LiftVector Canada - News for Aviation operators and industry decision-makers
Canada
Canadian Edition · 2026

The Ultimate Guide to Application Security

A curated Canadian edition of IndustrialDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.

What to know about Application Security

Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.

Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.

Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.

Canadian Application Security News

Regional stories with direct local relevance

Analyst Insights

Research and market analysis connected to Application Security

Expert Columns

Interviews

Interviews and video coverage from the network

Recent Application Security News

Delinea joins Anthropic project to test identity security
Enterprise security

Delinea joins Anthropic project to test identity security

It could expose faults in software that governs access to sensitive systems, with no customer data included in the AI-led testing.

2 days ago

Mandiant warns of AI agents fuelling new attack risks
Software-as-a-Service

Mandiant warns of AI agents fuelling new attack risks

Autonomous systems are now creating fresh avenues for code theft, remote execution and runaway cloud spending, Mandiant says.

3 days ago

Tanium tests Anthropic AI for code vulnerabilities
Public Sector

Tanium tests Anthropic AI for code vulnerabilities

By probing its own production code, Tanium is aiming to catch flaws before attackers can exploit software used by thousands of organisations.

4 days ago

CrowdStrike links PhantomRaven malware to bug bounty hunter
Malware

CrowdStrike links PhantomRaven malware to bug bounty hunter

The stealer's use of typosquatted npm packages has raised fears that bug bounty channels are being abused to monetise stolen developer data.

4 days ago

Secure Code Warrior launches Citizen AI training programme
Education, Learning & Training

Secure Code Warrior launches Citizen AI training programme

With most firms using AI in daily work but few staff ready for it, the programme targets non-developers handling sensitive data and automations.

5 days ago

Rubrik launches Code Guardian & expands Anthropic ties
Data Protection

Rubrik launches Code Guardian & expands Anthropic ties

The private previews aim to help security teams spot exploitable code chains and connect AI agents to Rubrik's governance tools more safely.

5 days ago

AWS adds OpenAI's GPT-6 Astra to Bedrock for business
Data Protection

AWS adds OpenAI's GPT-6 Astra to Bedrock for business

Businesses can now run OpenAI's latest frontier model on AWS without managing infrastructure, as Bedrock gains access to GPT-6 Astra.

5 days ago

F5 launches AI security to monitor worker tool use
Data Protection

F5 launches AI security to monitor worker tool use

As staff hand more tasks to AI agents, firms need audit trails and policy controls to stop unauthorised access and risky data moves.

Last week

Google warns cyber attackers are moving to agentic AI
Malware

Google warns cyber attackers are moving to agentic AI

Attackers are compressing intrusions into hours, leaving defenders less time to spot and stop credential-harvesting campaigns.

Last week

Checkmarx joins Anthropic's Project Glasswing on defence
Threat intelligence

Checkmarx joins Anthropic's Project Glasswing on defence

The collaboration could help security teams spot flaws before attackers exploit them, as exploitations increasingly happen on or before disclosure.

Last week

HP patches three high-severity flaws in Easy Start
Software Updates

HP patches three high-severity flaws in Easy Start

Mac users face a higher risk of tampered printer installs after HP fixed three bugs in Easy Start, including a root-level file flaw.

This month

A-LIGN buys Pathfynder in cyber services expansion
Data Protection

A-LIGN buys Pathfynder in cyber services expansion

The deal gives A-LIGN customers direct access to penetration testing and red teaming as firms seek fewer vendors for cyber compliance and defence.

This month

Reco launches Browser Guard to curb shadow AI risks
Data Protection

Reco launches Browser Guard to curb shadow AI risks

Security teams can now block employees' unsanctioned AI use in browsers before prompts or agent actions expose sensitive data.

This month

F5 integrates AI Guardrails into MuleSoft Agent Fabric
Software-as-a-Service

F5 integrates AI Guardrails into MuleSoft Agent Fabric

Businesses using AI agents can now inspect prompts and responses inline, as F5's guardrails plug into MuleSoft's Agent Fabric.

This month

Cycode launches agentic code scanning & attack chaining
DevOps

Cycode launches agentic code scanning & attack chaining

Security teams could see fewer false positives and faster fixes as Cycode's new system blends rule-based checks with AI to trace attack paths.

This month

JFrog launches AI-era security tools for software supply
DevOps

JFrog launches AI-era security tools for software supply

As AI coding agents speed up development, JFrog is adding controls meant to keep governance, compliance and patching from lagging.

This month

Reco launches Browser Guard for enterprise AI security
Bring Your Own Device

Reco launches Browser Guard for enterprise AI security

Security teams now have to police shadow AI in browsers, where Reco says Browser Guard can block prompts, data leaks and rogue actions.

This month

AI-generated cyber attacks to hit firms soon, warn experts
Digital Literacy

AI-generated cyber attacks to hit firms soon, warn experts

Many firms lack the capacity to fix existing flaws fast enough, leaving them exposed as AI-generated attacks scale up, experts warn.

This month

Kobalt.io signs security partnerships across North America
Data Protection

Kobalt.io signs security partnerships across North America

Enterprise buyers and defence contractors will get a clearer route to certification as Kobalt.io broadens its North American security network.

This month

Cloudflare launches Adaptive Intelligence for bot attacks
Cloud Services

Cloudflare launches Adaptive Intelligence for bot attacks

Businesses facing a surge in automated abuse could see faster bot blocking as Cloudflare says its system learns from live traffic and updates continuously.

This month