Syndicated Blog

Indusface
Web Application Security, WAF, SSL Certificates
ScreenConnect Authentication Bypass demo

ScreenConnect Authentication Bypass (CVE-2024-1709 & CVE-2024-1708)

Uncover critical security flaws in ConnectWise ScreenConnect (CVE-2024-1709 & CVE-2024-1708) posing remote code execution risks. Actively exploited in the wild. The post ScreenConnect Authentication Bypass (CVE-2024-1709 & CVE-2024-1708) appeared first on Indusface ...
AppTrana WAAP

13 Top Bot Management Software in the Market for 2024

Examine the best 13 bot management software in the market for 2024, including a detailed analysis of their key features, benefits, drawbacks and reviews. The post 13 Top Bot Management Software in ...
How does zero day attack work?

Zero-day Vulnerability – Examples, Detection & Prevention [+ Monthly 0-day Reports]

Zero-day vulnerabilities refer to unpatched flaws exploited by attackers before fixes, posing significant security risks to both software and hardware. The post Zero-day Vulnerability – Examples, Detection & Prevention [+ Monthly 0-day ...
Autonomous Patching - SwyftComply - AppTrana WAAP

Autonomous Patching in 72 Hours: Understanding SwyftComply on AppTrana WAAP

Explore SwyftComply: AppTrana WAAP's autonomous patch feature ensuring zero vulnerability reports to meet compliance with SOC 2, PCI, and more, all in 72 hours. The post Autonomous Patching in 72 Hours: Understanding ...
AppTrana WAAP

A Step-by-step Guide to URL Verification in Indusface WAS

Secure your Indusface WAS vulnerability scan with our guide to URL verification. Confirm ownership and prevent unauthorized access in 3 simple methods The post A Step-by-step Guide to URL Verification in Indusface ...
Apache OFBiz Authentication vulnerability - demo on AppTrana WAAP

Critical Apache OFBiz Zero-day AuthBiz (CVE-2023-49070 and CVE-2023-51467)

Cybersecurity researchers recently uncovered a critical flaw in the widely used Apache OFBiz Enterprise Resource Planning (ERP) system, CVE-2023-51467. The zero-day vulnerability CVE-2023-51467 poses a significant threat, boasting a CVSS. The post ...
XML RPC Detection

What is XML-RPC? Benefits, Security Risks, and Detection Techniques

vulnerability. An attacker may exploit this issue to execute arbitrary commands or code in the context of the webserver. This may facilitate various attacks The post What is XML-RPC? Benefits, Security Risks, ...
Botnet Architecture

10 Botnet Detection and Removal Best Practices

Safeguard your devices from botnets with expert detection and removal methods. Get the best practices for ultimate cybersecurity. The post 10 Botnet Detection and Removal Best Practices appeared first on Indusface ...
AppTrana WAAP

Apache Struts 2 Vulnerability CVE-2023-50164 Exposed

The latest vulnerability CVE-2023-50164 disclosed on Apache Struts affects the Struts 2 framework's file upload logic, allowing unauthorized path traversal. The post Apache Struts 2 Vulnerability CVE-2023-50164 Exposed appeared first on Indusface ...
Zimbra XSS vulnerability blocked by WAF

Understanding the Zimbra Cross-Site Scripting Flaw (CVE-2023-37580)

The Zimbra XSS vulnerability allows an attacker to impact the confidentiality and integrity of the user's data. Understand how to find & fix this flaw. The post Understanding the Zimbra Cross-Site Scripting ...