Source
PortSwigger
WordPress warning: 140k BackupBuddy installations on alert over file-read exploitation
Site backup plugin developer issues patch following reports of millions of exploit attempts
A rough guide to launching a career in cybersecurity
Entry-level training courses offer paths to glory
Squiz Matrix CMS squashes admin account takeover bug
IDOR issue meant user account privileges and contact details could be altered
Bug Bounty Radar // The latest bug bounty programs for September 2022
New web targets for the discerning hacker
CSRF flaw in csurf NPM package aimed at protecting against the same flaws
Serious security prompt developers to discontinue open source package
WatchGuard firewall exploit threatens appliance takeover
One-two bug punch leads to ‘worst possible impact’, said researcher
Three-day hackathon uncovers hundreds of bugs in Yahoo search engine tool Vespa
Live event brings together bug bounty hunters from across the globe
Command injection vulnerability in GitHub Pages nets bug hunter $4k
Exploit involved duping developers into exposing repositories with social engineering techniques
Log4Shell legacy? Patching times plummet for most critical vulnerabilities – report
Trustwave report also finds 2022 is set to surpass 2021 for volume of critical CVEs
Graph-based JavaScript bug scanner discovers more than 100 zero-day vulnerabilities in Node.js libraries
ODGen tool was presented at this year’s Usenix Security Symposium