Author: Cybernoz

How does Pentesting fit into your overall security strategy?
06
May
2023

How does Pentesting fit into your overall security strategy?

Digital transformation has proven that every business is now a software business. In fact, using digital technology to create new…

OWASP TOP 10: Broken Access Control
06
May
2023

OWASP TOP 10: Broken Access Control

Update: Broken Access Control is proposed to be number one on the new OWASP Top 10 list of 2021. The…

Scaling & Prioritizing Product Security with Zendesk
06
May
2023

Scaling & Prioritizing Product Security with Zendesk

Zendesk, Inc. (NYSE: ZEN) is one of the fastest-growing customer support platforms in the world. With over 150,000 customer accounts…

Ex-Uber CSO Avoids Prison Time
06
May
2023

Ex-Uber CSO Avoids Prison Time for Concealing Data Breach

On Wednesday, an ex-Uber CSO was found guilty of federal charges related to payments he secretly approved to hackers who…

OWASP TOP 10: XXE - Detectify Blog
06
May
2023

OWASP TOP 10: XXE – Detectify Blog

Update: The new OWASP Top 10 of 2021 has been proposed, and the new list has moved XXE into the…

Twitter breaking apart
06
May
2023

Twitter says ‘security incident’ exposed private Circle tweets

Twitter disclosed that a ‘security incident’ caused private tweets sent to Twitter Circles to show publicly to users outside of…

PaperCut
06
May
2023

New PaperCut RCE exploit created that bypasses existing detections

A new proof-of-concept (PoC) exploit for an actively exploited PaperCut vulnerability was released that bypasses all known detection rules. The PaperCut…

Juneteenth: HackerOne’s Day for Action
06
May
2023

Juneteenth: HackerOne’s Day for Action

Starting this Friday, June 19th will become HackerOne’s annual Day for Action. For Black Americans and communities of color around…

XSS Attacks
06
May
2023

Over 2 Million WordPress Websites Exposed to XSS Attacks

Patchstack security researchers recently warned that ‘Advanced Custom Fields’ and ‘Advanced Custom Fields Pro’ WordPress plugins are at risk of…

Drupalgeddon 2.0 (CVE-2018-7600) - Detectify Blog
06
May
2023

Drupalgeddon 2.0 (CVE-2018-7600) – Detectify Blog

On March 28th, Drupal released a security update that fixes a critical remote code execution vulnerability nicknamed Drupalgeddon 2.0. Detectify…

Russian ‘Ghost Ships’ Identified Near the Nord Stream Blasts
06
May
2023

Russian ‘Ghost Ships’ Identified Near the Nord Stream Blasts

In December 2020, security giant Mandiant revealed it had been hacked. Its disclosure was the first public sign of the SolarWinds…

Announcing the PlayStation Bug Bounty Program
06
May
2023

Announcing the PlayStation Bug Bounty Program

This guest post is authored by Geoff Norton, Senior Director Software Engineering at PlayStation, and was originally published on PlayStation’s…