eCommerceNews Canada - Technology news for digital commerce decision-makers
Canada
Canadian Edition · 2026

The Ultimate Guide to Application Security

A curated Canadian edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.

What to know about Application Security

Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.

Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.

Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.

Canadian Application Security News

Regional stories with direct local relevance

Analyst Insights

Research and market analysis connected to Application Security

Expert Columns

Interviews

Interviews and video coverage from the network

Recent Application Security News

Flux raises USD $5 million to track AI code output
Project Management

Flux raises USD $5 million to track AI code output

The new capital will help the Boston startup expand sales and engineering as firms seek clearer oversight of AI-assisted coding and software risk.

Yesterday

Field Effect launches AI detection & response tool
Digital Transformation

Field Effect launches AI detection & response tool

Businesses face growing shadow AI risks as Field Effect folds monitoring and controls into its managed detection and response platform.

2 days ago

GitLab unveils tools for governed agentic software delivery
Digital Transformation

GitLab unveils tools for governed agentic software delivery

Enterprises could cut agent coding costs and compliance risks as the new releases add server-side repository access, audit tools and spend controls.

2 days ago

NetRise launches discovery partner programme for security
Managed Security Services Provider

NetRise launches discovery partner programme for security

Customers will be able to buy software supply chain security with advisory and managed services as NetRise widens its route to market through partners.

3 days ago

Liquibase launches free CVE library for Community users
Software Updates

Liquibase launches free CVE library for Community users

Older Liquibase Community users can now check release-by-release vulnerabilities in a free public library covering Docker images and binaries.

3 days ago

Zscaler launches zero-trust tools to secure AI agents
Digital Transformation

Zscaler launches zero-trust tools to secure AI agents

Enterprises face new risks as autonomous software agents spread through systems faster than older security tools can track or control.

3 days ago

Zscaler expands Project AI-Guardian with tech partners
Managed Services

Zscaler expands Project AI-Guardian with tech partners

The wider partnership push aims to help enterprises control AI risk across cloud, identity and data systems as deployments move into production.

3 days ago

JFrog adds Claude Code plugin for security oversight
Supply Chain

JFrog adds Claude Code plugin for security oversight

Audit trails for AI-generated code could get easier as the plugin exposes packages, dependencies and provenance inside Claude Code.

3 days ago

Rubrik launches Agent Cloud for Claude code controls
Disaster Recovery

Rubrik launches Agent Cloud for Claude code controls

Security teams gain rollback and policy controls as autonomous Claude agents begin writing and deploying code at machine speed.

4 days ago

Fastly & Skyfire link AI agents to verified payments
Identity and Access Management

Fastly & Skyfire link AI agents to verified payments

Businesses could soon verify and charge AI agents in milliseconds at the network edge, as autonomous traffic becomes harder to trust or block.

4 days ago

GitLab launches managed Google Cloud offer for firms
Digital Transformation

GitLab launches managed Google Cloud offer for firms

Regulated firms can now run GitLab's DevSecOps platform on Google Cloud with partner management, tighter data residency controls and new Gemini models.

4 days ago

Stack Overflow launches beta product for AI coding agents
ICT sector

Stack Overflow launches beta product for AI coding agents

Developers using AI assistants may get a verified knowledge base to cut repeated errors, security flaws and duplicated debugging work.

4 days ago

Liquibase Secure adds AI governance for database changes
IT Department

Liquibase Secure adds AI governance for database changes

AI-written database changes can now be checked and traced before deployment, as Liquibase Secure 5.2 targets production risk and audit gaps.

4 days ago

Hugging Face Transformers flaw enabled remote code
Patching

Hugging Face Transformers flaw enabled remote code

Millions of downloads were exposed to silent code execution as a flaw in Hugging Face Transformers let malicious models run on load.

4 days ago

Datadog launches 100 AI tools for operations & security
Threat detection

Datadog launches 100 AI tools for operations & security

The rollout aims to help customers tame rising AI-driven complexity as Datadog adds autonomous monitoring, security and agent oversight tools.

4 days ago

CSC adds .brand domain security to CrowdStrike Marketplace
Managed Security Services Provider

CSC adds .brand domain security to CrowdStrike Marketplace

Customers can now access advice on branded web domains as phishing and impersonation risks push more firms to tighten online controls.

5 days ago

Wallarm launches flat-rate AWS infrastructure discovery
Digital Transformation

Wallarm launches flat-rate AWS infrastructure discovery

Cloud security teams can now map AWS estates without metered costs rising as visibility improves, easing budget pressure on larger organisations.

5 days ago

Synack expands CREST pathways with two new certifications
Risk & Compliance

Synack expands CREST pathways with two new certifications

Security buyers get a stronger benchmark as CREST-certified testers gain faster access to Synack's vetted red team for client engagements.

5 days ago

Broadcom expands Spring security with faster patches
Patching

Broadcom expands Spring security with faster patches

Java developers using Spring will get faster fixes as Broadcom backs day-zero patch access and more secure dependency builds for paying customers.

5 days ago

BeyondTrust joins Anthropic's Project Glasswing push
Privileged Access Management

BeyondTrust joins Anthropic's Project Glasswing push

The partnership could help uncover critical flaws faster as AI-driven attacks and machine identities raise the stakes for infrastructure security.

6 days ago