Most Reliable Web Application Firewalls: Top 5 Vendors to Consider Multiple Encoded Attack Multiple encoded attack is a technique used to bypass security mechanisms which only decodes user data input once. Negative Security Model A negative security model defines what is forbidden and accepts the rest. It is the opposite of a Positive Security Model which defines what is allowed and rejects the rest. Nginx DoS NGINX is open source software for reverse proxying, HTTP load balancing, media streaming, caching and serves as an email proxy for IMAP, POP3 and SMTP. Null Byte Injection Null Byte Injection is an active exploitation technique used to bypass sanity checking filters in web infrastructure by adding URL-encoded null byte characters (i.e. %00, or 0x00 in hex) to the user-supplied data. OAuth2 Attack The OAuth 2.0 authorization framework is a protocol that allows a user to grant a third-party web site or application access to the user's protected resources, without necessarily revealing their long-term credentials or even their identity. OWASP API Top 10 Threats & 10 Ways to Mitigate Them The OWASP API Security Top 10 is a list of the ten most critical security risks for APIs, updated in 2023. The risks include Broken Object Level Authorization, Broken Authentication, Broken Object Property Level Authorization, and Unrestricted Resource Consumption. OWASP Top 10 2025: Vulnerabilities, Mitigations & Best Practices The OWASP Top 10 (last updated 2025) is a consensus list of the most critical security risks to web applications, compiled by the Open Web Application Security Project (OWASP). Previous ... 7 8 9 10 11 12 ... Next 10 11 12
Multiple Encoded Attack Multiple encoded attack is a technique used to bypass security mechanisms which only decodes user data input once.
Negative Security Model A negative security model defines what is forbidden and accepts the rest. It is the opposite of a Positive Security Model which defines what is allowed and rejects the rest.
Nginx DoS NGINX is open source software for reverse proxying, HTTP load balancing, media streaming, caching and serves as an email proxy for IMAP, POP3 and SMTP.
Null Byte Injection Null Byte Injection is an active exploitation technique used to bypass sanity checking filters in web infrastructure by adding URL-encoded null byte characters (i.e. %00, or 0x00 in hex) to the user-supplied data.
OAuth2 Attack The OAuth 2.0 authorization framework is a protocol that allows a user to grant a third-party web site or application access to the user's protected resources, without necessarily revealing their long-term credentials or even their identity.
OWASP API Top 10 Threats & 10 Ways to Mitigate Them The OWASP API Security Top 10 is a list of the ten most critical security risks for APIs, updated in 2023. The risks include Broken Object Level Authorization, Broken Authentication, Broken Object Property Level Authorization, and Unrestricted Resource Consumption.
OWASP Top 10 2025: Vulnerabilities, Mitigations & Best Practices The OWASP Top 10 (last updated 2025) is a consensus list of the most critical security risks to web applications, compiled by the Open Web Application Security Project (OWASP).