View CSAF| Cybersecurity and Infrastructure Security Agency CISA
Deserialization attacks are a critical software flaw that can allow attackers to inject malicious code into applications. Discover how deserialization attacks work and how attackers can exploit them.| Packetlabs
SSRF(Server Side Request Forgery)という脆弱性ないし攻撃手法が最近注目されています。以下は、ここ3ヶ月にSSRFについて言及された記事です。 EC2上のAWS CLIで使われている169.254について SSRF脆弱性を利用したGCE/GKE...| blog.tokumaru.org
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.| cwe.mitre.org
Common Weakness Enumeration (CWE) is a list of software weaknesses.| cwe.mitre.org
Deserialization of untrusted data on the main website for The OWASP Foundation. OWASP is a nonprofit foundation that works to improve the security of software.| owasp.org
ZCS 10.1.5 Released| wiki.zimbra.com
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.| cwe.mitre.org