Category: Mix

Maximizing Performance with Wallarm Filtering Nodes in Amazon's Global Infrastructure
28
Jun
2023

Maximizing Performance with Wallarm Filtering Nodes in Amazon’s Global Infrastructure

Introduction In today’s digital landscape, ensuring the security and performance of web applications is paramount. To achieve optimal protection against…

Bug Bytes #205 - Live Hacking, AI Hacking and Helicopter Hacking
28
Jun
2023

Bug Bytes #205 – Live Hacking, AI Hacking and Helicopter Hacking

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by…

MSF Pivoting X SocksProxy
25
Jun
2023

MSF Pivoting X SocksProxy

[*] 최근에 MSF로 Pivoting 환경에서 테스팅이 필요한 경우가 있었습니다. 방법 자체는 어려운게 아니라 그냥 몸에 있는대로 진행하긴 했는데, 생각해보니 블로그에…

Introducing Integrated API Abuse Prevention to Combat Bad Bots
22
Jun
2023

Introducing Integrated API Abuse Prevention to Combat Bad Bots

In recent years there’s been a rise in “API Abuse” attacks, which includes detrimental automated behaviors such as malicious bots,…

Bug Bytes #204 – Everything You Missed From NahamCon
21
Jun
2023

Bug Bytes #204 – Everything You Missed From NahamCon

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by…

Keep it simple, Scanner | Blog
20
Jun
2023

Keep it simple, Scanner | Blog

Tom Shelton-Lefley | 20 June 2023 at 14:02 UTC There’s a running joke on the scanner development team; for the…

GCP ESPv2 Hit with Critical API Authorization Bypass CVE-2023-30845
19
Jun
2023

GCP ESPv2 Hit with Critical API Authorization Bypass CVE-2023-30845

This post delves into a very impactful JWT Authentication Bypass vulnerability (CVE-2023-30845) found in ESP-v2, an open-source service proxy that…

What You Need To Know About The MOVEit
16
Jun
2023

What You Need To Know About The MOVEit

The MOVEit Vulnerabilities and Latest Exploits. Impact On Governmental Agencies And Large Organizations Governmental agencies and large organizations around the…

Hackerone logo
15
Jun
2023

Grammarly CISO Suha Can Discusses the Impact of Preemptive Security with HackerOne

The allure of generative AI and the importance of the basics. While the advent of generative AI poses new challenges,…

OWASP APIsec Top-10 2023 Is Here | API Security Newsletter
15
Jun
2023

OWASP APIsec Top-10 2023 Is Here | API Security Newsletter

Welcome to our May API newsletter, recapping some of the events of last month. As the old proverb goes, April…

CVSS 4.0 Preview 살펴보기
14
Jun
2023

CVSS 4.0 Preview 살펴보기

CVSS(Common Vulnerability Scoring System)는 시스템, 소프트웨어의 취약성을 평가하기 위해 사용되는 취약성에 대한 스코어링 시스템입니다. Offensive Security 관련하여 현업에 있다면 익숙하지만…

Bug Bytes #203 – CVSS 4.0, MOVEIt and How CI/CD Pipelines Go Wrong
14
Jun
2023

Bug Bytes #203 – CVSS 4.0, MOVEIt and How CI/CD Pipelines Go Wrong

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by…