Application & Platform Security
Top Stories
-
Tip
19 Aug 2026
How IT can support file-level encryption on managed iPhones
Learn what Apple's built-in iOS file encryption delivers by default, where the gaps exist for corporate data and what steps IT teams can take in mixed-OS and BYOD environments. Continue Reading
By- Andrew Froehlich, West Gate Networks
-
News
18 Aug 2026
AI agent security must move beyond human-in-the-loop, experts say
Human-in-the-loop can't scale with AI agents. Security leaders at Black Hat explained action-driven approaches for managing agentic ecosystems. Continue Reading
By- Sharon Shea, Executive Editor
-
Tip
31 Dec 2013
Alternatives to RESTful API for accessing object storage
This tip examines other options for connecting to object storage when an application isn't compatible with the RESTful API. Continue Reading
By- Marc Staimer, Dragon Slayer Consulting
-
Tip
31 May 2013
Amazon S3 encryption overview: How to secure data in the Amazon cloud
Learn details for employing Amazon S3 encryption features. Expert Dave Shackleford compares S3 encryption to other cloud provider offerings. Continue Reading
By- Dave Shackleford, Voodoo Security
-
Tip
11 Mar 2011
Securing a multi-tenant environment
Learn some of the key elements for secure multi-tenancy. Continue Reading
-
Answer
22 Sep 2009
How to prevent ActiveX security risks
Application expert Michael Cobb explains why ActiveX security relies entirely on human judgment. Continue Reading
By -
Answer
26 May 2009
Comparing an application proxy firewall and a gateway server firewall
There are many types of firewalls in use in today's enterprises, so it's easy to get confused about the functions of each. In this expert response, learn the difference between a proxy server firewall and a gateway server firewall. Continue Reading
By- Mike Chapple, University of Notre Dame
-
Answer
11 Feb 2009
How does a Web server model differ from an application server model?
A Web server model and an application server model share many similarities but require different defense methods. Each model, for example, calls for distinct placement of application servers. Continue Reading
By -
Tip
11 Oct 2007
Preparing for uniform resource identifier (URI) exploits
URIs have always been a user-friendly way to recognize and access Web resources. By crafting malicious URLs and manipulating protocol handlers, however, attackers have devised new attacks that take advantage of the URI's locator functionality. Web security expert Michael Cobb explains how the identifier exploits may start a fresh round of problems for developers and users alike. Continue Reading
By -
Answer
31 Jul 2007
How does SSL 'sit' between the network layer and application layer?
SSL is neither a network layer protocol nor an application layer protocol. In this SearchSecurity.com Q&A, Michael Cobb explains how SSL "sits" between both layers. Continue Reading
By -
Answer
31 May 2007
What are the drawbacks to application firewalls?
Application-layer firewalls examine ingoing and outgoing traffic more carefully than traditional packet-filtering firewalls, so why are some holding back on deployment? In this SearchSecurity.com Q&A, Michael Cobb reveals some cost and performance issues. Continue Reading
By