⤷ Title: The Secrets of Secure Code
════════════════════════
𐀪 Author: Cyber Security Research
════════════════════════
ⴵ Time: Mon, 04 Aug 2025 16:55:19 GMT
════════════════════════
⌗ Tags: #vulnerability_prevention #code_security #secure_coding #application_security #software_security
════════════════════════
𐀪 Author: Cyber Security Research
════════════════════════
ⴵ Time: Mon, 04 Aug 2025 16:55:19 GMT
════════════════════════
⌗ Tags: #vulnerability_prevention #code_security #secure_coding #application_security #software_security
Medium
The Secrets of Secure Code
In the rapidly evolving landscape of modern software, where applications form the backbone of businesses and daily life, the integrity and…
⤷ Title: PortSwigger Lab: Blind OS Command Injection with Out-of-Band Exfiltration
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Tue, 12 Aug 2025 09:10:59 GMT
════════════════════════
⌗ Tags: #portswigger_lab #code_security #command_injection #application_security #portswigger
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Tue, 12 Aug 2025 09:10:59 GMT
════════════════════════
⌗ Tags: #portswigger_lab #code_security #command_injection #application_security #portswigger
Medium
PortSwigger Lab: Blind OS Command Injection with Out-of-Band Exfiltration
Sometimes, the most powerful exploits don’t show a single hint in the app’s response.
⤷ Title: PortSwigger Lab : Unprotected Admin Functionality with Unpredictable URL
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Fri, 29 Aug 2025 07:47:10 GMT
════════════════════════
⌗ Tags: #application_security #penetration_testing #secure_coding #code_security #web_penetration_testing
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Fri, 29 Aug 2025 07:47:10 GMT
════════════════════════
⌗ Tags: #application_security #penetration_testing #secure_coding #code_security #web_penetration_testing
Medium
PortSwigger Lab : Unprotected Admin Functionality with Unpredictable URL
This lab highlights how sensitive paths hidden in source code can lead directly to admin functionality — and without proper access control…
⤷ Title: Securing Your GitHub Codebase: 6 Essential Tools Every Developer Must Know
════════════════════════
𐀪 Author: Vedant Vartak
════════════════════════
ⴵ Time: Fri, 12 Sep 2025 00:53:52 GMT
════════════════════════
⌗ Tags: #code_security #github #github_security #cybersecurity
════════════════════════
𐀪 Author: Vedant Vartak
════════════════════════
ⴵ Time: Fri, 12 Sep 2025 00:53:52 GMT
════════════════════════
⌗ Tags: #code_security #github #github_security #cybersecurity
Medium
Securing Your GitHub Codebase: 6 Essential Tools Every Developer Must Know
Why Repository Security Is Critical in 2025
⤷ Title: Generative AI use case for Penetration Testing
════════════════════════
𐀪 Author: cyber_pix
════════════════════════
ⴵ Time: Thu, 18 Sep 2025 06:11:45 GMT
════════════════════════
⌗ Tags: #pentesting #ai_code #cloud_security #code_security #penetration_testing
════════════════════════
𐀪 Author: cyber_pix
════════════════════════
ⴵ Time: Thu, 18 Sep 2025 06:11:45 GMT
════════════════════════
⌗ Tags: #pentesting #ai_code #cloud_security #code_security #penetration_testing
Medium
Generative AI use case for Penetration Testing
Generative AI is not just a tool for content creation; it’s rapidly becoming a force multiplier in the world of cybersecurity, particularly…
⤷ Title: Cortex Cloud Code Security: A Comprehensive Guide
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
ⴵ Time: Tue, 07 Oct 2025 05:46:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #network_security #cortex_cloud #code_security #palo_alto_networks
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
ⴵ Time: Tue, 07 Oct 2025 05:46:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #network_security #cortex_cloud #code_security #palo_alto_networks
Medium
Cortex Cloud Code Security: A Comprehensive Guide
The rise of cloud-native applications has transformed the way enterprises build, deploy, and manage their software. While this shift…
⤷ Title: Next-Gen AI Security Engineers Arrive: New AI-SAST Tools Find Logic Flaws and 50+ Zero-Days in Code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 03:51:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI_SAST #Code Security #Corgea #LLM #Penetration Testing #Static Analysis #Vulnerability Detection #ZeroPath
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 03:51:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI_SAST #Code Security #Corgea #LLM #Penetration Testing #Static Analysis #Vulnerability Detection #ZeroPath
Penetration Testing Tools
Next-Gen AI Security Engineers Arrive: New AI-SAST Tools Find Logic Flaws and 50+ Zero-Days in Code
New AI-SAST tools like ZeroPath and Corgea are using LLM reasoning to find business logic flaws and zero-days in source code, dramatically reducing false positives and human effort.
⤷ Title: Securing the Stateless Backend: Identity and Isolation in Java Microservices
════════════════════════
𐀪 Author: cyber_pix
════════════════════════
ⴵ Time: Thu, 20 Nov 2025 05:06:02 GMT
════════════════════════
⌗ Tags: #cloud_security #devsecops #code_security #backend_development #application_security
════════════════════════
𐀪 Author: cyber_pix
════════════════════════
ⴵ Time: Thu, 20 Nov 2025 05:06:02 GMT
════════════════════════
⌗ Tags: #cloud_security #devsecops #code_security #backend_development #application_security
Medium
Securing the Stateless Backend: Identity and Isolation in Java Microservices
The shift to stateless Java microservices orchestrated by platforms like Kubernetes fundamentally changes the security perimeter. The old…
⤷ Title: Hardcoded Credential (in Current Code): CustomRegex — SSC Fortify Security Findings Analysis — Part…
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Fri, 26 Dec 2025 06:02:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #security_vulnerabilities #infosec #code_security
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Fri, 26 Dec 2025 06:02:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #security_vulnerabilities #infosec #code_security
Medium
Hardcoded Credential (in Current Code): CustomRegex — SSC Fortify Security Findings Analysis — Part 1
The silent threat hiding in your code: Hard-coded credentials are every cybercriminal’s favorite treasure map.
⤷ Title: .NET File Operation Security Vulnerabilities — SSC Fortify Security Findings Analysis — Part 2
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 09:15:25 GMT
════════════════════════
⌗ Tags: #code_security #infosec #cybersecurity #application_security #security_vulnerabilities
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 09:15:25 GMT
════════════════════════
⌗ Tags: #code_security #infosec #cybersecurity #application_security #security_vulnerabilities
Medium
.NET File Operation Security Vulnerabilities — SSC Fortify Security Findings Analysis — Part 2
“Security is not a product, but a process.” — Bruce Schneier
⤷ Title: ASP.NET Middleware Out of Order: Insecure Transport — SSC Fortify Security Findings Analysis —…
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 09:55:28 GMT
════════════════════════
⌗ Tags: #security_vulnerabilities #code_security #cybersecurity #application_security #infosec
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 09:55:28 GMT
════════════════════════
⌗ Tags: #security_vulnerabilities #code_security #cybersecurity #application_security #infosec
Medium
ASP.NET Middleware Out of Order: Insecure Transport — SSC Fortify Security Findings Analysis — Part 3
“Your middleware pipeline is like airport security — skip a checkpoint and everyone gets through.”
⤷ Title: Connection String Parameter Pollution — SSC Fortify Security Findings Analysis — Part 4
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 18:02:46 GMT
════════════════════════
⌗ Tags: #application_security #code_security #security_vulnerabilities #infosec #cybersecurity
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 18:02:46 GMT
════════════════════════
⌗ Tags: #application_security #code_security #security_vulnerabilities #infosec #cybersecurity
⤷ Title: 3rd Party Component Vulnerabilities — SSC Fortify Security Findings Analysis — Part 5
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 04 Jan 2026 09:02:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #infosec #code_security #security_vulnerabilities
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 04 Jan 2026 09:02:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #infosec #code_security #security_vulnerabilities
Medium
3rd Party Component Vulnerabilities — SSC Fortify Security Findings Analysis — Part 5
Introduction
⤷ Title: Mass Assignment: Insecure Binder Configuration — SSC Fortify Security Findings Analysis — Part 6
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 11 Jan 2026 06:02:49 GMT
════════════════════════
⌗ Tags: #application_security #code_security #security_vulnerabilities #cybersecurity #infosec
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 11 Jan 2026 06:02:49 GMT
════════════════════════
⌗ Tags: #application_security #code_security #security_vulnerabilities #cybersecurity #infosec
Medium
Mass Assignment: Insecure Binder Configuration — SSC Fortify Security Findings Analysis — Part 6
Introduction
⤷ Title: ASP.NET MVC Bad Practices: Model With Required Non-Nullable Property — Part 7
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 18 Jan 2026 10:04:08 GMT
════════════════════════
⌗ Tags: #infosec #application_security #cybersecurity #code_security #security_vulnerabilities
════════════════════════
𐀪 Author: Okan Yurt
════════════════════════
ⴵ Time: Sun, 18 Jan 2026 10:04:08 GMT
════════════════════════
⌗ Tags: #infosec #application_security #cybersecurity #code_security #security_vulnerabilities
Medium
ASP.NET MVC Bad Practices: Model With Required Non-Nullable Property — Part 7
In the world of automated analysis, context is king, and tools are merely servants. Static Application Security Testing (SAST) tools like…
⤷ Title: Snyk and uv, Better Together
════════════════════════
𐀪 Author: Snyk
════════════════════════
ⴵ Time: Wed, 25 Feb 2026 02:00:22 GMT
════════════════════════
⌗ Tags: #ai #python #code_security #application_security
════════════════════════
𐀪 Author: Snyk
════════════════════════
ⴵ Time: Wed, 25 Feb 2026 02:00:22 GMT
════════════════════════
⌗ Tags: #ai #python #code_security #application_security
Medium
Snyk and uv, Better Together
Python powers today’s AI revolution, from machine learning frameworks to agentic workflows and data science pipelines. But for years, Python’s packaging ecosystem has lagged behind developer …
⤷ Title: Code Review Süreci Nedir?
════════════════════════
𐀪 Author: Dogukan İSPİRLİ
════════════════════════
ⴵ Time: Fri, 10 Apr 2026 21:07:25 GMT
════════════════════════
⌗ Tags: #software_development #sourcecodeanalysis #application_security #code_review #code_security
════════════════════════
𐀪 Author: Dogukan İSPİRLİ
════════════════════════
ⴵ Time: Fri, 10 Apr 2026 21:07:25 GMT
════════════════════════
⌗ Tags: #software_development #sourcecodeanalysis #application_security #code_review #code_security
Medium
Code Review Süreci Nedir?
Code review (kod incelemesi) süreci, yazılım geliştirme dünyasının en önemli kalite kontrol mekanizmalarından biridir. Sadece hataları…
⤷ Title: New GitLab Security Updates Fix Critical Flaws in Duo AI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 29 May 2026 00:14:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Code Security #CVE_2026_4868 #Duo AI Workflows #GitLab CE #GitLab EE #GitLab Patch #SecOps
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 29 May 2026 00:14:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Code Security #CVE_2026_4868 #Duo AI Workflows #GitLab CE #GitLab EE #GitLab Patch #SecOps
Daily CyberSecurity
New GitLab Security Updates Fix Critical Flaws in Duo AI
The latest GitLab security updates address high-severity bugs. Download the patch to ensure the Duo AI flaw fixed protects your DevSecOps pipeline.
⤷ Title: Massive npm Dependency Confusion Attack Infiltrates Corporate Ecosystems
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 30 May 2026 01:44:11 +0000
════════════════════════
⌗ Tags: #Malware #Code Security #dependency confusion #DevSecOps #JavaScript dropper #Microsoft Threat Intelligence #npm registry #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 30 May 2026 01:44:11 +0000
════════════════════════
⌗ Tags: #Malware #Code Security #dependency confusion #DevSecOps #JavaScript dropper #Microsoft Threat Intelligence #npm registry #supply chain attack
Daily CyberSecurity
Massive npm Dependency Confusion Attack Infiltrates Corporate Ecosystems
Microsoft uncovers a massive npm dependency confusion attack targeting enterprise infrastructure. Learn how these malicious packages discovered run code.
⤷ Title: Secure Software Development Lifecycle (SSDLC): Building Security into Every Stage
════════════════════════
𐀪 Author: Kunal Arora
════════════════════════
ⴵ Time: Tue, 07 Jul 2026 04:59:22 GMT
════════════════════════
⌗ Tags: #devsecops #software_security #code_security #application_security
════════════════════════
𐀪 Author: Kunal Arora
════════════════════════
ⴵ Time: Tue, 07 Jul 2026 04:59:22 GMT
════════════════════════
⌗ Tags: #devsecops #software_security #code_security #application_security
Medium
Secure Software Development Lifecycle (SSDLC): Building Security into Every Stage
As organizations develop more software applications to support digital transformation, security must become an integral part of the…