Resources

Web Security

Web Security

React2Shell (CVE-2025-55182): Critical RCE vulnerability in React Server Components and Next.js

Web Security

Second wave of Shai-Hulud npm worm compromises the global software supply chain

Web Security

Is the CISO role becoming unsustainable?

Web Security

OWASP Top 10 update for 2025: Two decades of AppSec

Web Security

Broken object-level authorization (BOLA) API vulnerability explained

Web Security

Cloud-native DAST: Securing apps in Kubernetes, serverless, and microservices

Web Security

API security best practices for modern architectures

Web Security

The hidden cost of fragmented AppSec: Why enterprises need ASPM

Web Security

Shadow API governance: Policies and guardrails