⤷ Title: Secure Coding Part 5: Command Injection — Type
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Thu, 10 Jul 2025 13:30:54 GMT
════════════════════════
⌗ Tags: #command_injection #application_security #sast #secure_coding #code_security
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Thu, 10 Jul 2025 13:30:54 GMT
════════════════════════
⌗ Tags: #command_injection #application_security #sast #secure_coding #code_security
Medium
Secure Coding Part 5: Command Injection — Type
Previous Part — Secure Coding Part 4: Command Injection — Introduction
⤷ Title: Lean & Mean: Practicing Peak Source Code Security for Bootstrapped Startups
════════════════════════
𐀪 Author: cyber_pix
════════════════════════
ⴵ Time: Fri, 25 Jul 2025 12:11:01 GMT
════════════════════════
⌗ Tags: #application_security #product_security #bootstrap #code_security #developer_security
════════════════════════
𐀪 Author: cyber_pix
════════════════════════
ⴵ Time: Fri, 25 Jul 2025 12:11:01 GMT
════════════════════════
⌗ Tags: #application_security #product_security #bootstrap #code_security #developer_security
Medium
Lean & Mean: Practicing Peak Source Code Security for Bootstrapped Startups
This post was originally shared with us by Cloudanix
⤷ Title: Sandboxing: A Safe Space for Dangerous Code
════════════════════════
𐀪 Author: Cyber Security Details
════════════════════════
ⴵ Time: Fri, 01 Aug 2025 10:39:16 GMT
════════════════════════
⌗ Tags: #threat_mitigation #isolation #andboxing #application_security #code_security
════════════════════════
𐀪 Author: Cyber Security Details
════════════════════════
ⴵ Time: Fri, 01 Aug 2025 10:39:16 GMT
════════════════════════
⌗ Tags: #threat_mitigation #isolation #andboxing #application_security #code_security
Medium
Sandboxing: A Safe Space for Dangerous Code
In our increasingly interconnected digital world, the need to interact with untrusted or potentially malicious code is not just a…
⤷ Title: The Secrets of Secure Code
════════════════════════
𐀪 Author: Cyber Security Research
════════════════════════
ⴵ Time: Mon, 04 Aug 2025 16:55:19 GMT
════════════════════════
⌗ Tags: #vulnerability_prevention #code_security #secure_coding #application_security #software_security
════════════════════════
𐀪 Author: Cyber Security Research
════════════════════════
ⴵ Time: Mon, 04 Aug 2025 16:55:19 GMT
════════════════════════
⌗ Tags: #vulnerability_prevention #code_security #secure_coding #application_security #software_security
Medium
The Secrets of Secure Code
In the rapidly evolving landscape of modern software, where applications form the backbone of businesses and daily life, the integrity and…
⤷ Title: PortSwigger Lab: Blind OS Command Injection with Out-of-Band Exfiltration
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Tue, 12 Aug 2025 09:10:59 GMT
════════════════════════
⌗ Tags: #portswigger_lab #code_security #command_injection #application_security #portswigger
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Tue, 12 Aug 2025 09:10:59 GMT
════════════════════════
⌗ Tags: #portswigger_lab #code_security #command_injection #application_security #portswigger
Medium
PortSwigger Lab: Blind OS Command Injection with Out-of-Band Exfiltration
Sometimes, the most powerful exploits don’t show a single hint in the app’s response.
⤷ Title: PortSwigger Lab : Unprotected Admin Functionality with Unpredictable URL
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Fri, 29 Aug 2025 07:47:10 GMT
════════════════════════
⌗ Tags: #application_security #penetration_testing #secure_coding #code_security #web_penetration_testing
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Fri, 29 Aug 2025 07:47:10 GMT
════════════════════════
⌗ Tags: #application_security #penetration_testing #secure_coding #code_security #web_penetration_testing
Medium
PortSwigger Lab : Unprotected Admin Functionality with Unpredictable URL
This lab highlights how sensitive paths hidden in source code can lead directly to admin functionality — and without proper access control…
⤷ Title: Securing Your GitHub Codebase: 6 Essential Tools Every Developer Must Know
════════════════════════
𐀪 Author: Vedant Vartak
════════════════════════
ⴵ Time: Fri, 12 Sep 2025 00:53:52 GMT
════════════════════════
⌗ Tags: #code_security #github #github_security #cybersecurity
════════════════════════
𐀪 Author: Vedant Vartak
════════════════════════
ⴵ Time: Fri, 12 Sep 2025 00:53:52 GMT
════════════════════════
⌗ Tags: #code_security #github #github_security #cybersecurity
Medium
Securing Your GitHub Codebase: 6 Essential Tools Every Developer Must Know
Why Repository Security Is Critical in 2025
⤷ Title: Generative AI use case for Penetration Testing
════════════════════════
𐀪 Author: cyber_pix
════════════════════════
ⴵ Time: Thu, 18 Sep 2025 06:11:45 GMT
════════════════════════
⌗ Tags: #pentesting #ai_code #cloud_security #code_security #penetration_testing
════════════════════════
𐀪 Author: cyber_pix
════════════════════════
ⴵ Time: Thu, 18 Sep 2025 06:11:45 GMT
════════════════════════
⌗ Tags: #pentesting #ai_code #cloud_security #code_security #penetration_testing
Medium
Generative AI use case for Penetration Testing
Generative AI is not just a tool for content creation; it’s rapidly becoming a force multiplier in the world of cybersecurity, particularly…
⤷ Title: Cortex Cloud Code Security: A Comprehensive Guide
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
ⴵ Time: Tue, 07 Oct 2025 05:46:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #network_security #cortex_cloud #code_security #palo_alto_networks
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
ⴵ Time: Tue, 07 Oct 2025 05:46:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #network_security #cortex_cloud #code_security #palo_alto_networks
Medium
Cortex Cloud Code Security: A Comprehensive Guide
The rise of cloud-native applications has transformed the way enterprises build, deploy, and manage their software. While this shift…
⤷ Title: Next-Gen AI Security Engineers Arrive: New AI-SAST Tools Find Logic Flaws and 50+ Zero-Days in Code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 03:51:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI_SAST #Code Security #Corgea #LLM #Penetration Testing #Static Analysis #Vulnerability Detection #ZeroPath
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 03:51:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI_SAST #Code Security #Corgea #LLM #Penetration Testing #Static Analysis #Vulnerability Detection #ZeroPath
Penetration Testing Tools
Next-Gen AI Security Engineers Arrive: New AI-SAST Tools Find Logic Flaws and 50+ Zero-Days in Code
New AI-SAST tools like ZeroPath and Corgea are using LLM reasoning to find business logic flaws and zero-days in source code, dramatically reducing false positives and human effort.
⤷ Title: Securing the Stateless Backend: Identity and Isolation in Java Microservices
════════════════════════
𐀪 Author: cyber_pix
════════════════════════
ⴵ Time: Thu, 20 Nov 2025 05:06:02 GMT
════════════════════════
⌗ Tags: #cloud_security #devsecops #code_security #backend_development #application_security
════════════════════════
𐀪 Author: cyber_pix
════════════════════════
ⴵ Time: Thu, 20 Nov 2025 05:06:02 GMT
════════════════════════
⌗ Tags: #cloud_security #devsecops #code_security #backend_development #application_security
Medium
Securing the Stateless Backend: Identity and Isolation in Java Microservices
The shift to stateless Java microservices orchestrated by platforms like Kubernetes fundamentally changes the security perimeter. The old…
⤷ Title: Hardcoded Credential (in Current Code): CustomRegex — SSC Fortify Security Findings Analysis — Part…
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Fri, 26 Dec 2025 06:02:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #security_vulnerabilities #infosec #code_security
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Fri, 26 Dec 2025 06:02:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #security_vulnerabilities #infosec #code_security
Medium
Hardcoded Credential (in Current Code): CustomRegex — SSC Fortify Security Findings Analysis — Part 1
The silent threat hiding in your code: Hard-coded credentials are every cybercriminal’s favorite treasure map.
⤷ Title: .NET File Operation Security Vulnerabilities — SSC Fortify Security Findings Analysis — Part 2
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 09:15:25 GMT
════════════════════════
⌗ Tags: #code_security #infosec #cybersecurity #application_security #security_vulnerabilities
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 09:15:25 GMT
════════════════════════
⌗ Tags: #code_security #infosec #cybersecurity #application_security #security_vulnerabilities
Medium
.NET File Operation Security Vulnerabilities — SSC Fortify Security Findings Analysis — Part 2
“Security is not a product, but a process.” — Bruce Schneier
⤷ Title: ASP.NET Middleware Out of Order: Insecure Transport — SSC Fortify Security Findings Analysis —…
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 09:55:28 GMT
════════════════════════
⌗ Tags: #security_vulnerabilities #code_security #cybersecurity #application_security #infosec
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 09:55:28 GMT
════════════════════════
⌗ Tags: #security_vulnerabilities #code_security #cybersecurity #application_security #infosec
Medium
ASP.NET Middleware Out of Order: Insecure Transport — SSC Fortify Security Findings Analysis — Part 3
“Your middleware pipeline is like airport security — skip a checkpoint and everyone gets through.”
⤷ Title: Connection String Parameter Pollution — SSC Fortify Security Findings Analysis — Part 4
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 18:02:46 GMT
════════════════════════
⌗ Tags: #application_security #code_security #security_vulnerabilities #infosec #cybersecurity
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 18:02:46 GMT
════════════════════════
⌗ Tags: #application_security #code_security #security_vulnerabilities #infosec #cybersecurity
⤷ Title: 3rd Party Component Vulnerabilities — SSC Fortify Security Findings Analysis — Part 5
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 04 Jan 2026 09:02:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #infosec #code_security #security_vulnerabilities
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 04 Jan 2026 09:02:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #infosec #code_security #security_vulnerabilities
Medium
3rd Party Component Vulnerabilities — SSC Fortify Security Findings Analysis — Part 5
Introduction
⤷ Title: Mass Assignment: Insecure Binder Configuration — SSC Fortify Security Findings Analysis — Part 6
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 11 Jan 2026 06:02:49 GMT
════════════════════════
⌗ Tags: #application_security #code_security #security_vulnerabilities #cybersecurity #infosec
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 11 Jan 2026 06:02:49 GMT
════════════════════════
⌗ Tags: #application_security #code_security #security_vulnerabilities #cybersecurity #infosec
Medium
Mass Assignment: Insecure Binder Configuration — SSC Fortify Security Findings Analysis — Part 6
Introduction
⤷ Title: ASP.NET MVC Bad Practices: Model With Required Non-Nullable Property — Part 7
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 18 Jan 2026 10:04:08 GMT
════════════════════════
⌗ Tags: #infosec #application_security #cybersecurity #code_security #security_vulnerabilities
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 18 Jan 2026 10:04:08 GMT
════════════════════════
⌗ Tags: #infosec #application_security #cybersecurity #code_security #security_vulnerabilities
Medium
ASP.NET MVC Bad Practices: Model With Required Non-Nullable Property — Part 7
In the world of automated analysis, context is king, and tools are merely servants. Static Application Security Testing (SAST) tools like…
⤷ Title: Snyk and uv, Better Together
════════════════════════
𐀪 Author: Snyk
════════════════════════
ⴵ Time: Wed, 25 Feb 2026 02:00:22 GMT
════════════════════════
⌗ Tags: #ai #python #code_security #application_security
════════════════════════
𐀪 Author: Snyk
════════════════════════
ⴵ Time: Wed, 25 Feb 2026 02:00:22 GMT
════════════════════════
⌗ Tags: #ai #python #code_security #application_security
Medium
Snyk and uv, Better Together
Python powers today’s AI revolution, from machine learning frameworks to agentic workflows and data science pipelines. But for years, Python’s packaging ecosystem has lagged behind developer …