-

New Application Attack Matrix Establishes Industry Standard for Protecting Modern Cloud Applications

Collaboration with world-renowned cyber leaders yields a timely framework for how attackers target modern enterprise applications

TEL AVIV, Israel--(BUSINESS WIRE)--Oligo Security, the runtime security company, today announced the launch of the Application Attack Matrix, a standardized framework to categorize tactics, techniques, and procedures (TTPs) for application-layer attacks. Developed in collaboration with leading experts in threat intelligence and application security, the matrix was shaped with input from contributors from companies like AWS, Google Cloud (Mandiant), Intel, Microsoft, Salesforce, and other organizations at the forefront of cybersecurity. It is designed to help security teams, developers, and threat hunters better understand how attackers target modern applications, build more effective defenses, and bridge the gap between application security and broader security operations.

New Application Attack Matrix establishes industry standard for protecting modern cloud applications

Share

The sharp rise in software vulnerabilities year over year has created major challenges for security teams working to protect applications – even at small scales. Adversaries have taken advantage of this surge, with vulnerability exploits overtaking phishing as an initial attack vector1. Vulnerability exploits have also remained one of the top methods used by attackers to gain access to organizations for the past 5 years in Mandiant investigations2, with many critical vulnerabilities exploited within 48 hours of disclosure3.

“Attackers target applications more today than any point in history, and it is time for the industry to stop focusing on treating post-exploit symptoms and get to the root cause: the initial exploit attempts that happen in the application layer,” said Gal Elbaz, co-founder and CTO, Oligo Security. “We started this framework to help defenders understand how applications are targeted so that the industry can act together to bolster defenses. We invite anyone who wants to contribute to join us in making this a vendor agnostic, collaborative effort that hopes to create a standard methodology for protecting against application attacks.”

Application-layer attacks target applications in production environments, including web and server-side apps, and often bypass traditional detection systems to exploit vulnerabilities deep within the software stack. Current security solutions and frameworks are primarily focused on infrastructure or workload-level tactics and techniques, such as cloud and mobile technologies, networks, operating systems and endpoints. This leaves a gap in standardization for defending against application-layer attacks that increasingly stem from vulnerability exploitation.

To close this gap, the Application Attack Matrix focuses on:

  • Application Attack Surface: Categorizing threats specific to production environments, including web and server-side applications.
  • Adversary Tactics and Techniques: Documenting the tactics attackers use to exploit business logic, inject malicious code, abuse authentication mechanisms, and bypass application-layer defenses.
  • Response and Mitigation: Providing structured guidance on detection, mitigation, and incident response tailored to application security.
  • Integration into Security Operations: Enabling security operations and threat intelligence teams to use the framework in conjunction with existing attack matrices to create holistic defense strategies.

“The level of threat activity originating in the application layer makes an application-focused attack matrix critical,” said Jaime Blasco, Ballistic Ventures Threat Intelligence Advisor and Creator of Open Threat Exchange. “Applications have become beyond essential to business operations, and organizations as a whole are struggling with inconsistent security strategies, incomplete threat coverage, and ineffective incident response for modern applications. This initiative fills an important gap, empowering organizations to defend against the next-generation of threats that increasingly originate and stay in the application layer.”

More information:

Sources:

  1. https://www.verizon.com/business/resources/reports/dbir/
  2. https://cloud.google.com/security/resources/m-trends
  3. https://vulncheck.com/blog/2024-exploitation-trends

About Oligo Security
Oligo protects applications against attackers with the industry’s leading runtime security platform. With deep application inspection through real-time monitoring and context-aware analysis, Oligo enables customers to instantly see all of the vulnerabilities in their environments, identify those that matter most, and stop application-based attacks in their tracks. https://www.oligo.security/

Contacts

Media Contact
Justin McCann
press@oligosecurity.io

Oligo Security


Release Versions

Contacts

Media Contact
Justin McCann
press@oligosecurity.io

More News From Oligo Security

Oligo Extends Runtime Protection Platform to Protect AI Apps, Models, and Agents

TEL AVIV, Israel--(BUSINESS WIRE)--Oligo Security, the runtime security company, today announced groundbreaking new capabilities to protect the broadest spectrum of AI deployments, including AI applications, Large Language Models (LLMs), and agentic AI. The new platform modules address the largest blind spot in AI security today: AI technologies in production environments that are largely ungoverned, unmonitored, and operating in real time. “AI is moving into production faster than it can be se...

Oligo Security Named to the Fortune Cyber 60 List for Second Consecutive Year

TEL AVIV, Israel--(BUSINESS WIRE)--Oligo Security, the runtime security company, today announced that it has been named to the 2026 Fortune Cyber 60, a list of the most significant and fastest-growing venture-backed cybersecurity companies. This marks the second consecutive year that Oligo has been recognized, underscoring the company’s leadership in transforming cloud and application security through real-time, runtime protection. Curated by Fortune in collaboration with Lightspeed Venture Par...

Oligo Security Recognized as a 2025 SINET16 Innovator for Revolutionizing Runtime Security

TEL AVIV, Israel--(BUSINESS WIRE)--Oligo Security, the runtime security company, today announced that it has been named a 2025 SINET16 Innovator Award winner. The SINET16 award program identifies the most innovative, compelling, emerging companies and technologies that address cybersecurity threats and vulnerabilities. SINET16 winners were selected from a pool of 193 applications from 19 countries this year. Applications are evaluated by the SINET Judging Committee composed of 112 security prof...
Back to Newsroom