⤷ Title: The Hidden Cost of Switching Between Apps All Day.
════════════════════════
𐀪 Author: Kavya Pandian
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 18:42:53 GMT
════════════════════════
⌗ Tags: #branding #saas #website_optimization #digital_marketing #application_security
════════════════════════
𐀪 Author: Kavya Pandian
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 18:42:53 GMT
════════════════════════
⌗ Tags: #branding #saas #website_optimization #digital_marketing #application_security
Medium
The Hidden Cost of Switching Between Apps All Day.
Checking one application for customer data, another for communication, another for reports, and yet another for tasks may only take a few…
⤷ Title: The Transaction Is the Attack Surface
════════════════════════
𐀪 Author: Andrews Ferreira
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 18:38:26 GMT
════════════════════════
⌗ Tags: #fintech #application_security #payment_systems #threat_modeling #security_engineering
════════════════════════
𐀪 Author: Andrews Ferreira
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 18:38:26 GMT
════════════════════════
⌗ Tags: #fintech #application_security #payment_systems #threat_modeling #security_engineering
Medium
The Transaction Is the Attack Surface
Threat modeling when the asset you’re protecting is money.
⤷ Title: Implementing “Shift Left, Verify Right” in a Vulnerable FinTech Microservices Application
════════════════════════
𐀪 Author: Lh1l0v3
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 18:32:53 GMT
════════════════════════
⌗ Tags: #security #cyber_security_awareness #software_engineering #application_security #software_development
════════════════════════
𐀪 Author: Lh1l0v3
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 18:32:53 GMT
════════════════════════
⌗ Tags: #security #cyber_security_awareness #software_engineering #application_security #software_development
Medium
Implementing “Shift Left, Verify Right” in a Vulnerable FinTech Microservices Application
Implementing “Shift Left, Verify Right” in a Vulnerable FinTech Microservices Application In my previous article, I introduced the concept of “Shift Left, Verify Right,” a DevSecOps …
⤷ Title: Secure Code Review Challenge #1: Schooled — Solution (One Whitespace Character Away From Admin)
════════════════════════
𐀪 Author: Mohamed AboElKheir
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 22:56:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #code_review #software_development #application_security
════════════════════════
𐀪 Author: Mohamed AboElKheir
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 22:56:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #code_review #software_development #application_security
Medium
Secure Code Review Challenge #1: Schooled — Solution (One Whitespace Character Away From Admin)
📢 The solution to Challenge #1: Schooled is live. Watch the video walkthrough here, or read the full write-up on GitHub.
⤷ Title: Input Validation: Because Users Are Creative, and Attackers Are More Creative
════════════════════════
𐀪 Author: Robert Broeckelmann
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 22:17:15 GMT
════════════════════════
⌗ Tags: #input_validation #software_development #application_security #putin #application_architecture
════════════════════════
𐀪 Author: Robert Broeckelmann
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 22:17:15 GMT
════════════════════════
⌗ Tags: #input_validation #software_development #application_security #putin #application_architecture
Medium
Input Validation: Because Users Are Creative, and Attackers Are More Creative
There is a special kind of optimism that exists in software development.
⤷ Title: The False Perimeter: Exploiting Hardcoded Key in Android
════════════════════════
𐀪 Author: M. Habib
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 01:46:01 GMT
════════════════════════
⌗ Tags: #application_security #cyber_security_awareness #mobile_app_development #technology
════════════════════════
𐀪 Author: M. Habib
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 01:46:01 GMT
════════════════════════
⌗ Tags: #application_security #cyber_security_awareness #mobile_app_development #technology
Medium
The False Perimeter: Exploiting Hardcoded Key in Android
Hiding keys in native code creates a false perimeter. Chained with deep links, they enable silent backend compromise.
⤷ Title: [워싱턴대] — AI 에이전트의 치명적 아킬레스건: 기억(Memory) 파일에 심겨진 독약, ‘오염된 메모리’ 공격의 실체
════════════════════════
𐀪 Author: YouShin kim
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 02:16:37 GMT
════════════════════════
⌗ Tags: #application_security #prompt_injection #ai_safety #llm_security #agentic_system
════════════════════════
𐀪 Author: YouShin kim
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 02:16:37 GMT
════════════════════════
⌗ Tags: #application_security #prompt_injection #ai_safety #llm_security #agentic_system
⤷ Title: The Vulnerability Count in AI-Generated Code Just Tripled, Twice, in a Row
════════════════════════
𐀪 Author: Bhavyansh
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 15:01:03 GMT
════════════════════════
⌗ Tags: #application_security #vibe_coding #claude_code #ai_security #software_engineering
════════════════════════
𐀪 Author: Bhavyansh
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 15:01:03 GMT
════════════════════════
⌗ Tags: #application_security #vibe_coding #claude_code #ai_security #software_engineering
Medium
The Vulnerability Count in AI-Generated Code Just Tripled, Twice, in a Row
Georgia Tech tracked CVEs traceable to AI coding tools — 6, then 15, then 35 in three straight months.
⤷ Title: Beyond the Vendor Perimeter: Strategic Pentest for Third-Party Supply Chain Attacks
════════════════════════
𐀪 Author: Rajyavardhan Handa
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 21:20:17 GMT
════════════════════════
⌗ Tags: #application_security #penetration_testing #cybersecurity #supply_chain_security
════════════════════════
𐀪 Author: Rajyavardhan Handa
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 21:20:17 GMT
════════════════════════
⌗ Tags: #application_security #penetration_testing #cybersecurity #supply_chain_security
Medium
Beyond the Vendor Perimeter: Strategic Pentest for Third-Party Supply Chain Attacks
As reliance on third-party SaaS and PaaS solutions grows, vendor software has become a critical, yet vulnerable, extension of the corporate…
⤷ Title: I Built an AI-Powered Security Code Review Tool
════════════════════════
𐀪 Author: Sanaullah Aman Korai
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 00:41:35 GMT
════════════════════════
⌗ Tags: #application_security #python #ai #cybersecurity #open_source
════════════════════════
𐀪 Author: Sanaullah Aman Korai
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 00:41:35 GMT
════════════════════════
⌗ Tags: #application_security #python #ai #cybersecurity #open_source
Medium
I Built an AI-Powered Security Code Review Tool. Here’s What I Learned.
I Built an AI-Powered Security Code Review Tool. Here’s What I Learned. I review a lot of code. As an application security engineer, I spend hours reading other people’s pull requests looking for …
⤷ Title: Day 204 — How to Renew an Application Certificate and Create a Java JKS Truststore
════════════════════════
𐀪 Author: Alok Rahul
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 07:21:39 GMT
════════════════════════
⌗ Tags: #java #application_security #software_engineering #software_development
════════════════════════
𐀪 Author: Alok Rahul
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 07:21:39 GMT
════════════════════════
⌗ Tags: #java #application_security #software_engineering #software_development
Medium
Day 204 — How to Renew an Application Certificate and Create a Java JKS Truststore
22nd July 2026, Netherlands — Certificates are commonly used to secure communication between applications, APIs, databases, message…
⤷ Title: Networking Core Protocols: DNS, Web, FTP, and Email Fundamentals
════════════════════════
𐀪 Author: Jonathan Sanfer
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 08:23:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_layer #infosec #tryhackme #network_protocols
════════════════════════
𐀪 Author: Jonathan Sanfer
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 08:23:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_layer #infosec #tryhackme #network_protocols
Medium
Networking Core Protocols: DNS, Web, FTP, and Email Fundamentals
Introduction
⤷ Title: Threat Modeling a FinTech Microservices Application: Where DevSecOps Really Begins
════════════════════════
𐀪 Author: Lh1l0v3
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 11:24:33 GMT
════════════════════════
⌗ Tags: #application_security #cloud_security #software_engineering #security #software_development
════════════════════════
𐀪 Author: Lh1l0v3
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 11:24:33 GMT
════════════════════════
⌗ Tags: #application_security #cloud_security #software_engineering #security #software_development
Medium
Threat Modeling a FinTech Microservices Application: Where DevSecOps Really Begins
Part 3 of the “Implementing DevSecOps” series
⤷ Title: Upload de arquivos não é apenas uma funcionalidade: é uma fronteira de segurança
════════════════════════
𐀪 Author: Cristiano Junior
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 12:58:03 GMT
════════════════════════
⌗ Tags: #application_security #secure_coding #file_upload_security #cybersecurity #web_security
════════════════════════
𐀪 Author: Cristiano Junior
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 12:58:03 GMT
════════════════════════
⌗ Tags: #application_security #secure_coding #file_upload_security #cybersecurity #web_security
⤷ Title: Supabase Security Checklist for AI-Built Apps
════════════════════════
𐀪 Author: Secvura
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 15:32:30 GMT
════════════════════════
⌗ Tags: #startup #application_security #cybersecurity #supabase #software_development
════════════════════════
𐀪 Author: Secvura
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 15:32:30 GMT
════════════════════════
⌗ Tags: #startup #application_security #cybersecurity #supabase #software_development
Medium
Supabase Security Checklist for AI-Built Apps
Supabase is a good product. It is also, by design, a Postgres database exposed directly to the public internet. Your browser talks to that…
⤷ Title: What Every Developer Should Know About IDOR
════════════════════════
𐀪 Author: Ismail Tasdelen
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 22:43:16 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #idor #idor_vulnerability #application_security
════════════════════════
𐀪 Author: Ismail Tasdelen
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 22:43:16 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #idor #idor_vulnerability #application_security
Medium
What Every Developer Should Know About IDOR
In the realm of web application security, Insecure Direct Object Reference (IDOR) stands out as a critical vulnerability that often goes…
⤷ Title: How Hackers Take Control of Your Accounts — With PortSwigger Labs
════════════════════════
𐀪 Author: Pranav Aggarwal
════════════════════════
ⴵ Time: Sun, 26 Jul 2026 08:03:38 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #access_control
════════════════════════
𐀪 Author: Pranav Aggarwal
════════════════════════
ⴵ Time: Sun, 26 Jul 2026 08:03:38 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #access_control
Medium
How Hackers Take Control of Your Accounts — With PortSwigger Labs
Introduction
⤷ Title: Open Redirect Vulnerabilities: How Whitelist Validation Gets Bypassed
════════════════════════
𐀪 Author: Hasyyb
════════════════════════
ⴵ Time: Sun, 26 Jul 2026 10:13:46 GMT
════════════════════════
⌗ Tags: #web_application_security #application_security #api_penetration_testing #secure_coding
════════════════════════
𐀪 Author: Hasyyb
════════════════════════
ⴵ Time: Sun, 26 Jul 2026 10:13:46 GMT
════════════════════════
⌗ Tags: #web_application_security #application_security #api_penetration_testing #secure_coding
Medium
Open Redirect Vulnerabilities: How Whitelist Validation Gets Bypassed
Open redirect bugs are deceptively simple — and deceptively easy to get wrong. A single string-matching mistake in a “safe domain” check…
⤷ Title: Releasing Faction 2.0 at BlackHat Arsenal 2026
════════════════════════
𐀪 Author: Faction Security
════════════════════════
ⴵ Time: Sun, 26 Jul 2026 17:30:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #red_team #pentesting #hacking #application_security
════════════════════════
𐀪 Author: Faction Security
════════════════════════
ⴵ Time: Sun, 26 Jul 2026 17:30:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #red_team #pentesting #hacking #application_security
Medium
Releasing Faction 2.0 at BlackHat Arsenal 2026🎉
I’m excited to announce that I’ll be returning to Black Hat Arsenal 2026 in Las Vegas and SecTor 2026 in Canada to demo OWASP Faction 2.0 —…
⤷ Title: CVE-2025–4760: Authenticated Stored XSS Vulnerability in WSO2 API Manager - What You Need to Know
════════════════════════
𐀪 Author: Loginsoft
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 08:02:41 GMT
════════════════════════
⌗ Tags: #xss_vulnerability #wso2_api_manager #wso2 #application_security
════════════════════════
𐀪 Author: Loginsoft
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 08:02:41 GMT
════════════════════════
⌗ Tags: #xss_vulnerability #wso2_api_manager #wso2 #application_security
Medium
CVE-2025–4760: Authenticated Stored XSS Vulnerability in WSO2 API Manager - What You Need to Know
Introduction