Nov 11, 2025 - Jeremy Snyder - In mid-2023, a software vulnerability was discovered in a file transfer application known as moveIT. Because of the application's popularity, numerous companies and ...
Nov 11, 2025 - Jeremy Snyder - Over the last few years, web application attacks have become one of the leading causes of data breaches, making web application security increasingly important for ...
The Open Worldwide Application Security Project (OWASP) just published its top 10 categories of application risks for 2025, its first list since 2021. It found that while broken access control remains ...
Also of importance are a Kerberos vulnerability in Active Directory, a Visual Studio Copilot extension, and a Microsoft ...
Redmond discloses one exploited-in-the-wild zero-day vulnerability in a low-key month compared to most. Microsoft is ...
OWASP has released a revised version of its Top 10 list of critical risks to web applications, adding two new categories.
Security researchers SecurityBridge, who notified SAP after finding the flaw, described as a “missing input sanitation” ...
Applications built by citizen developers using no-code platforms expand the attack surface without the same checks and balances as traditional development.
Fortinet has silently patched a critical zero-day vulnerability in its FortiWeb web application firewall, which is now being ...