IT security researchers from Ruhr-Universität Bochum (RUB) and the Niederrhein University of Applied Sciences have discovered 14 new types of ‘XS-Leak’ cross-site leak attacks against modern...
A security hole in the file-sharing feature of Slack enables malicious actors to identify users outside of the workforce messaging platform. Slack apparently has no plans...
Endpoints using GraphQL may be at risk of exploitation due to failures to mitigate cross-site request forgery (CSRF) attack vectors, researchers warn. On May 20, Doyensec...
A new way to perform an XS-Leak side-channel attack has been disclosed. According to Luan Herrera, a researcher and bug bounty hunter with a particular interest in client-side, browser,...
ANALYSIS New browser security features offer the tantalizing promise of killing – or at least significantly reducing – many of the classic web security attack vectors. Minimizing...
Google is inviting security researchers to contribute to a new “open knowledge” sharing base focused on cross-site leaks (XS-Leaks). The platform, dubbed ‘XS-Leaks wiki’, will provide information...
Recent Comments