|
You are here |
alexsci.com | ||
| | | | |
endtimes.dev
|
|
| | | | | ||
| | | | |
labanskoller.se
|
|
| | | | | During 2021 I had access to a facility equipped with an alarm system from Securitas Direct. I had access as a regular user to Securitas Direct's My Pages at mypages-pro.securitas-direct.com, which is used to administer some aspects of one's security alarm installation. That web application suffered a CWE-384 Session Fixation vulnerability which can be used by an attacker in a so-called Man-In-The-Middle (MiTM) position. Home page of Securitas Direct My Pages In summary, if an attacker is on the same netw... | |
| | | | |
scotthelme.co.uk
|
|
| | | | | A one stop shop for everything you need to know about HTTP Strict Transport Security and how to use it. | |
| | | | |
wweb.dev
|
|
| | | In this series, we're creating a serverless stack using AWS. In this part, I'll show how to serve a static website through an S3 Bucket and how to deploy from your local machine... | ||