Default Author Image

Understanding Illicit Ecosystems: XSS and the Current State of the Russian-Speaking Underground

In this post, we explore XSS’ shift from a unified forum to a scattered community spread across several competing factions. The post Understanding Illicit Ecosystems: XSS and the Current State of the ...
ADR Report | Application Detection and Response Trends | Contrast Labs

ADR Report | Application Detection and Response Trends | Contrast Labs

In a startling finding, Contrast Security Application Detection and Response stopped tens of thousands of attacks that made it past perimeter defenses on a single application in mid-January 2025.  ...
ADR Report | Application Detection and Response Trends | Contrast Labs

ADR Report | Application Detection and Response Trends | Contrast Labs

In a startling finding, Contrast Security Application Detection and Response stopped tens of thousands of attacks that made it past perimeter defenses on a single application in mid-January 2025.  ...
Cybersecurity Insights with Contrast CISO David Lindner | 09/20/24

Cybersecurity Insights with Contrast CISO David Lindner | 09/20/24

Insight #1: Don't shrug off this internet plague! Cross-site scripting (XSS) is the overlooked vulnerability plaguing the web. As Contrast’s recent attack data show, it's everywhere, yet it’s often dismissed as “'low ...
Cybersecurity Insights with Contrast CISO David Lindner | 09/20/24

Cybersecurity Insights with Contrast CISO David Lindner | 09/20/24

Insight #1: Don't shrug off this internet plague! Cross-site scripting (XSS) is the overlooked vulnerability plaguing the web. As Contrast’s recent attack data show, it's everywhere, yet it’s often dismissed as “'low ...
Top 4 Application Attacks Detected and Blocked by Contrast ADR | XSS, Method Tampering, Path Traversal and JNDI Injection | Contrast Security

Top 4 Application Attacks Detected and Blocked by Contrast ADR | XSS, Method Tampering, Path Traversal and JNDI Injection | Contrast Security

The Contrast Security Runtime Security Platform — the engine that underpins Contrast’s Application Detection and Response (ADR) technology — blocked approximately 47K cybersecurity attacks during the month of August 2024.  ...
OAuth, XSS, Google WhiteSource Log4j Deepfence threat report

Salt Security Provides Free Scans for XXS Vulnerabilities Involving OAuth Protocol

Salt Security is making available a free scanning tool that it has been using to assess the level of potential risk organizations face from cross-site scripting (XSS) attacks in the wake of ...
Security Boulevard
Figure 1 Code 1

Lessons Learned From Exposing Unusual XSS Vulnerabilities

Misunderstood browser APIs are often at the core of many web security issues. With the rapid expansion of web APIs, keeping up with security best practices can be challenging. In this post, ...
Vectors of approach

From ChatBot To SpyBot: ChatGPT Post Exploitation

In the second installment of our blog post series on ChatGPT, we delve deeper into the security implications that come with the integration of AI into our daily routines. Building on the ...