All You Need To Know About Cross-Site Request Forgery (CSRF)

Cross-Site Request Forgery is a term you’ve properly heard in the context of web security or web hacking, but do you really know what it means? The OWASP definition is as follows: Cross-Site Request Forgery (CSRF) is an attack that forces an end user to execute unwanted actions on a web application in which they’re […]

The post All You Need…

Read the full post at darknet.org.uk

Continue reading All You Need To Know About Cross-Site Request Forgery (CSRF)

Review: Acunetix 11

Acunetix is one of the biggest players in the web security arena. The European-based company released the first version of their product back in 2005, and thousands of clients around the globe use it to analyze the security of their web applications. They recently unveiled Acunetix version 11, so we’ve decided to take it for a spin. Interface, users and roles Before I start, it needs to be noted that I’ve tested the on-premise edition … More Continue reading Review: Acunetix 11

Massive Acunetix Online Update Brings New Features & UI

So there’s been a massive Acunetix Online update that has pushed out a brand new UI plus a whole bunch of new features and capabilities, including really powerful stuff for security professionals and organisations who take their security seriously The update has focused a lot on Usability of the UI and features for infosec pros […]

The post…

Read the full post at darknet.org.uk

Continue reading Massive Acunetix Online Update Brings New Features & UI

Massive Acunetix Online Update Brings New Features & UI

So there’s been a massive Acunetix Online update that has pushed out a brand new UI plus a whole bunch of new features and capabilities, including really powerful stuff for security professionals and organisations who take their security seriously The update has focused a lot on Usability of the UI and features for infosec pros […]

The post…

Read the full post at darknet.org.uk

Continue reading Massive Acunetix Online Update Brings New Features & UI

Free Manual Pen-Testing Tools

Not long after releasing v11 of their scanner, Acunetix has decided to deliver free manual pen-testing tools. Previously these tools were only available to paying Acunetix customers, now anyone can use them to make their manual web application testing … Continue reading Free Manual Pen-Testing Tools

Acunetix Web Vulnerability Scanner v11 Released

Acunetix Web Vulnerability Scanner v11 has just been released with lots of exciting new features and tools. The biggest change is that v11 is now integrated with Vulnerability Management features to enable your organization to comprehensively manage, prioritise and control vulnerability threats – ordered by business criticality. There are other…

Read the full post at darknet.org.uk

Continue reading Acunetix Web Vulnerability Scanner v11 Released

New infosec products of the week​: November 18, 2016

ThreatQuotient delivers threat intelligence platform for threat operations and management ThreatQ v2 has transformed the threat intelligence platform into a powerful foundation for cyber threat operations and management. With ThreatQ v2 customers can improve situational understanding, accelerate detection and response, and increase threat operations efficiency through greater team collaboration. Acunetix 11 integrates vulnerability management New integrated vulnerability management features allow for the review of aggregated vulnerability data across all Targets, prioritizing security risks and therefore … More Continue reading New infosec products of the week​: November 18, 2016

Securing MySQL Installation on Ubuntu 16.04 LTS

Today let’s talk about securing MySQL installation on Ubuntu, in this case specifically Ubuntu 16.04 LTS which was released not too long ago. So I love Ubuntu and I use it for everything, especially the LTS (Long Term Support) releases for servers. MySQL is not my best buddy, but a necessary evil many times – […]

The post Securing MySQL…

Read the full post at darknet.org.uk

Continue reading Securing MySQL Installation on Ubuntu 16.04 LTS

Everything You Need To Know About Web Shells

So let’s talk about Web Shells, something many of us are already familiar with, but to level the field – what is a web shell? A web shell is a script that can be uploaded to a web server to enable remote administration of the machine. Infected web servers can be either Internet-facing or internal […]

The post Everything You Need To Know…

Read the full post at darknet.org.uk

Continue reading Everything You Need To Know About Web Shells