Category: Mix

What I Learned Watching All 44 AppSec Cali 2019 Talks
04
Jul
2023

What I Learned Watching All 44 AppSec Cali 2019 Talks

What I Learned Watching All 44 AppSec Cali 2019 Talks OWASP AppSec California is one of my favorite security conferences:…

[tl;dr sec] #186 - Enterprise Purple Teaming, Cloud CTFs, Code Review with LLMs
04
Jul
2023

[tl;dr sec] #186 – Enterprise Purple Teaming, Cloud CTFs, Code Review with LLMs

I hope you’ve been doing well! New Platform, Who Dis? 👋  Hello and welcome to the first edition of tl;dr…

[tl;dr sec] #187 - AWS Pentest Methodology, Destroyed by Breach, Awesome LLM Cybersecurity Tools
04
Jul
2023

[tl;dr sec] #187 – AWS Pentest Methodology, Destroyed by Breach, Awesome LLM Cybersecurity Tools

I hope you’ve been doing well! 💪 Bro-ing Out This week I’m visiting by brother, who has kindly offered to…

[tl;dr sec] #188 - Security Interview Questions, Secret Scanning Tools, PentestGPT
04
Jul
2023

[tl;dr sec] #188 – Security Interview Questions, Secret Scanning Tools, PentestGPT

I hope you’ve been doing well! The “Full Utah” Experience Last weekend I got to hang out with my friend…

Cache Me If You Can: Messing with Web Caching
03
Jul
2023

Cache Me If You Can: Messing with Web Caching

In this talk, Louis covers 3 web cache related attacks: cache deception, edge side includes, and cache poisoning. Note: this…

Patch Diffing CVE-2023-28121 to Compromise a WooCommerce – RCE Security
03
Jul
2023

Patch Diffing CVE-2023-28121 to Compromise a WooCommerce – RCE Security

Back in March 2023, I noticed an interesting security advisory that was published by Wordfence about a critical “Authentication Bypass…

We want to check out your BChecks ... | Blog
03
Jul
2023

We want to check out your BChecks … | Blog

Emma Stocks | 03 July 2023 at 14:54 UTC Want to create customized scans without the hassle of learning advanced…

Patch Diffing Progress MOVEIt Transfer RCE (CVE-2023-34362) – Assetnote
30
Jun
2023

Citrix Gateway Open Redirect and XSS (CVE-2023-24488) – Assetnote

Summary URL query parameters are not adequately sanitised before they are placed into an HTTP Location header. An attacker can…

Patch Diffing Progress MOVEIt Transfer RCE (CVE-2023-34362) – Assetnote
30
Jun
2023

Reversing Citrix Gateway for XSS – Assetnote

One of the targets we looked at late last year was Citrix Gateway. Citrix Gateway is another of these “all-in-one”…

BChecks: Houston, we have a solution! | Blog
29
Jun
2023

BChecks: Houston, we have a solution! | Blog

Ollie Whitehouse | 29 June 2023 at 12:46 UTC Scripted scan checks in Burp Suite Professional are now a thing…

Major improvements to integrations - Detectify Blog
29
Jun
2023

Major improvements to integrations – Detectify Blog

Customizable integrations for today’s security team  Resolving vulnerabilities quickly depends on several factors, not least how effectively security and product…

Maximizing Performance with Wallarm Filtering Nodes in Amazon's Global Infrastructure
28
Jun
2023

Maximizing Performance with Wallarm Filtering Nodes in Amazon’s Global Infrastructure

Introduction In today’s digital landscape, ensuring the security and performance of web applications is paramount. To achieve optimal protection against…