⤷ Title: BFScan: Uncover Hidden URLs, Paths, & Secrets in JAR/WAR/APK Files
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:39:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #apk #application security #BFScan #cybersecurity #HTTP Request Generation #JAR #OpenAPI #Secret Detection #security tool #URL Discovery #WAR
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:39:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #apk #application security #BFScan #cybersecurity #HTTP Request Generation #JAR #OpenAPI #Secret Detection #security tool #URL Discovery #WAR
Penetration Testing Tools
BFScan: Uncover Hidden URLs, Paths, & Secrets in JAR/WAR/APK Files
BFScan is a powerful tool to extract URLs, paths, and secrets from JAR, WAR, and APK files, generating raw HTTP requests and OpenAPI specs for security analysis.
⤷ Title: API Security and Corresponding Open API Specification
════════════════════════
𐀪 Author: Swarnalata Patel
════════════════════════
ⴵ Time: Mon, 10 Nov 2025 04:28:29 GMT
════════════════════════
⌗ Tags: #openapi_specification #api_security #open_api
════════════════════════
𐀪 Author: Swarnalata Patel
════════════════════════
ⴵ Time: Mon, 10 Nov 2025 04:28:29 GMT
════════════════════════
⌗ Tags: #openapi_specification #api_security #open_api
Medium
API Security and Corresponding Open API Specification
API security is crucial in the modern digital landscape due to the fundamental role APIs play in connecting applications and exchanging…
⤷ Title: Poisoned Comments: Critical Orval Flaw (CVE-2026-25141) Injects Code
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 00:36:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #code_injection #CVE_2026_23947 #CVE_2026_25141 #Developer Tools #JavaScript Security #OpenAPI #Orval #Supply Chain Security #TypeScript #web development
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 00:36:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #code_injection #CVE_2026_23947 #CVE_2026_25141 #Developer Tools #JavaScript Security #OpenAPI #Orval #Supply Chain Security #TypeScript #web development
Daily CyberSecurity
Poisoned Comments: Critical Orval Flaw (CVE-2026-25141) Injects Code
Critical Orval flaw CVE-2026-25141 (CVSS 9.3) allows code injection via OpenAPI comments. 2.8M+ downloads affected. Update to v7.21.0 now.
⤷ Title: The three layers approach to Secure REST API: OpenAPI, MuleSoft configuration and application code
════════════════════════
𐀪 Author: Nunzio Giovinazzi
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 11:28:58 GMT
════════════════════════
⌗ Tags: #api_security #mulesoft #openapi_specification #cybersecurity #rest_api_security
════════════════════════
𐀪 Author: Nunzio Giovinazzi
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 11:28:58 GMT
════════════════════════
⌗ Tags: #api_security #mulesoft #openapi_specification #cybersecurity #rest_api_security
Medium
The three layers approach to Secure REST API: OpenAPI, MuleSoft configuration and application implementation
This is a more in-depth look at the presentation I gave at the Salesforce Agentforce World Tour in Milan last May about REST API security