Category: Mix

NIST Overhauls “Security and Privacy Controls” and Emphasizes VDP as a Best Practice
03
May
2023

NIST Overhauls “Security and Privacy Controls” and Emphasizes VDP as a Best Practice

Back in 2005, the Computer Security Resource Center (CRSC) published NIST 800-53: the “Security and Privacy Controls for Information Systems…

Detectify security updates for 10 January
03
May
2023

Detectify security updates for 10 January

For continuous coverage, we push out major Detectify security updates every two weeks, keeping our tool up-to-date with new findings,…

HackerOne is Excited to Launch Triage Ratings for Customers and Hackers
03
May
2023

HackerOne is Excited to Launch Triage Ratings for Customers and Hackers

For customers and hackers, the triage experience is central to hacker-powered security. Our triagers consist of a globally distributed team…

What is server side request forgery (SSRF)?
03
May
2023

What is server side request forgery (SSRF)?

Update: SSRF has been nominated in the new OWASP Top 10 of 2021. The list is currently pending peer reviews,…

US Government Mandates Vulnerability Disclosure for IoT
03
May
2023

US Government Mandates Vulnerability Disclosure for IoT

This year has seen a rapid acceleration in the American government’s efforts to secure federal and state cyber infrastructure. This…

Cybersecurity on a budget
03
May
2023

8 ways to create better cybersecurity awareness with a limited budget

Not all cybersecurity budgets are made equal, and for some that means having too many or too few tools. For…

Announcing the HackerOne Brand Ambassadors
03
May
2023

Announcing the HackerOne Brand Ambassadors

HackerOne Brand Ambassadors are leaders who have a passion to bring the community together in their local city or region….

Detectify security updates for 23 January
03
May
2023

Detectify security updates for 23 January

For continuous coverage, we push out major Detectify security updates every two weeks, keeping our tool up-to-date with new findings,…

No. 380 - LLM-Mind-Reading, Automated War, Rusty Sudo, Eliezer Bitterness Theory...
03
May
2023

No. 380 – LLM-Mind-Reading, Automated War, Rusty Sudo, Eliezer Bitterness Theory…

  Happy Conflu week, Well, I got sick (again) from RSA. The swag at these cons continues to decline. Still…

HackerOne Joins AWS Marketplace as Cloud Vulnerabilities Rise
03
May
2023

HackerOne Joins AWS Marketplace as Cloud Vulnerabilities Rise

Addressing security risks at scale is more important than ever. With a global pandemic accelerating digital transformations, organizations are shipping…

Eray Mitrani: Stumbling upon a new way to exploit authorization bypass in Jira
02
May
2023

Eray Mitrani: Stumbling upon a new way to exploit authorization bypass in Jira

Eray Mitrani works for Nokia Deepfield where they are providing network analytics and DDoS-protections. He is also a security researcher…

VDPs are at the Heart of the Australian Cyber Security Centre’s Recommendations
02
May
2023

VDPs are at the Heart of the Australian Cyber Security Centre’s Recommendations

2020 has been an important year for VDP standardization worldwide. Earlier in the year, the U.S. saw the release of…