Remote code execution in Elixir-based Paginator
08
Mar
2023

Remote code execution in Elixir-based Paginator

Intro In August of this year I found a remote code execution vulnerability in the Elixir-based Paginator open-source project from…

Identifying Possible SSRF/LFI Insertion Points – allysonomalley.com
08
Mar
2023

Identifying Possible SSRF/LFI Insertion Points – allysonomalley.com

I’ve been very busy these past few months, leaving little time to hack. I’m very glad to be back at…

08
Mar
2023

Chapter Chapter 9 Good Habits – Alice and Bob Learn Application Security

Questions to be answered: 1. What are some of the risks of technical debt? 2. Should you post private information…

08
Mar
2023

Practical Security Recommendations for Start-ups with Limited Budgets

Hi, my name is Alex, I’ve been an IT security professional since 2007 and I’ve recently entered the start-up world…

Exploiting a Blind XSS using Burp Suite
08
Mar
2023

Exploiting a Blind XSS using Burp Suite

Exploiting a Blind XSS using Burp Suite Last weekend, I participated to the qualification phase for the “Nuit du Hack…

08
Mar
2023

Back to blogging?

I noticed that I didn’t blog for nearly two years :-/ Source link

08
Mar
2023

Salesforce to add ChatGPT to Slack – Strategy – Software

Salesforce is working with ChatGPT creator OpenAI to add the chatbot sensation to its collaboration software Slack, as well as…

Intruder and CSRF-protected form, without macros
08
Mar
2023

Intruder and CSRF-protected form, without macros

Intruder and CSRF-protected form, without macros In these days, CSRF tokens are more and more prevalent in Web applications. As…

08
Mar
2023

A recap of the Q&A session on Twitter

A recap of the Q&A session on Twitter [This article was originally posted in June 2020. It disappeared from the…

NSA offers tips to safeguard home networks from cyber attacks
08
Mar
2023

NSA offers tips to safeguard home networks from cyber attacks

National Security Agency (NSA) of the United States has issued some tips to safeguard home networks from cyber attacks and…

08
Mar
2023

India’s HDB Financial Services flags third-party data breach – Strategy – Security

HDB Financial Services, the non-bank lending unit of India’s top private lender HDFC Bank, has disclosed a data breach at…

LastPass Massive Hack Tied to Engineer Failure to Update Plex on Home Computer
08
Mar
2023

LastPass Massive Hack Tied to Engineer Failure

One of LastPass’s engineer neglected to update Plex on their personal computer, which led to the company’s significant breach. Plex…