Blog

AppSec Blog

Web Security

AI won’t kill AppSec – it will clarify what matters most

Web Security

Phishing by Open Graph Protocol

Web Security

Remote Hardware Takeover via Vulnerable Admin Software

Web Security

Cross Site Cookie Manipulation

Web Security

CVSS: Characterizing and Scoring Vulnerabilities

Web Security

Acquiring Data with CSS Selectors and Javascript on Time Based Attacks

Web Security

Why Framework Choice Matters in Web Application Security

Web Security

Using Session Puzzling to Bypass Two-Factor Authentication

Web Security

DNSFS: Is it possible to use DNS as a file system?