Okta’s Secure by Design Pledge – One Year On
Foreword A year ago, Okta was among the first technology providers to pledge our commitment to the US Cybersecurity and Infrastructure Security Agency (CISA)’s seven Secure by Design principles. To…
Foreword A year ago, Okta was among the first technology providers to pledge our commitment to the US Cybersecurity and Infrastructure Security Agency (CISA)’s seven Secure by Design principles. To…
The Images service, built in Rust on Workers, runs on every machine in Cloudflare’s edge network. To handle client connections, we use hyper, an open-source HTTP library for Rust. Last…
Major Threats & Vulnerabilities Critical Exploits and Zero-Day Vulnerabilities CISA warned of active exploitation of a critical Adobe ColdFusion flaw (CVE-2026-48282), urging immediate patching and heightened monitoring for unusual activity…
Amelia Coen | Friday, 12 December 2025 at 11:34 UTC In 2025, we set out with a simple mission: take Burp Suite on the road and meet the global AppSec…
ISO/IEC 27001 continues to be a globally recognized security standard and a consistently popular choice for today’s organizations seeking to demonstrate robust security controls and the effectiveness of their Information…
On June 22, 2026, President Trump signed Executive Order 14412, “Securing the Nation Against Advanced Cryptographic Attacks.” The order sets a December 31, 2030, deadline for federal agencies to transition…
This is the final article in our series by Curt Aubley, CEO of Sevii. If you missed the prior installments, please read the first and second articles in the series….
OffSec Experienced Penetration Tester (OSEP) The OffSec Experienced Penetration Tester is ideal for penetration testers and ethical hackers who need more advanced techniques to sharpen offensive skills against modern enterprise defenses. Across…
Hassan Ud-Deen | Friday, 16 January 2026 at 00:00 UTC Note: This is a guest post by pentester Julen Garrido Estévez (@b3xal). Pentester Julen Garrido Estévez (@b3xal) wanted to verify whether Burp…
In many of the most impactful incidents of the past two years, attackers gained privileged access to systems by tricking IT support personnel into resetting the passwords and MFA factors…