unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
2023 OWASP Top-10 Series: API6:2023 Unrestricted Access to Sensitive Business Flows
Welcome to the 7th post in our weekly series on the new 2023 OWASP API Security Top-10 list,...
2023-9-2 21:15:0 | 阅读: 23 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
malicious
wallarm
attacker
2023 OWASP Top-10 Series: API5:2023 Broken Function Level Authorization
Welcome to the 6th post in our weekly series on the new 2023 OWASP API Security Top-10 list,...
2023-8-26 21:45:0 | 阅读: 35 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
wallarm
shouldn
zombie
API Abuse – Lessons from the Duolingo Data Scraping Attack
It’s been reported that 2.6 million user records sourced from the Duolingo app are for sale....
2023-8-26 00:50:40 | 阅读: 21 |
收藏
|
Wallarm Blog - lab.wallarm.com
duolingo
limiting
attacker
Act Now to Prepare for New NCUA Cyber Incident Reporting Requirements
We recently discussed the new SEC rule requiring all registered companies to report material...
2023-8-24 22:55:18 | 阅读: 21 |
收藏
|
Wallarm Blog - lab.wallarm.com
unions
ncua
federally
Take Care of Orphan APIs with Wallarm
The Wallarm API Discovery module has been further enhanced to e...
2023-8-22 04:15:0 | 阅读: 16 |
收藏
|
Wallarm Blog - lab.wallarm.com
orphan
wallarm
identify
unused
security
2023 OWASP Top-10 Series: API4:2023 Unrestricted Resource Consumption
Welcome to the 5th post in our weekly series on the new 2023 OWASP API Security Top-10 list,...
2023-8-19 21:45:0 | 阅读: 38 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
consumption
wallarm
consumed
Impact of the New SEC Cyber Incident Reporting Rules on the C-Suite and Beyond
We recently hosted a compact and very engaging panel discussion about the new SEC Cyber Incid...
2023-8-19 00:2:29 | 阅读: 25 |
收藏
|
Wallarm Blog - lab.wallarm.com
mike
materiality
investor
reasonable
2023 OWASP Top-10 Series: API3:2023 Broken Object Property Level Authorization
Welcome to the 4th post in our weekly series on the new 2023 OWASP API Security Top-10 list,...
2023-8-12 21:45:0 | 阅读: 24 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
wallarm
mass
assignment
Drinking Our Own Champagne: Enhancing API Security with FAST
Welcome to another inside story straight from the Wallarm labs. Today we’re taking you behind...
2023-8-9 21:15:0 | 阅读: 27 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
wallarm
cloud
qa
smoke
2023 OWASP Top-10 Series: API2:2023 Broken Authentication
Welcome to the 3rd post in our weekly series on the new 2023 OWASP API Security Top-10 list,...
2023-8-5 21:45:0 | 阅读: 42 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
passwords
wallarm
Beware of BOLA (IDOR) Vulnerabilities in Web Apps and APIs
IntroductionIn a recent advisory, the Cybersecurity and Infrastructure Security Agency (C...
2023-8-2 21:38:33 | 阅读: 34 |
收藏
|
Wallarm Blog - lab.wallarm.com
idor
bola
security
attackers
2023 OWASP Top-10 Series: API1:2023 Broken Object Level Authorization
Welcome to the 2nd post in our weekly series on the new 2023 OWASP API Security Top-10 list,...
2023-7-29 21:45:0 | 阅读: 31 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
bola
wallarm
identify
API Security in 2023: Major Insights from Postman’s State of the API Report
2023-7-24 22:26:16 | 阅读: 23 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
respondents
sectors
postman
concern
2023 OWASP Top-10 Series: Introduction
In early June 2023, OWASP released the final version of the OWASP API Security Top-10 list up...
2023-7-22 21:45:0 | 阅读: 42 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
kicking
matters
Wallarm at Black Hat USA 2023 Booth #3131
Wallarm is excited to be back at Black Hat USA this year and meet with our friends in the com...
2023-7-21 02:35:20 | 阅读: 19 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
booth
nintendo
thursday
sponsored
Q2-2023 API ThreatStats™ Report: API Exploits Are Everywhere: from NVIDIA to Reddit and more!
Our Q2-2023 API ThreatStats™ report is out. It provides API builders, defenders, breakers, an...
2023-7-19 21:12:18 | 阅读: 20 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
q2
quarter
impactful
Maximizing Performance with Wallarm Filtering Nodes in Amazon’s Global Infrastructure
IntroductionIn today’s digital landscape, ensuring the security and performance of web ap...
2023-6-29 00:49:17 | 阅读: 23 |
收藏
|
Wallarm Blog - lab.wallarm.com
cloudfront
wallarm
client
security
msfiltering
Introducing Integrated API Abuse Prevention to Combat Bad Bots
In recent years there’s been a rise in “API Abuse” attacks, which includes detrimental automa...
2023-6-22 21:0:0 | 阅读: 18 |
收藏
|
Wallarm Blog - lab.wallarm.com
wallarm
malicious
stuffing
unusual
bots
GCP ESPv2 Hit with Critical API Authorization Bypass CVE-2023-30845
This post delves into a very impactful JWT Authentication Bypass vulnerability (CVE-2023-3084...
2023-6-19 23:15:17 | 阅读: 39 |
收藏
|
Wallarm Blog - lab.wallarm.com
security
bypass
cloud
malicious
What You Need To Know About The MOVEit
The MOVEit Vulnerabilities and Latest Exploits. Impact On Governmental Agencies And Large Org...
2023-6-16 14:5:40 | 阅读: 28 |
收藏
|
Wallarm Blog - lab.wallarm.com
moveit
ransomware
software
clop
Previous
11
12
13
14
15
16
17
18
Next