Forem

# appsec

Application security topics beyond the web, including mobile and desktop applications.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Global Product Security Strategy: A Multi-Layered Framework (I.P. developed)
Cover image for Global Product Security Strategy: A Multi-Layered Framework (I.P. developed)

Global Product Security Strategy: A Multi-Layered Framework (I.P. developed)

5
Comments
4 min read
My Firebase Webapp almost got pwned by a bot. Then another bot saved it.
Cover image for My Firebase Webapp almost got pwned by a bot. Then another bot saved it.

My Firebase Webapp almost got pwned by a bot. Then another bot saved it.

Comments
1 min read
OWASP Cornucopia Companion Edition
Cover image for OWASP Cornucopia Companion Edition

OWASP Cornucopia Companion Edition

3
Comments
2 min read
Configuration Management: 12 factor, Factor III

Configuration Management: 12 factor, Factor III

Comments
3 min read
What Makes a Great Vulnerability Scanner? 8 Features Developers Should Know
Cover image for What Makes a Great Vulnerability Scanner? 8 Features Developers Should Know

What Makes a Great Vulnerability Scanner? 8 Features Developers Should Know

1
Comments 1
4 min read
No need to fear the clouds. Play OWASP Cumulus!
Cover image for No need to fear the clouds. Play OWASP Cumulus!

No need to fear the clouds. Play OWASP Cumulus!

2
Comments 1
4 min read
Does the AI do the threat modeling of your software?
Cover image for Does the AI do the threat modeling of your software?

Does the AI do the threat modeling of your software?

Comments
3 min read
🔵 Chapter 02 – Ruby Language Fundamentals (Line by Line for Absolute Beginners)

🔵 Chapter 02 – Ruby Language Fundamentals (Line by Line for Absolute Beginners)

Comments
2 min read
Shadow APIs: Understanding the Risk and 6 Ways to Reduce It
Cover image for Shadow APIs: Understanding the Risk and 6 Ways to Reduce It

Shadow APIs: Understanding the Risk and 6 Ways to Reduce It

Comments
1 min read
🧠 iOS Reverse Engineering: iOS SQL Injection Challenge

🧠 iOS Reverse Engineering: iOS SQL Injection Challenge

Comments
4 min read
Strategic Security: New Features from 3Mór
Cover image for Strategic Security: New Features from 3Mór

Strategic Security: New Features from 3Mór

Comments
2 min read
🧠 iOS Reverse Engineering: Defeating Anti-Debug

🧠 iOS Reverse Engineering: Defeating Anti-Debug

Comments
4 min read
9 Free Web App Vulnerability Scanners You Should Know in 2025
Cover image for 9 Free Web App Vulnerability Scanners You Should Know in 2025

9 Free Web App Vulnerability Scanners You Should Know in 2025

1
Comments
4 min read
OWASP® Cornucopia 2.2 & Copi - A Game Engine for OWASP® Cornucopia Threat Modeling
Cover image for OWASP® Cornucopia 2.2 & Copi - A Game Engine for OWASP® Cornucopia Threat Modeling

OWASP® Cornucopia 2.2 & Copi - A Game Engine for OWASP® Cornucopia Threat Modeling

7
Comments 1
4 min read
🔴 Chapter 01 – Setting Up a Ruby Environment (Line by Line for Beginners

🔴 Chapter 01 – Setting Up a Ruby Environment (Line by Line for Beginners

Comments
2 min read
Unlocking the Power of SARIF: The Backbone of Modern Static Analysis

Unlocking the Power of SARIF: The Backbone of Modern Static Analysis

Comments
3 min read
OWASP Top 10 For Flutter — M2: Inadequate Supply Chain Security in Flutter
Cover image for OWASP Top 10 For Flutter — M2: Inadequate Supply Chain Security in Flutter

OWASP Top 10 For Flutter — M2: Inadequate Supply Chain Security in Flutter

1
Comments
1 min read
Security is a risk function

Security is a risk function

Comments
1 min read
Hook, Hack, Defend: Frida’s Impact on Mobile Security & How to Fight Back
Cover image for Hook, Hack, Defend: Frida’s Impact on Mobile Security & How to Fight Back

Hook, Hack, Defend: Frida’s Impact on Mobile Security & How to Fight Back

Comments
1 min read
Login Page for Modern Applications
Cover image for Login Page for Modern Applications

Login Page for Modern Applications

1
Comments
6 min read
Exclusive Research: Unlocking Reliable Crash Tracking with PLCrashReporter for iOS SDKs
Cover image for Exclusive Research: Unlocking Reliable Crash Tracking with PLCrashReporter for iOS SDKs

Exclusive Research: Unlocking Reliable Crash Tracking with PLCrashReporter for iOS SDKs

Comments
3 min read
Why Current Methods Fail to Measure Real Vulnerability Risks?

Why Current Methods Fail to Measure Real Vulnerability Risks?

Comments
2 min read
How Reachability Analysis 🔎 can help with open source vulnerabilities mess (Coana as an example)

How Reachability Analysis 🔎 can help with open source vulnerabilities mess (Coana as an example)

Comments
10 min read
Lessons Learned #4: One error message could expose all your data (FileSender CVE-2024–45186)

Lessons Learned #4: One error message could expose all your data (FileSender CVE-2024–45186)

Comments
5 min read
Lessons Learned #3: Is your random UUID really random? (Account takeover with the sandwich 🥪 attack)

Lessons Learned #3: Is your random UUID really random? (Account takeover with the sandwich 🥪 attack)

Comments
7 min read
loading...