach across NZ market with new structure and leadership roles

Snyk is expanding its reach across the NZ market, aiming to further cement its place in the developer-focused security space.

Tue, 18th Jan 2022

Auldhouse significantly expands cybersecurity training offerings
DevSecOps

Auldhouse significantly expands cybersecurity training offerings

Auldhouse set to become one of New Zealand's leading cybersecurity training providers, gaining official rights to the world's top cybersecurity certifications.

Tue, 2nd Nov 2021

NZ financial firms bolster secure software development with Checkmarx
App development

NZ financial firms bolster secure software development with Checkmarx

Two major financial institutions in New Zealand have refreshed their application security measures with the help of security specialist Checkmarx.

Mon, 6th Jul 2020

Chillisoft to distribute Imperva security solutions
Breach Prevention

Chillisoft to distribute Imperva security solutions

Chillisoft adds Imperva to its cybersecurity portfolio, offering enterprise data security, web application, BOT protection, and CDN solutions.

Tue, 2nd Jun 2020

The three-pronged security approach to multi-cloud environments
Multi-cloud

The three-pronged security approach to multi-cloud environments

As enterprises adopt multi-cloud strategies, vArmour simplifies security with a three-pronged approach: auto-discovery, policy computation, and enforcement.

Mon, 8th Oct 2018

Cognizant launches Secure AI Services for enterprises
IT services

Cognizant launches Secure AI Services for enterprises

Cognizant rolls out Secure AI Services for enterprises, targeting AI security, governance and compliance for agentic systems in regulated sectors.

Yesterday

Rapid7 joins OpenAI cyber programme to speed defence
Digital Transformation

Rapid7 joins OpenAI cyber programme to speed defence

Rapid7 says its tie-up with OpenAI will help security teams speed up vulnerability detection, triage and remediation in a machine-speed threat era.

Yesterday

Synack launches Sara AI Pentesting for wider coverage
Data Protection

Synack launches Sara AI Pentesting for wider coverage

Synack rolls out Sara AI Pentesting to widen cyber coverage, pairing autonomous reconnaissance with human validation across its PTaaS platform.

Yesterday

Malicious OpenClaw skill spreads Remcos RAT & GhostLoader
SmartPhones

Malicious OpenClaw skill spreads Remcos RAT & GhostLoader

Zscaler warns a malicious OpenClaw skill is being used to spread Remcos RAT and GhostLoader via AI agent workflows and developer setups.

Yesterday

AI inference becomes core operational workload in firms
Business Continuity

AI inference becomes core operational workload in firms

AI inference is now a core business workload as F5 finds 78% of firms run their own infrastructure and 93% operate across multiple clouds.

2 days ago

Vega spots Weaver E-cology attacks within days of patch
Threat intelligence

Vega spots Weaver E-cology attacks within days of patch

Vega says attackers began exploiting a critical Weaver E-cology remote code execution flaw within five days of the vendor patch, with no lasting foothold.

4 days ago

Saiga phishing kit returns to bypass multifactor auth
QR code

Saiga phishing kit returns to bypass multifactor auth

Barracuda spots Saiga 2FA phishing kit revival as attackers use dynamic pages and cookie theft to sidestep multifactor authentication.

4 days ago

Kamiwaza launches AI platform for regulated sectors
Government

Kamiwaza launches AI platform for regulated sectors

Kamiwaza AI debuts version 1.0 platform for healthcare, banking and government users, promising governed access and hardened infrastructure.

5 days ago

Chainguard launches compliant EKS add-ons in AWS Marketplace
Public Sector

Chainguard launches compliant EKS add-ons in AWS Marketplace

Chainguard brings compliant EKS add-ons to AWS Marketplace, giving regulated organisations FIPS 140-3 validated Kubernetes components with zero known CVEs.

5 days ago

Tenable finds GitHub workflow flaw in Microsoft repo
DevOps

Tenable finds GitHub workflow flaw in Microsoft repo

Tenable flags GitHub workflow flaw in Microsoft's Windows-driver-samples repo that could let attackers run code and reach secrets.

5 days ago

Cloudflare warns of AI code review prompt injection
Virtual Private Networks

Cloudflare warns of AI code review prompt injection

Cloudflare says indirect prompt injection can fool AI code reviewers, with malicious scripts slipping past models when buried in large files and comment noise.

5 days ago

Qilin drives 43% rise in ransomware attacks
Email Security

Qilin drives 43% rise in ransomware attacks

Qilin-linked ransomware attacks jumped 43% in March, NCC Group says, as AI-fuelled deception and software flaws widen the threat picture.

Last week

OpenObserve raises USD $10 million for Observability 3.0
Network Infrastructure

OpenObserve raises USD $10 million for Observability 3.0

OpenObserve wins USD $10 million backing to expand its Observability 3.0 platform, adding AI SRE and LLM monitoring for enterprise customers.

Last week

Intruder launches AI pentesting for faster validation
DevOps

Intruder launches AI pentesting for faster validation

Intruder's new AI Pentesting tool aims to validate scanner findings in minutes, easing pressure on security teams facing faster-moving threats.

Last week

Keeper Security launches Agent Kit for AI coding agents
Virtualisation

Keeper Security launches Agent Kit for AI coding agents

Keeper Security launches Agent Kit to let AI coding assistants handle secrets and admin tasks without exposing credentials in chat logs.

Last week

Job Moves