Web Application Security

OpenSSL MITM CCS vulnerability and its impact

OpenSSL MITM CCS vulnerability and its impact

Within weeks of the infamous Heartbleed vulnerability in one of the world’s most commonly used open-source software OpenSSL, more vulnerabilities… Read More

10 years ago

Am I Vulnerable To Cross Site Scripting (XSS)?

XSS flaws occur whenever an application takes untrusted data and sends it to a web browser without proper validation or… Read More

10 years ago

Post Heartbleed, now what?

It’s been over two weeks since the world learned that websites online were vulnerable due to the OpenSSL Heartbleed vulnerability.… Read More

10 years ago

Larger implications of Heartbleed

I was looking at Heartbleed bug code and it appears that it is not a buffer overflow. Rather, the buffer… Read More

10 years ago

Real time, continuous detection, defense and protection from Heartbleed by Indusface

The day the world got to know of Heartbleed, is going to be a day that security professionals, across organizations,… Read More

10 years ago

Security heartache: OpenSSL Heartbleed

On April 7th, a major vulnerability in OpenSSL, the most prevalent software used for encryption and other purposes on the web… Read More

10 years ago

What is Broken Authentication & How to Prevent it?

To prevent Broken Authentication vulnerability, use strong password policies, implement multi-factor authentication, and regularly monitor user activity. Read More

10 years ago

Offline, yet still exploited

The Hacker Series By Bhaumik Merchant, Information Security Research Consultant, Indusface Introduction: This article demonstrates a unique kind of communication… Read More

10 years ago

Top 3 Critical Vulnerabilities in Web Applications

From Indusface’s study on the State of Application Security in India, here are the top critical vulnerabilities that affect your… Read More

10 years ago

Detect Web Application Attacks Using Web Server Access Logs

Recently, I was conducting a security audit for an organization. They had deployed a WAF (Web Application Firewall) for their… Read More

10 years ago