ModSecurity and OWASP CRS Updates Available
Security Fix Release: ModSecurity v2.6.6 The ModSecurity Development Team has released version ...
Read MoreSecurity Fix Release: ModSecurity v2.6.6 The ModSecurity Development Team has released version ...
Read MoreAt the recent OWASP AppSecDC conference, I presented on this topic. I received a lot of feedback ...
Read MoreAt the recent OWASP AppSecDC conference, I presented on this topic. I received a lot of feedback ...
Read MoreIn our previous blog post "Inside the Attacker's Toolbox: Botnet Web Attack Scripts" we analyzed ...
Read MoreHave you ever wondered what script/code/tool was behind the automated web attacks that you see in ...
Read MoreUPDATE - we have received more exploit attempt details from web hosting provider DreamHost. Thanks ...
Read MoreThere have been a number of mass SQL Injection campaigns targeting ASP/ASP.Net/MS-SQL sites over ...
Read MoreOur web honeypots picked up some increased scanning for the following Exploit-DB vulnerability:
Read MoreOur web honeypots recently identified attacks for CVE-2009-4834 which is a vulnerability within ...
Read MoreAutomated Virtual Patching using OWASP Zed Attack Proxy The SpiderLabs Research Team has added an ...
Read MoreOur web sensors picked up a big uptick in Local File Inclusion (LFI) attacks today. We received ...
Read MoreAs we first noted in a previous Honeypot Alert Blog post, our web honeypots have again received ...
Read MoreMonthly Web Honeypot Status Report We have received a tremendous amount of positive feedback on our ...
Read MoreMy SpiderLabs Research colleague Jonathan Claudius recently identified an XSS flaw in the Movable ...
Read MoreOur web honeypots picked up the following attacks today:
Read MoreIdentification of web application vulnerabilities is only half the battle with remediation efforts ...
Read MoreTop Ten Web Hacking Techniques of 2011 Every year the web security community votes on the top web ...
Read MoreAs you may have heard, Trustwave SpiderLabs released our Global Security Report (GSR) 2012 Report, ...
Read MoreMonthly Web Honeypot Status Report We have received a tremendous amount of positive feedback on our ...
Read MoreIn a previous blog post, we provided details of a DDoS attack tool called LOIC (Low Orbit Ion ...
Read MoreOur web honeypots generated the following ModSecurity alert today:
Read MoreOur web honeypots have identified attempts to exploit CVE-2011-2505. OSVDB lists the vulnerabilty ...
Read MoreOur web honeypot logs picked up an attack aimed at exploiting the Is-human Wordpress Plugin Remote ...
Read MoreThe SpiderLabs Research Team has identified an extensive scanning campaign which aims to enumerate ...
Read MoreOur web server honeypot log analysis has picked up some targeted local file inclusion (LFI) attacks ...
Read MoreThreatPost had a news story today about PoC code that was released to the full disclosures ...
Read MoreSlow-Read DoS Attack Background Another tweak in the ongoing "Slow" DoS attacks has emerged this ...
Read More