03/12/2021 Two Overlooked Unicode vulnerabilities - Secure Programming Live Workshop The answer is 1000! Wondering why? What you see is not what interpreter sees! Watc the video below. Event: 7...
17/11/2021 Dangerous casting of Number type in JavaScript/TypeScript In our first Defensive Programming principle we learnt that if we are dealing with weakly typed languages, we must first...
04/11/2021 Go 1.18 comes with two exciting security features It is exciting for me to see two new (security) features that will be added to Go. This will shift...
20/10/2021 Not normalising before validation bypasses security checks A security patch that was added to Apache’s httpd to prevent path traversal vulnerability was still vulnerable. This vulnerability was...