The Ultimate Guide to Application Security
A curated UK edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.
What to know about Application Security
Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.
Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.
Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.
UK Application Security News
Regional stories with direct local relevance
Ethiack says vulnerabilities jumped 106% in a year
Exploited software flaws are now overtaking stolen passwords as the main breach route, sharpening pressure on security teams to patch faster.
Chainguard launches scanner to block npm malware greyware
The tool has already blocked more than 52,000 risky npm packages as supply chain attacks continue to hit software teams.
Cequence backs behaviour-based zero trust for AI agents
Runtime behaviour, not login checks, is now seen as the key control as businesses put AI agents into live systems and data.
Akamai launches AI agent traffic security framework
Businesses will be able to distinguish trusted AI shoppers from malicious bots as automated requests surge across retail and publishing sites.
Zimperium signs UK distribution deal with ABC Distribution
The deal broadens access to mobile security tools as UK firms face rising attacks via smartphones, apps, QR codes and messaging platforms.
Zimperium signs UK distribution deal with ABC Distribution
UK businesses face more mobile phishing and fraud as Zimperium widens access to its defences through ABC Distribution.
Analyst Insights
Research and market analysis connected to Application Security
Cequence posts record quarter on agentic AI security
Averlon launches Precog to block exploitable risks
Salt Code enforces security policies in AI coding tools
Software Improvement Group named Gartner leader on debt
The Mythos moment: Why 'unknown exposure' is becoming the biggest cyber risk of 2026
Featured News
Humanoid robots, 0-day defence among Info-Tech trends for '27
Agentic AI, zero-day surge, sovereign cloud, and humanoid robots will define IT strategy in 2027, Info-Tech Research Group warns.
Exabeam: Ruthless efficiency can make agentic AI malicious
Behavioural analytics is becoming essential as AI agents can pursue tasks so efficiently that they may cause damage without any malicious intent.
Check Point Technologies: On vigilance, Mythos and beyond
AI-driven vulnerability scanning is forcing firms to rethink complacency as Check Point says existing defences still help against Mythos.
Exclusive: Reco COO on securing the AI inside your SaaS stack
Reco COO Zoe Hillenmeyer says enterprises typically underestimate their AI agent exposure by a factor of ten and that gap is widening.
Google Cloud CEO sets out enterprise AI agent plan
Enterprises will get one place to build, govern and run AI agents, as Google Cloud expands Gemini Enterprise across models, data and security.
'Human Risk' takes centre stage - Mimecast CEO
Mimecast chief warns human risk is now cybersecurity's 'eighth layer' as malicious insiders overtake negligence in Australian attacks.
UiPath Accelerates AI in Software Development and Testing
UiPath is pushing AI deeper into software testing, promising autonomous agents that transform quality assurance and developers' roles.
Expert Columns
Why ERP is not just another platform you can rebuild with AI code
As agentic development accelerates, workflow auditability becomes a bottleneck
The silent vulnerability of the 'Heart of Europe': Why Belgian SMEs are falling behind in software security
Cybersecurity has a speed problem
The evolving role of the CSO: From technical guardian to business strategist
Leading security in the AI era: Why CISOs must secure AI while using AI to secure the enterprise
Secure by default: Moving beyond secure by design
Why the next endpoint and SASE disruption will not come from a security vendor
The security challenges in AI-assisted software development
AI surge exposes cloud security gaps, report warns
Interviews
Interviews and video coverage from the networkRecent Application Security News
e2e-assure & A&O Corsaire seal UK cyber partnership
UK regulated sectors will get a single evidence trail from testing to live monitoring, reducing audit friction and supply chain risk.
The silent vulnerability of the 'Heart of Europe': Why Belgian SMEs are falling behind in software security
Belgian software SMEs risk losing B2B contracts as new EU rules expose weak threat modelling and scant security training, a PXL study says.
DataDome launches waiting room to block bot traffic
The new system aims to stop automated agents from edging out genuine shoppers during peak ticketing and retail sales, amid UK regulatory scrutiny.
The Mythos moment: Why 'unknown exposure' is becoming the biggest cyber risk of 2026
Security teams face a shrinking window to spot and fix flaws as AI models like Mythos find exposures in minutes, not days.
Cybersecurity has a speed problem
Vulnerability exploitation has collapsed from years to hours, leaving organisations racing to fix exposed systems before attackers do.
Okta finds AI agent governance lags enterprise adoption
Most firms are deploying AI agents without proper oversight, leaving non-human identities exposed as security teams race to catch up.
AI drives demand for cybersecurity compliance experts
Businesses are seeking more advisers as AI and tighter rules make cybersecurity compliance the most in-demand skillset on Malt’s platform.
Celerity acquires Ranger4 to boost automation & AI
The deal strengthens Celerity's FinOps and secrets management offer as more businesses seek fewer suppliers for hybrid cloud control.
Anthropic AI's Mythos triggers warnings over cyber risk
Security chiefs say unauthorised access to Anthropic AI's Mythos model shows generative tools could speed phishing, scanning and exploit discovery.
From vulnerability management to AI-powered exposure assessment: building a modern CTEM program
Security teams are turning to continuous, risk-based assessment as fragmented tools leave them unable to see which exposures matter most.
Distology signs Snyk distribution deal across Europe
Growing demand for earlier code security has prompted Distology to add Snyk’s application and AI tools to its UK, DACH and Benelux channel offer.
Gartner names Tenable the company to beat in AI exposure
Gartner’s endorsement could boost Tenable’s pitch to security teams seeking better AI risk prioritisation and wider attack-surface visibility.
Netacea launches Trust Layer for AI agent web traffic
Netacea has unveiled Trust Layer, a server-side tool to classify and control surging AI agent and bot traffic before it hits apps.
Open source use rises as firms shun vendor lock-in
Concern over vendor lock-in is driving a global surge in open source adoption, with European organisations leading the shift to digital autonomy.
Backslash adds cross-tool governance for AI coding Skills
Backslash adds cross-tool governance to discover, vet and monitor 'Skills' powering AI coding assistants like Cursor, Claude Code and Copilot.
Ditto unveils cryptographic digital ID platform for EU
Ditto launches cryptographic digital ID platform for EU, promising reusable wallet-based identities and less personal data exposure.
Infosecurity Europe 2026 unveils first keynote lineup
Infosecurity Europe 2026 names first keynotes on ransomware, cloud, AI and post-quantum risk, plus leadership insights from elite fields.
Cloudhouse unveils free tool to price IT outage costs
Cloudhouse launches free calculator to put a price on IT outages, as research pegs average unplanned downtime at over USD $14,000 a minute.
AI-built prototypes leave firms struggling to scale
AI-built prototypes are flooding firms with quick wins, but many stumble as fragile, non-compliant code fails when moved into production.
Energy boards warned of AI risks, gaps in oversight
Energy boards warned AI ambitions are racing ahead of software quality and security, leaving critical grids exposed and oversight lagging.