Category: Mix

Drupal RCE
02
May
2023

Detectify now checks for Drupal RCE (CVE-2019-6340)

On February 20th, Drupal released a security update that fixes a critical remote code execution vulnerability. Detectify scans your site…

What Years of AWS Hacking Tells Us About Building Secure Apps
02
May
2023

What Years of AWS Hacking Tells Us About Building Secure Apps

Imagine being part of an organization that has a security team that manages risks by saying “no” to change in…

Detectify security updates for 7 March
02
May
2023

Detectify security updates for 7 March

For continuous coverage, we push out major Detectify security updates every two weeks, keeping our tool up-to-date with new findings,…

LINE on Securing the Application Development Lifecycle with Bug Bounties
02
May
2023

LINE on Securing the Application Development Lifecycle with Bug Bounties

Based in Japan, LINE Corporation is dedicated to the mission of “Closing the Distance,” bringing together information, services and people….

Serverless vs Cloud vs On-prem
02
May
2023

Serverless vs Cloud vs On-prem

Server architecture can differ in a lot of ways, but the three main categories would be on-prem, cloud and serverless….

5 Learnings From A Conversation With OP Financial Group's CISO And @mrtuxracer
02
May
2023

5 Learnings From A Conversation With OP Financial Group’s CISO And @mrtuxracer

On 20 January, HackerOne’s CEO, Marten Mickos, sat down for a chat with European hacker, Julien Ahrens a.k.a @mrtuxracer, and…

Meet the Hacker: EdOverflow, motivated by community and knowledge sharing
02
May
2023

Meet the Hacker: EdOverflow, motivated by community and knowledge sharing

EdOverflow is known for contributing a bunch of stuff: active in the community, one of the people behind security.txt –…

Announcing The Hacker of The Hill
02
May
2023

Announcing The Hacker of The Hill

We are excited to announce that we have partnered with TryHackMe to bring you Hacker Of The Hill (HoTH) on…

What are the different types of XSS?
02
May
2023

What are the different types of XSS?

Cross-site scripting (XSS) is a common vulnerability that is carried out when an attacker injects malicious JavaScript into a website,…

2020 Hacker Community Year in Review
02
May
2023

2020 Hacker Community Year in Review

Hackers are no stranger to finding creative ways to overcome obstacles, and 2020 presented numerous challenges for them to conquer….

Detectify opens US office in Boston to accelerate growth
02
May
2023

Detectify opens US office in Boston to accelerate growth

Stockholm, Sweden & Boston, MA – Detectify, a Swedish domain and web application  security company, is launching its US operations…

Oracle Opera Pre-Auth RCE (CVE-2023-21932) – Assetnote
02
May
2023

Oracle Opera Pre-Auth RCE (CVE-2023-21932) – Assetnote

Summary An attacker can obtain the JNDI connection name through servlets that leak this information. Due to the weak hardcoded…