2
submitted 2 years ago by [email protected] to c/[email protected]
1
submitted 2 years ago by [email protected] to c/[email protected]
1
submitted 2 years ago by [email protected] to c/[email protected]
1
submitted 2 years ago by [email protected] to c/[email protected]
1
AppSec podcasts? (infosec.pub)
submitted 2 years ago by [email protected] to c/[email protected]

There is a nice list of Infosec podcasts here: https://infosec.pub/post/152754

What are your more specialized appsec recommendations?

1
submitted 2 years ago by [email protected] to c/[email protected]

A brand-new Burp Suite extension for discovering DNS vulnerabilities in web applications.

1
submitted 2 years ago by [email protected] to c/[email protected]

You might have found HTML injection, but unfortunately identified that the site is protected with CSP. All is not lost, it might be possible to bypass CSP using DOM clobbering, which you can now detect using DOM Invader! In this post we’ll show you how.

We’ve based the test case on a bug bounty site, so you’re likely to encounter similar code in the wild. If you’re unfamiliar with DOM clobbering then head over to our Academy to learn about this attack class and solve the labs.

1
submitted 2 years ago by [email protected] to c/[email protected]

You might have found HTML injection, but unfortunately identified that the site is protected with CSP. All is not lost, it might be possible to bypass CSP using DOM clobbering, which you can now detect using DOM Invader! In this post we'll show you how.

We've based the test case on a bug bounty site, so you're likely to encounter similar code in the wild. If you're unfamiliar with DOM clobbering then head over to our Academy to learn about this attack class and solve the labs.

1
submitted 2 years ago by [email protected] to c/[email protected]

A brand-new Burp Suite extension for discovering DNS vulnerabilities in web applications.

view more: ‹ prev next ›

N7x

0 post score
0 comment score
joined 2 years ago