Top 10 web hacking techniques of 2023
Welcome to the Top 10 Web Hacking Techniques of 2023, the 17th edition of our annual community-powered effort to identify the most innovative must-read web security research published in the last year

4276 articles
4276 ARTICLES
Welcome to the Top 10 Web Hacking Techniques of 2023, the 17th edition of our annual community-powered effort to identify the most innovative must-read web security research published in the last year


Uncover Chainguard’s approach to detecting and neutralizing hidden threats like CVE-2024-24806 in container environments.

In cloud security, the most compelling love story is the one between developers and security teams. This Valentine’s Day, let’s shine a spotlight on these dynamic duos.

Explore extending ESOPs to 10 years, considering fairness, economics, benefits, challenges with Prisma’s example, and startup compensation.

Explore our FedRAMP container security compliance checklist. Tailored for CISOs and developers, it simplifies FedRAMP certification, ensuring robust compliance.

Developers are using AI, and there’s no turning back. Here’s how you can minimize vulnerabilities and security risks associated with AI coding tools.

This year for Valentine’s Day, we’re imagining what a love letter from your applications to the tools that keep them secure might look like.

Enroll in Chainguard Academy’s new course on Painless Vulnerability Management to master security practices and use Chainguard Images for safer software.

Learn what information CISOs need to know about your application security program in order to have a clear understanding of risk.

Fortinet offers guidance to detect and mitigate CVE-2024-21762 and CVE-2024-23113, critical RCE vulnerabilities in FortiOS and FortiProxy, including guidance that organizations should patch urgently.

We recently released a series of improvements to Snyk IaC, and in this blog post, we’re taking a technical dive into a particularly interesting feature — automatic source code locations for rule violations.

We explore how advancements in EKS Access Entries and Pod Identity have opened new attack vectors and offer examples of how adversaries could exploit them.
Cookies
We use analytics cookies (Google Analytics) to improve this site. Accept to allow them. Privacy Policy