SecurityBrief New Zealand - Technology news for CISOs & cybersecurity decision-makers
New Zealand
Kiwi Edition · 2026

The Ultimate Guide to Application Security

A curated Kiwi edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.

What to know about Application Security

Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.

Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.

Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.

Kiwi Application Security News

Regional stories with direct local relevance

Analyst Insights

Research and market analysis connected to Application Security

Expert Columns

Interviews

Interviews and video coverage from the network

Recent Application Security News

Snyk expands reach across NZ market with new structure and leadership roles
App development

Snyk expands reach across NZ market with new structure and leadership roles

Snyk is expanding its reach across the NZ market, aiming to further cement its place in the developer-focused security space.

Tue, 18th Jan 2022

Auldhouse significantly expands cybersecurity training offerings
DevSecOps

Auldhouse significantly expands cybersecurity training offerings

Auldhouse set to become one of New Zealand's leading cybersecurity training providers, gaining official rights to the world's top cybersecurity certifications.

Tue, 2nd Nov 2021

NZ financial firms bolster secure software development with Checkmarx
App development

NZ financial firms bolster secure software development with Checkmarx

Two major financial institutions in New Zealand have refreshed their application security measures with the help of security specialist Checkmarx.

Mon, 6th Jul 2020

Chillisoft to distribute Imperva security solutions
Breach Prevention

Chillisoft to distribute Imperva security solutions

Chillisoft adds Imperva to its cybersecurity portfolio, offering enterprise data security, web application, BOT protection, and CDN solutions.

Tue, 2nd Jun 2020

The three-pronged security approach to multi-cloud environments
Multi-cloud

The three-pronged security approach to multi-cloud environments

As enterprises adopt multi-cloud strategies, vArmour simplifies security with a three-pronged approach: auto-discovery, policy computation, and enforcement.

Mon, 8th Oct 2018

Sonatype flags 176 npm packages in dependency attack
Threat detection

Sonatype flags 176 npm packages in dependency attack

Developers using npm could have secrets exposed as 176 malicious packages were set up to hijack dependency resolution and run postinstall malware.

Yesterday

OpenClaw adds NVIDIA SkillSpector to ClawHub checks
Threat detection

OpenClaw adds NVIDIA SkillSpector to ClawHub checks

The registry is tightening checks after malicious uploads exposed a gap between declared skill purpose and actual behaviour.

Yesterday

New Relic touts Microsoft partnership as bookings rise
Digital Transformation

New Relic touts Microsoft partnership as bookings rise

Marketplace bookings through Microsoft rose by double digits as New Relic deepened integrations aimed at helping customers manage AI-era software risk.

Yesterday

Rubrik uses Anthropic Mythos to probe software flaws
IT Industry

Rubrik uses Anthropic Mythos to probe software flaws

Early access to Anthropic's Mythos in Australia is helping Rubrik scan its code for flaws before attackers can exploit them.

Yesterday

GitHub launches Copilot desktop app for agentic work
Partner Programmes

GitHub launches Copilot desktop app for agentic work

Developers can now manage multiple AI coding agents in one place as GitHub tests a desktop Copilot app with worktree automation and review tools.

Yesterday

HackerOne launches AI platform to close security gap
Security Operations Centres

HackerOne launches AI platform to close security gap

Rising vulnerability volumes are outpacing fix times, prompting HackerOne to roll out an AI system that feeds confirmed threats into developer tools.

Yesterday

Secure Code Warrior launches AI governance learning
Data Loss Prevention

Secure Code Warrior launches AI governance learning

Companies can now tie AI code-use risks to developer training, with Secure Code Warrior aiming to prove compliance at commit level.

3 days ago

Windows 11 sandbox flaw lets attackers escape with one click
Patching

Windows 11 sandbox flaw lets attackers escape with one click

Microsoft patched a CVE-2025-59199 flaw in October after researchers showed a single click could let low-integrity code escape Windows 11's sandbox.

3 days ago

DevOps platform vulnerabilities rise in 2025 report
Disaster Recovery

DevOps platform vulnerabilities rise in 2025 report

More than half of patched flaws in major DevOps tools were high or critical in 2025, putting software supply chains at greater risk.

3 days ago

IBM & Red Hat launch £5bn open-source security plan
Managed Security Services Provider

IBM & Red Hat launch £5bn open-source security plan

The move targets vulnerabilities in software used by large firms, as AI makes it easier to find and exploit flaws.

Last week

TrendAI deploys Claude Opus 4.8 for vulnerability hunts
Threat intelligence

TrendAI deploys Claude Opus 4.8 for vulnerability hunts

Security teams in Australia and New Zealand may soon triage flaws faster as TrendAI uses Claude Opus 4.8 to assess exploitability and impact.

Last week

RevEng.AI raises USD $15 million to secure software
Supply Chain

RevEng.AI raises USD $15 million to secure software

The funding will help firms spot hidden flaws and backdoors in compiled code as AI-generated software and supplier risk raise security concerns.

Last week

Google Cloud launches AI Threat Defence against attacks
Digital Transformation

Google Cloud launches AI Threat Defence against attacks

The new service aims to help firms keep pace as AI-powered criminals automate attacks faster than security teams can patch flaws.

Last week

CrowdStrike disrupts Glassworm botnet targeting developers
Threat intelligence

CrowdStrike disrupts Glassworm botnet targeting developers

Developers using open-source tools face heightened supply-chain risk after the botnet lost all four of its command channels.

Last week

Bugcrowd launches RL environments for AI security training
Skills shortage

Bugcrowd launches RL environments for AI security training

The platform aims to help AI developers move beyond benchmark tests, as models struggle to tackle real-world vulnerabilities safely and reliably.

Last week

Job Moves