cryptonvester (29)in #dmania • 6 years ago • NoneFair Point, Soggy Toasts SuckView post on dManiacryptonvester (29)in #security • 6 years ago • None2017 OWASP Top 10 for PHP Developers Part 3: Sensitive Data ExposureThere is a lot of exposed data floating on the web. People hear about such events all the time – it seems like data…cryptonvester (29)in #dmania • 6 years ago • NoneAverage Dmania userView post on dManiacryptonvester (29)in #dmania • 6 years ago • NoneTom and JerryView post on dManiacryptonvester (29)in #vulnerability • 6 years ago • None2017 OWASP Top 10 for PHP Developers Part 2: Broken Authentication and Session ManagementWhile browsing the web, you click on a link. The link leads you to a page like this: Looks like a usual login…cryptonvester (29)in #dmania • 6 years ago • NoneA creative tittleView post on dManiacryptonvester (29)in #hacking • 6 years ago • NoneOther uses of .htaccess: Making a .htaccess-based WAFIf you’re a web developer, you’re probably fammiliar with .htaccess. If you’re not, let me give you a quick…cryptonvester (29)in #dmania • 6 years ago • NoneCatView post on dManiacryptonvester (29)in #website • 6 years ago • NoneAn old Ticket System Security AnalysisSince I started building websites few years ago, I’ve created a few projects. Some of them never saw daylight, some of…cryptonvester (29)in #dmania • 6 years ago • NoneWorth readingView post on dManiacryptonvester (29)in #dmania • 6 years ago • NoneDeep shitView post on dManiacryptonvester (29)in #dmania • 6 years ago • NoneHer majestyView post on dManiacryptonvester (29)in #password • 6 years ago • NoneYour passwords are terrible, and it’s time to do something about itYou know what surprises me the most in regards to data breaches? It’s the fact that people still continue to use…cryptonvester (29)in #hacking • 6 years ago • NoneA journey back in time: The analysis of the first version of my WAFAs you might already know, back in 2014, I’ve developed a custom Web Application Firewall. The primary reason I’ve…cryptonvester (29)in #dmania • 6 years ago • NoneWhen you sell BTC for 19.5 kView post on dManiacryptonvester (29)in #security • 7 years ago • None10 ways to increase the security of your WordPress applicationWhen someone mentions WordPress, you will often hear people saying “don’t use it, it’s insecure”. In a sense, those…cryptonvester (29)in #dmania • 7 years ago • NoneNo it's a pigeonView post on dManiacryptonvester (29)in #hardcoding • 7 years ago • NoneHow I could have pwned my highschool (SQLi, CSRF, Hardcoded Passwords & XSS) Part 2: Investigating the BreachHonestly, this is a blog title I’ve never expected to write, but hey, data breaches happen – no website is exempt from…cryptonvester (29)in #website • 7 years ago • NoneYour website needs a CSP. Here’s whyHere’s a scenario: You create a website and make it available online. Your website ends up getting hacked (it…cryptonvester (29)in #hacking • 7 years ago • NoneYour website has assets – You need SRIAll websites have something worth protecting. Those valuable things are frequently loaded from a CDN (Content Delivery…