Harshal Shahdelvingwithharshal.hashnode.dev·Aug 7, 2024OWASP Top 10: A Deep Dive into Web Application SecurityThe Open Web Application Security Project (OWASP) is a non-profit foundation dedicated to improving software security. One of its most influential initiatives is the OWASP Top 10, a regularly updated report outlining the most critical security risks ...Fortify and Defend: Navigating the Cybersecurity LandscapeWeb Security
Varkey Thomasskinnyidiot.hashnode.dev·Jul 16, 2024Horizontal to Vertical Privilege EscalationIntro: This type of escalation is a combination of both horizontal, and vertical privilege escalation. First, an attacker gains access to an standard account without any administrative privileges. After accessing the standard account, the attacker wi...appsec
Rushikesh Patiloffensivebytes.com·May 5, 2024Exploiting Exposed Encryption Keys in Web ApplicationsIntroduction: During a recent penetration testing engagement, I identified a critical security issue: exposed encryption keys in a web application's client-side JavaScript. This vulnerability is particularly severe as it enables attackers to decrypt ...72 readsoffensive-security
Rushikesh PatilforBreachForcebreachforce.net·May 3, 2024Exploiting Exposed Encryption Keys in Web ApplicationsIntroduction: During a recent penetration testing engagement, I identified a critical security issue: exposed encryption keys in a web application's client-side JavaScript. This vulnerability is particularly severe as it enables attackers to decrypt ...10 likes·566 readsencryption