Meeting NIST API Security Guidelines with Wallarm
On March 25, 2025, NIST released the initial public draft of NIST SP 800-228, “Guidelines for API Protection for Cloud-Native Systems.” The document provides a…
On March 25, 2025, NIST released the initial public draft of NIST SP 800-228, “Guidelines for API Protection for Cloud-Native Systems.” The document provides a…
Image from weber.edu As I sit here at my allergist waiting on the all-clear after my shots, I’m thinking about something that’s been bothering me…
Tom Ryder | 10 April 2025 at 14:33 UTC When we wrapped up our biggest-ever webinar, The Future of AppSec: PortSwigger’s Vision, the conversation was…
Earlier today @mubix (Twitter) asked: Here’s my response: SQL Injection is like a telephone operator who has to phonetically relay verbal speech between two people…
This might be obvious to those most familiar with CSRF and Clickjacking, but for those just getting a handle on it, here’s a short explanation…
It’s not that their logical arguments are slightly more emotional than democratic logical arguments; they’re actually purposely avoiding logic altogether. Emotion is simply far more…
Yeah, that Notepad. It has a feature that few know about, and I’m not talking about word wrap. You can actually use it as a…
Many, especially in the blogsphere, are fond of saying, “This country is becoming fascist.” Or, “We’re on a path to fascism.” That sounds cool, and…
Every year, the number of vulnerabilities discovered and recorded increases. The sheer volume of vulnerabilities makes it impractical for organizations to patch everything, which is…
There is much debate in the information security world regarding the proper definition of security. I have seen dozens of definitions over the years, but…
When debating someone who believes in the fundamental components of the Christian narrative, i.e. the choice by man to eat the apple, the fall, original…
In late 2023, we’ve discovered and coordinated a quite interesting vulnerability affecting the Emarsys SDK for Android versions 3.6.1 and below with the respective vendor,…