public password • 3 min read • User Enumeration Blog on why user enumeration is a security risk, especially for systems such as password managers.…
public vulnerability • 2 min read • Confluence Unauthenticated RCE - CVE-2022-26134 Details on the Confluence unauthenticated RCE (CVE-2022-26134) vulnerability.…
public vulnerability • 2 min read • Log4Shell (CVE-2021-44228, CVE-2021-45046 & CVE-2021-45105) Basic advice for dealing with Log4j (CVE-2021-44228, CVE-2021-45046 & CVE-2021-45105) with recommended actions.…
public risk • 3 min read • Moving Beyond the FUD Post about how we as an industry have to become a bit more pragmatic with our messaging.…
public accountability • 5 min read • Dealing with False Positives Blog post outlining ways in which to deal with false positives.…
public vulnerability • 8 min read • Google - Open Redirect Writeup of Google's Meet Open Redirect vulnerability.…
public certificate • 5 min read • Exploiting CVE-2020-0601 Providing 2 examples how an attacker could potentially exploit CVE-2020-0601.…
public vulnerability • 3 min read • Tips For Information to Include in a Vulnerability Disclosure Post to give recommendations about what information to include when disclosing a vulnerability and why it is important to do so.…