Cheers to 11 years of AppSec Ezine! 🎉 Huge thanks to the security community for sharing and the supporters who made this journey possible. Here's to another year of knowledge-sharing! 🚀
572nd Edition: https://t.co/6zsQt43U1H
Repo: https://t.co/bmRVaetx0v
#AppSec#Security
thanks to everyone who attended my #TheSAS2025 talk "Typographic hit job: when fonts pull the trigger". 🙏
I've written an accompanying blogpost that goes over all the details: https://t.co/I91zIQ3kho
HTTP is supposed to be stateless, but sometimes... it isn't! Some servers create invisible vulnerabilities by only validating the first request on each TCP/TLS connection. I've just published a Custom Action to help you detect & exploit this - here's a narrated demo:
If you want to learn how to construct epic payloads like this? You need JavaScript for Hackers.
Requires this hash:
#<img/src/onerror=alert(1)>
https://t.co/84e3xYGiEw
@sim4n6 Yes, xl-sec brought to life two RSS/Atom feeds depending if you want the whole Ezine or split into multiple entries. Feel free to get then:
- https://t.co/H4sHcqXYHp
- https://t.co/MjtmGwTlI3
https://t.co/o4CGqi5qR0 ← we've just released Paged Out! zine Issue #7
https://t.co/ZEuR7WtUAL ← direct link
https://t.co/DFuGBWFb4D ← prints for zine collectors
https://t.co/8VN5hGyEux ← issue wallpaper
Enjoy!
Please please please RT to spread the news - thank you!
Ok guys, and that's it for this year! PraSec "11"th edition concluded yesterday. We hope you had a great time. Again, we thank our speakers and attendees for super atmosphere. See you in a year!