|
You are here |
blog.jitendrapatro.me | ||
| | | | |
defuse.ca
|
|
| | | | | Why are websites so insecure? What design patterns will help solve these problems? | |
| | | | |
nv1t.github.io
|
|
| | | | | I've identified a security concern within the self-hosted file sharing tool ProjectSend in the current version r1605. By exploiting a chain of vulnerabilities - including Cross-Site Scripting (XSS), Insecure Direct Object Reference (IDOR), and weaknesses in its change password implementation - an authenticated attacker can force a logged-in user to unknowingly change their account password, by clicking a link. But let me explain the attack in detail. | |
| | | | |
victoria.dev
|
|
| | | | | [AI summary] The article discusses SQL injection and cross-site scripting (XSS) vulnerabilities, emphasizing the importance of securing user input to prevent security breaches by white hat hackers. | |
| | | | |
kerrick.blog
|
|
| | | Steve Yegge laid out a vision: in 2 years, nobody will write code. The solution? Kerrick's Wager: a plan of action for senior developers in an agentic AI world. | ||