A novel alternative to traditional HTTP request smuggling that spotlighted an obsolete, hitherto obscure protocol has been recognized as 2020’s top web hacking technique. Unveiled by Bishop Fox...
Internet registry RIPE NCC has announced it was the victim of a credential stuffing attack affecting its single-sign-on (SSO) platform. The RIPE Network Coordination Centre is the regional...
The number of critical security vulnerabilities reached a record high in 2020, but sysadmins have been warned against focusing solely on high-scoring CVEs in their patch...
It’s the stuff of nightmares: your organization has fallen victim to a cyber-attack, and you need to work out how to handle your response. The EU’s General Data...
The domain registration belonging to Perl.com, the popular source of news and information about the Perl programming language, has reportedly been stolen. Brian Foy, a Perl...
Time flies! The Daily Swig was launched by PortSwigger Web Security, the makers of Burp Suite, back in 2017. Along with the fantastic Web Security Academy, The Swig forms part of our...
The Nmap project has been wrongfully labeled as a cybersecurity “threat” by Google Chrome’s Safe Browsing service. The incident is the latest example of legitimate security tools becoming...
The French National Cybersecurity Agency (ANSSI) has formally joined Luatix, a non-profit aimed at helping organizations improve their cybersecurity defenses, after helping develop the group’s threat intelligence...
UPDATED Security vulnerabilities and other software shortcomings cost the US economy more than $2 trillion in 2020, according to a new report. Operational software failures were by...
The Sploitus exploit search engine has become subject to a DMCA copyright complaint in a case the creator believes is due to a failed piracy block...
Recent Comments