Technical Information Security Content & Discussion

8 readers
1 users here now

/r/netsec is a community-curated aggregator of technical information security content. Our mission is to extract signal from the noise — to...

founded 1 year ago
MODERATORS
626
 
 
The original post: /r/netsec by /u/dx7r__ on 2024-04-16 14:04:21.
627
 
 
The original post: /r/netsec by /u/roy_6472 on 2024-04-16 10:30:36.
628
 
 
The original post: /r/netsec by /u/sebazzen on 2024-04-16 08:39:37.
629
 
 
The original post: /r/netsec by /u/TheMaestro810 on 2024-04-16 00:44:18.
630
 
 
The original post: /r/netsec by /u/louis11 on 2024-04-15 20:27:43.
631
 
 
The original post: /r/netsec by /u/daindragon2 on 2024-04-15 20:24:46.

Web applications play a crucial role in modern businesses, offering various services and often exposing sensitive data that can be enticing to attackers. As a result, there is a growing interest in finding innovative approaches for discovering vulnerabilities in web applications. In the evolving landscape of web security, the realm of fuzz testing has garnered substantial attention for its effectiveness in identifying vulnerabilities. However, existing literature has often underemphasized the nuances of web-centric fuzzing methodologies. This article presents a comprehensive exploration of fuzzing techniques specifically tailored to web applications, addressing the gap in the current research. Our work presents a holistic perspective on web-centric fuzzing, introduces a modular architecture that improves fuzzing effectiveness, demonstrates the reusability of certain fuzzing steps, and offers an open-source software package for the broader security community. By addressing these key contributions, we aim to facilitate advancements in web application security, empower researchers to explore new fuzzing techniques, and ultimately enhance the overall cybersecurity landscape

632
 
 
The original post: /r/netsec by /u/MegaManSec2 on 2024-04-15 19:47:59.
633
 
 
The original post: /r/netsec by /u/RedTermSession on 2024-04-15 15:39:53.
634
 
 
The original post: /r/netsec by /u/eg1x on 2024-04-15 14:18:18.
635
 
 
The original post: /r/netsec by /u/shantanu14g on 2024-04-15 14:00:34.

I coded this over the weekend. It's my first hands-on experience with Golang, and I had fun.

This basically scrapes the RSS feed from vuldb.com and notifies on Slack when any CVEs matching the keywords are added.

Keywords can be any technology or product that you want to track, e.g., CVEs related to Apple, WordPress, Ivanti VPN, etc.

The intended users are bug bounty hunters who want to look out for interesting CVEs and organizations that want to take action when any CVE affecting them is released.

Feedback and criticism are always welcome.

Ideally, I would like to scrape the NVD API instead of vuldb, but I will work on that later.

636
 
 
The original post: /r/netsec by /u/Soggy_Sally on 2024-04-12 20:44:30.
637
 
 
The original post: /r/netsec by /u/louis11 on 2024-04-10 15:01:18.
638
 
 
The original post: /r/netsec by /u/7331senb on 2024-04-14 12:49:50.
639
 
 
The original post: /r/netsec by /u/sunshine-and-sorrow on 2024-04-14 05:00:37.
640
 
 
The original post: /r/netsec by /u/Secret-Inspection180 on 2024-04-14 01:25:24.
641
 
 
The original post: /r/netsec by /u/fin3ss3g0d on 2024-04-14 01:00:37.
642
 
 
The original post: /r/netsec by /u/SmokeyShark_777 on 2024-04-13 11:06:11.

Hello guys! Here's a Go tool to check HTTP security headers insecure configuration. It supports Content-Security-Policy directives audit as well and can be used to assess multiple webpages/domains. If someone wants to collaborate or just leave feedback, here's the repo!

643
 
 
The original post: /r/netsec by /u/eg1x on 2024-04-13 08:49:52.
644
 
 
The original post: /r/netsec by /u/amitschenedel on 2024-04-13 07:06:27.
645
 
 
The original post: /r/netsec by /u/dx7r__ on 2024-04-13 04:19:53.
646
 
 
The original post: /r/netsec by /u/tootac on 2024-04-13 00:19:50.
647
 
 
The original post: /r/netsec by /u/danishlogon1 on 2024-04-12 20:49:16.
648
 
 
The original post: /r/netsec by /u/derp6996 on 2024-04-12 18:24:26.
649
 
 
The original post: /r/netsec by /u/Hallow_Rose on 2024-04-12 14:35:48.
650
 
 
The original post: /r/netsec by /u/sottaly on 2024-04-12 13:17:10.
view more: ‹ prev next ›