cryptonvester (29)in #dmania • 6 years agoFair Point, Soggy Toasts SuckView post on dManiacryptonvester (29)in #security • 6 years ago2017 OWASP Top 10 for PHP Developers Part 3: Sensitive Data ExposureThere is a lot of exposed data floating on the web. People hear about such events all the time – it seems like data…cryptonvester (29)in #dmania • 6 years agoAverage Dmania userView post on dManiacryptonvester (29)in #dmania • 6 years agoTom and JerryView post on dManiacryptonvester (29)in #vulnerability • 6 years ago2017 OWASP Top 10 for PHP Developers Part 2: Broken Authentication and Session ManagementWhile browsing the web, you click on a link. The link leads you to a page like this: Looks like a usual login…cryptonvester (29)in #dmania • 6 years agoA creative tittleView post on dManiacryptonvester (29)in #hacking • 6 years agoOther uses of .htaccess: Making a .htaccess-based WAFIf you’re a web developer, you’re probably fammiliar with .htaccess. If you’re not, let me give you a quick…cryptonvester (29)in #dmania • 6 years agoCatView post on dManiacryptonvester (29)in #website • 6 years agoAn old Ticket System Security AnalysisSince I started building websites few years ago, I’ve created a few projects. Some of them never saw daylight, some of…cryptonvester (29)in #dmania • 6 years agoWorth readingView post on dManiacryptonvester (29)in #dmania • 6 years agoDeep shitView post on dManiacryptonvester (29)in #dmania • 6 years agoHer majestyView post on dManiacryptonvester (29)in #password • 6 years agoYour passwords are terrible, and it’s time to do something about itYou know what surprises me the most in regards to data breaches? It’s the fact that people still continue to use…cryptonvester (29)in #hacking • 6 years agoA journey back in time: The analysis of the first version of my WAFAs you might already know, back in 2014, I’ve developed a custom Web Application Firewall. The primary reason I’ve…cryptonvester (29)in #dmania • 6 years agoWhen you sell BTC for 19.5 kView post on dManiacryptonvester (29)in #security • 7 years ago10 ways to increase the security of your WordPress applicationWhen someone mentions WordPress, you will often hear people saying “don’t use it, it’s insecure”. In a sense, those…cryptonvester (29)in #dmania • 7 years agoNo it's a pigeonView post on dManiacryptonvester (29)in #hardcoding • 7 years agoHow I could have pwned my highschool (SQLi, CSRF, Hardcoded Passwords & XSS) Part 2: Investigating the BreachHonestly, this is a blog title I’ve never expected to write, but hey, data breaches happen – no website is exempt from…cryptonvester (29)in #website • 7 years agoYour website needs a CSP. Here’s whyHere’s a scenario: You create a website and make it available online. Your website ends up getting hacked (it…cryptonvester (29)in #hacking • 7 years agoYour website has assets – You need SRIAll websites have something worth protecting. Those valuable things are frequently loaded from a CDN (Content Delivery…