home.social

#webappsecurity โ€” Public Fediverse posts

Live and recent posts from across the Fediverse tagged #webappsecurity, aggregated by home.social.

  1. Sequence [TryHackMe] [Writeup]

    Room Info Name: Sequence Platform: TryHackMe Difficulty: Medium Link: https://tryhackme.com/room/sequence Description: Chain multiple vulnerabilities to take control of a system. Task 1: Challenge Robert made some last-minute updates to the review.thm website before heading off on vacation. He claims that the secret information of the financiers is fully protected. But are his defenses truly airtight? Your challenge is to exploit the vulnerabilities and gain complete control of the [โ€ฆ]

    aredopseagle.wordpress.com/202

  2. AI-powered features are the new attack surface! Check out our new blog in which LMG Securityโ€™s Senior Penetration Tester Emily Gosney @baybedoll shares real-world strategies for testing AI-driven web apps against the latest prompt injection threats.

    From content smuggling to prompt splitting, attackers are using natural language to manipulate AI systems. Learn the top techniquesโ€”and why your web app pen test must include prompt injection testing to defend against todayโ€™s AI-driven threats.

    Read now: lmgsecurity.com/are-your-ai-ba

    #CyberSecurity #PromptInjection #AIsecurity #WebAppSecurity #PenetrationTesting #LLMvulnerabilities #Pentest #DFIR #AI #CISO #Pentesting #Infosec #ITsecurity

  3. ๐ŸŒ The Digital Terrain Is Shifting โ€” Are Your Apps and APIs Ready?

    As AI adoption accelerates, so do AI-driven attacks.
    In their new research report, Akamai Technologies uncovers the evolving threats facing web applications and APIs โ€” and how organizations can respond before attackers get ahead.

    State of Apps and API Security 2025: How #AI Is Shifting the Digital Terrain explores the sharp rise in automated, intelligent threats โ€” and the new defenses emerging to meet them.

    ๐Ÿ“ฅ Download the full report here: itspm.ag/akamaixmwd
    ๐Ÿ“Œ Research like this helps #security professionals, #leaders, and #developers stay ahead of the curve โ€” and shape the future of #digital defense.

    ๐ŸŽ™๏ธ Weโ€™re also proud to feature Akamai in our RSAC 2025 coverage โ€” with a Brand Story recorded pre-event and a follow-up conversation happening on location at the conference in San Francisco with Rupesh Chokshi, Sean Martin, CISSP, and Marco Ciappelli.

    Watch the pre-event recording here: youtu.be/DMm6INJ_2Z8

    ๐Ÿ™ A huge thank you to the Akamai team for sponsoring our coverage and sharing their insights with our global audience.

    ๐Ÿ‘‡ Check out the report and stay tuned for more from RSAC:

    ๐Ÿ“ฅ Download the Report: itspm.ag/akamaixmwd
    ๐ŸŒ Explore our RSAC 2025 Coverage: itspmagazine.com/events/rsac-2

    #akamai #rsac2025 #brandstory #apigateway #applicationsecurity #aiinsecurity #webappsecurity #cybersecurityresearch #infosec #devsecops #digitaldefense #threatintelligence #itspmagazine #rsaconference #apisecurity #aiattacks #securityreport #cybersecurityinnovation #securitystrategy #zerotrust #appsec

  4. ๐ŸŒ The Digital Terrain Is Shifting โ€” Are Your Apps and APIs Ready?

    As AI adoption accelerates, so do AI-driven attacks.
    In their new research report, Akamai Technologies uncovers the evolving threats facing web applications and APIs โ€” and how organizations can respond before attackers get ahead.

    State of Apps and API Security 2025: How #AI Is Shifting the Digital Terrain explores the sharp rise in automated, intelligent threats โ€” and the new defenses emerging to meet them.

    ๐Ÿ“ฅ Download the full report here: itspm.ag/akamaixmwd
    ๐Ÿ“Œ Research like this helps #security professionals, #leaders, and #developers stay ahead of the curve โ€” and shape the future of #digital defense.

    ๐ŸŽ™๏ธ Weโ€™re also proud to feature Akamai in our RSAC 2025 coverage โ€” with a Brand Story recorded pre-event and a follow-up conversation happening on location at the conference in San Francisco with Rupesh Chokshi, Sean Martin, CISSP, and Marco Ciappelli.

    Watch the pre-event recording here: youtu.be/DMm6INJ_2Z8

    ๐Ÿ™ A huge thank you to the Akamai team for sponsoring our coverage and sharing their insights with our global audience.

    ๐Ÿ‘‡ Check out the report and stay tuned for more from RSAC:

    ๐Ÿ“ฅ Download the Report: itspm.ag/akamaixmwd
    ๐ŸŒ Explore our RSAC 2025 Coverage: itspmagazine.com/events/rsac-2

    #akamai #rsac2025 #brandstory #apigateway #applicationsecurity #aiinsecurity #webappsecurity #cybersecurityresearch #infosec #devsecops #digitaldefense #threatintelligence #itspmagazine #rsaconference #apisecurity #aiattacks #securityreport #cybersecurityinnovation #securitystrategy #zerotrust #appsec

  5. ๐ŸŒ The Digital Terrain Is Shifting โ€” Are Your Apps and APIs Ready?

    As AI adoption accelerates, so do AI-driven attacks.
    In their new research report, Akamai Technologies uncovers the evolving threats facing web applications and APIs โ€” and how organizations can respond before attackers get ahead.

    State of Apps and API Security 2025: How #AI Is Shifting the Digital Terrain explores the sharp rise in automated, intelligent threats โ€” and the new defenses emerging to meet them.

    ๐Ÿ“ฅ Download the full report here: itspm.ag/akamaixmwd
    ๐Ÿ“Œ Research like this helps #security professionals, #leaders, and #developers stay ahead of the curve โ€” and shape the future of #digital defense.

    ๐ŸŽ™๏ธ Weโ€™re also proud to feature Akamai in our RSAC 2025 coverage โ€” with a Brand Story recorded pre-event and a follow-up conversation happening on location at the conference in San Francisco with Rupesh Chokshi, Sean Martin, CISSP, and Marco Ciappelli.

    Watch the pre-event recording here: youtu.be/DMm6INJ_2Z8

    ๐Ÿ™ A huge thank you to the Akamai team for sponsoring our coverage and sharing their insights with our global audience.

    ๐Ÿ‘‡ Check out the report and stay tuned for more from RSAC:

    ๐Ÿ“ฅ Download the Report: itspm.ag/akamaixmwd
    ๐ŸŒ Explore our RSAC 2025 Coverage: itspmagazine.com/events/rsac-2

    #akamai #rsac2025 #brandstory #apigateway #applicationsecurity #aiinsecurity #webappsecurity #cybersecurityresearch #infosec #devsecops #digitaldefense #threatintelligence #itspmagazine #rsaconference #apisecurity #aiattacks #securityreport #cybersecurityinnovation #securitystrategy #zerotrust #appsec

  6. ๐ŸŒ The Digital Terrain Is Shifting โ€” Are Your Apps and APIs Ready?

    As AI adoption accelerates, so do AI-driven attacks.
    In their new research report, Akamai Technologies uncovers the evolving threats facing web applications and APIs โ€” and how organizations can respond before attackers get ahead.

    State of Apps and API Security 2025: How #AI Is Shifting the Digital Terrain explores the sharp rise in automated, intelligent threats โ€” and the new defenses emerging to meet them.

    ๐Ÿ“ฅ Download the full report here: itspm.ag/akamaixmwd
    ๐Ÿ“Œ Research like this helps #security professionals, #leaders, and #developers stay ahead of the curve โ€” and shape the future of #digital defense.

    ๐ŸŽ™๏ธ Weโ€™re also proud to feature Akamai in our RSAC 2025 coverage โ€” with a Brand Story recorded pre-event and a follow-up conversation happening on location at the conference in San Francisco with Rupesh Chokshi, Sean Martin, CISSP, and Marco Ciappelli.

    Watch the pre-event recording here: youtu.be/DMm6INJ_2Z8

    ๐Ÿ™ A huge thank you to the Akamai team for sponsoring our coverage and sharing their insights with our global audience.

    ๐Ÿ‘‡ Check out the report and stay tuned for more from RSAC:

    ๐Ÿ“ฅ Download the Report: itspm.ag/akamaixmwd
    ๐ŸŒ Explore our RSAC 2025 Coverage: itspmagazine.com/events/rsac-2

    #akamai #rsac2025 #brandstory #apigateway #applicationsecurity #aiinsecurity #webappsecurity #cybersecurityresearch #infosec #devsecops #digitaldefense #threatintelligence #itspmagazine #rsaconference #apisecurity #aiattacks #securityreport #cybersecurityinnovation #securitystrategy #zerotrust #appsec

  7. ๐ŸŒ The Digital Terrain Is Shifting โ€” Are Your Apps and APIs Ready?

    As AI adoption accelerates, so do AI-driven attacks.
    In their new research report, Akamai Technologies uncovers the evolving threats facing web applications and APIs โ€” and how organizations can respond before attackers get ahead.

    State of Apps and API Security 2025: How #AI Is Shifting the Digital Terrain explores the sharp rise in automated, intelligent threats โ€” and the new defenses emerging to meet them.

    ๐Ÿ“ฅ Download the full report here: itspm.ag/akamaixmwd
    ๐Ÿ“Œ Research like this helps #security professionals, #leaders, and #developers stay ahead of the curve โ€” and shape the future of #digital defense.

    ๐ŸŽ™๏ธ Weโ€™re also proud to feature Akamai in our RSAC 2025 coverage โ€” with a Brand Story recorded pre-event and a follow-up conversation happening on location at the conference in San Francisco with Rupesh Chokshi, Sean Martin, CISSP, and Marco Ciappelli.

    Watch the pre-event recording here: youtu.be/DMm6INJ_2Z8

    ๐Ÿ™ A huge thank you to the Akamai team for sponsoring our coverage and sharing their insights with our global audience.

    ๐Ÿ‘‡ Check out the report and stay tuned for more from RSAC:

    ๐Ÿ“ฅ Download the Report: itspm.ag/akamaixmwd
    ๐ŸŒ Explore our RSAC 2025 Coverage: itspmagazine.com/events/rsac-2

    #akamai #rsac2025 #brandstory #apigateway #applicationsecurity #aiinsecurity #webappsecurity #cybersecurityresearch #infosec #devsecops #digitaldefense #threatintelligence #itspmagazine #rsaconference #apisecurity #aiattacks #securityreport #cybersecurityinnovation #securitystrategy #zerotrust #appsec

  8. Top Web Application PenTesting Tools by Category โš”๏ธ

    ๐Ÿ”–Hashtags:
    #WebSecurity #PentestingTools #EthicalHacking #BugBounty #WebAppSecurity #RedTeam #OWASP #CyberSecurity

    โš ๏ธDisclaimer:
    This content is for educational purposes only. Only use these tools in environments where you have proper authorization. Hacking without permission is illegal and unethical.

  9. Top Web Application PenTesting Tools by Category โš”๏ธ

    ๐Ÿ”–Hashtags:
    #WebSecurity #PentestingTools #EthicalHacking #BugBounty #WebAppSecurity #RedTeam #OWASP #CyberSecurity

    โš ๏ธDisclaimer:
    This content is for educational purposes only. Only use these tools in environments where you have proper authorization. Hacking without permission is illegal and unethical.

  10. Top Web Application PenTesting Tools by Category โš”๏ธ

    ๐Ÿ”–Hashtags:
    #WebSecurity #PentestingTools #EthicalHacking #BugBounty #WebAppSecurity #RedTeam #OWASP #CyberSecurity

    โš ๏ธDisclaimer:
    This content is for educational purposes only. Only use these tools in environments where you have proper authorization. Hacking without permission is illegal and unethical.

  11. Top Web Application PenTesting Tools by Category โš”๏ธ

    ๐Ÿ”–Hashtags:
    #WebSecurity #PentestingTools #EthicalHacking #BugBounty #WebAppSecurity #RedTeam #OWASP #CyberSecurity

    โš ๏ธDisclaimer:
    This content is for educational purposes only. Only use these tools in environments where you have proper authorization. Hacking without permission is illegal and unethical.

  12. Top Web Application PenTesting Tools by Category โš”๏ธ

    ๐Ÿ”–Hashtags:
    #WebSecurity #PentestingTools #EthicalHacking #BugBounty #WebAppSecurity #RedTeam #OWASP #CyberSecurity

    โš ๏ธDisclaimer:
    This content is for educational purposes only. Only use these tools in environments where you have proper authorization. Hacking without permission is illegal and unethical.

  13. Are Your Web Apps an Open Door for Hackers?

    Imagine spending months perfecting your web app, only to find it leaking data like a sieve. Scary, right? Thatโ€™s exactly what happens when common security flaws go unchecked.

    In LMG Securityโ€™s latest blog, @tompohl shares jaw-dropping real-world web application security attack case studies from the field, including:

    โ–ช Command Injection Jackpot โ€“ A hidden file upload flaw led to full server control.
    โ–ช API Admin Takeover โ€“ An overlooked endpoint allowed attackers to create Super Admin accounts.
    โ–ช Heap Dump Disaster โ€“ A debugging tool exposed Active Directory credentials and user tokens
    .
    Read the full blog to learn how hackers target web apps and how to lock them down: lmgsecurity.com/common-web-app

    #Cybersecurity #Security #ITsecurity
    #WebAppSecurity #APISecurity #PenTesting #CISO #WebApp #WebApplication #pentest #penetrationtesting #Infosec #DFIR

  14. I'm not going to say what site this is, but it has to qualify for the Web Security wall of shame.

    #WebAppSecurity #badpassword #insecurewebsite #funny

  15. ๐Ÿ’ป Are you a Java developer concerned about XSS vulnerabilities in your web apps? Learn to prevent XSS attacks using Snyk Code. Knowledge is power, empower yourself ๐Ÿ‘‰ buff.ly/3Hi6WEh #WebAppSecurity #XSS #Java #SnykCode

  16. ๐Ÿ”’ Write safer HTML pages for your Java web applications. Understand the potential security risks associated with XSS attacks and how to use Snyk Code to prevent them. Detailed insights here ๐Ÿ‘‰ buff.ly/3Hi6WEh #XSS #Java #WebAppSecurity #SnykCode

  17. Am Di, 5. Sept. um 11 Uhr: TechKafi #ruby โ˜• - Web Security Refresh! ๐Ÿš€

    Buzzwords wie SQL Injection, XSS, CSRF, CSP sind uns bekannt, aber kennen wir wirklich alle Abwehrstrategien? Pascal Zumkehr bringt Licht ins Dunkel und erklรคrt Sicherheitslรผcken von Webapps samt GegenmaรŸnahmen. Der Code ist in Ruby, doch die Lรถsungen gelten branchenweit.

    puzzle.ch/de/blog/articles/202

    #WebSecurity #Ruby #Cybersecurity #WebAppSecurity #TechEvent #SecurityRefresh #PuzzleEvents #TechTalk #WebDev #Coding

  18. ๐Ÿ” ๐€๐ณ๐ฎ๐ซ๐ž ๐–๐€๐… โ€“ ๐Œ๐š๐ฌ๐ค๐ข๐ง๐  ๐’๐ž๐ง๐ฌ๐ข๐ญ๐ข๐ฏ๐ž ๐ƒ๐š๐ญ๐š

    WAF rules can thwart malicious requests containing personally identifiable info (PII). Azure WAF log scrubbing tool ensures data security. ๐Ÿ›ก๏ธ Safeguard your logs by removing sensitive data using custom rules.

    Check out our latest blog where we dive into the log scrubbing feature and explore real examples. Discover how to strengthen your web app security today!

    techcommunity.microsoft.com/t5

    #AzureWAF #WebAppSecurity #Azure #waf #scrubbing #log #sentinel #siem #soar #pii #cloud #cloudsecurity #soc #cybersecurity #loganalytics

  19. ๐Ÿ” ๐€๐ณ๐ฎ๐ซ๐ž ๐–๐€๐… โ€“ ๐Œ๐š๐ฌ๐ค๐ข๐ง๐  ๐’๐ž๐ง๐ฌ๐ข๐ญ๐ข๐ฏ๐ž ๐ƒ๐š๐ญ๐š

    WAF rules can thwart malicious requests containing personally identifiable info (PII). Azure WAF log scrubbing tool ensures data security. ๐Ÿ›ก๏ธ Safeguard your logs by removing sensitive data using custom rules.

    Check out our latest blog where we dive into the log scrubbing feature and explore real examples. Discover how to strengthen your web app security today!

    techcommunity.microsoft.com/t5

    #AzureWAF #WebAppSecurity #Azure #waf #scrubbing #log #sentinel #siem #soar #pii #cloud #cloudsecurity #soc #cybersecurity #loganalytics

  20. ๐Ÿ” ๐€๐ณ๐ฎ๐ซ๐ž ๐–๐€๐… โ€“ ๐Œ๐š๐ฌ๐ค๐ข๐ง๐  ๐’๐ž๐ง๐ฌ๐ข๐ญ๐ข๐ฏ๐ž ๐ƒ๐š๐ญ๐š

    WAF rules can thwart malicious requests containing personally identifiable info (PII). Azure WAF log scrubbing tool ensures data security. ๐Ÿ›ก๏ธ Safeguard your logs by removing sensitive data using custom rules.

    Check out our latest blog where we dive into the log scrubbing feature and explore real examples. Discover how to strengthen your web app security today!

    techcommunity.microsoft.com/t5

    #AzureWAF #WebAppSecurity #Azure #waf #scrubbing #log #sentinel #siem #soar #pii #cloud #cloudsecurity #soc #cybersecurity #loganalytics

  21. ๐Ÿ” ๐€๐ณ๐ฎ๐ซ๐ž ๐–๐€๐… โ€“ ๐Œ๐š๐ฌ๐ค๐ข๐ง๐  ๐’๐ž๐ง๐ฌ๐ข๐ญ๐ข๐ฏ๐ž ๐ƒ๐š๐ญ๐š

    WAF rules can thwart malicious requests containing personally identifiable info (PII). Azure WAF log scrubbing tool ensures data security. ๐Ÿ›ก๏ธ Safeguard your logs by removing sensitive data using custom rules.

    Check out our latest blog where we dive into the log scrubbing feature and explore real examples. Discover how to strengthen your web app security today!

    techcommunity.microsoft.com/t5

    #AzureWAF #WebAppSecurity #Azure #waf #scrubbing #log #sentinel #siem #soar #pii #cloud #cloudsecurity #soc #cybersecurity #loganalytics

  22. ๐Ÿ” ๐€๐ณ๐ฎ๐ซ๐ž ๐–๐€๐… โ€“ ๐Œ๐š๐ฌ๐ค๐ข๐ง๐  ๐’๐ž๐ง๐ฌ๐ข๐ญ๐ข๐ฏ๐ž ๐ƒ๐š๐ญ๐š

    WAF rules can thwart malicious requests containing personally identifiable info (PII). Azure WAF log scrubbing tool ensures data security. ๐Ÿ›ก๏ธ Safeguard your logs by removing sensitive data using custom rules.

    Check out our latest blog where we dive into the log scrubbing feature and explore real examples. Discover how to strengthen your web app security today!

    techcommunity.microsoft.com/t5

    #AzureWAF #WebAppSecurity #Azure #waf #scrubbing #log #sentinel #siem #soar #pii #cloud #cloudsecurity #soc #cybersecurity #loganalytics