Sam Stepanyan
@securestep9
@OWASPLondon Chapter Leader (#OWASP #OWASPLondon). OWASP Board Member. Application Security (#AppSec) Consultant. OWASP #Nettacker Project co-leader. #CISSP
คุณอาจชื่นชอบ
#NPM: Over 67,000 Fake npm Packages Flood Registry in Worm-Like Spam Attack Exposing Major Security Gaps: 👇 thehackernews.com/2025/11/over-4…
#Linux: Rust-based sudo-rs Affected By Multiple Security Vulnerabilities - Impacting #Ubuntu 25.10 including partial password exposure (CVE-2025-64170) and incorrect User ID in timestamps. Patches for both issues have been released: 👇 phoronix.com/news/sudo-rs-s…
#NPM: Malicious NPM Package @acitons/artifact With 206K+ Downloads Stole GitHub Tokens: #SoftwareSupplyChainSecirity 👇 hackread.com/fake-npm-packa…
Many thanks to everyone who came to my OWASP #Nettacker talk at the #OWASP Global AppSec 2025 Conference in Washington, DC. 👉github.com/OWASP/Nettacker
#SAP: Patches 3 Critical Vulnerabilities (CVSS 10.0) Including RCE / Code Injection and Hardcoded Credentials affecting SQL Anywhere Monitor (Non-GUI), SAP NetWeaver AS Java, and SAP Solution Manager:(CVE-2025-42890, CVE-2025-42944, CVE-2025-42887): 👇 securityonline.info/sap-november-2…
#AI: HackedGPT: Novel AI Vulnerabilities Open the Door for Private Data Leakage: unique indirect prompt injections, exfiltration of personal user information, persistence, evasion, and bypass of safety mechanisms: #AISecurity tenable.com/blog/hackedgpt…
#Kubernetes: Newly disclosed #vulnerabilities in the #runC container runtime used in #Docker & Kubernetes (CVE-2025-31133, CVE-2025-52565, CVE-2025-52881) could be exploited to bypass isolation restrictions & get access to the host system (escape): #k8s bleepingcomputer.com/news/security/…
In many decades of flying to/from London @HeathrowAirport I have never seen such negligence. Staff dumping baggage 🛄 under the warning sign for staff saying do not place baggage in this area or your access to the airport will be removed. Terminal 3:
A great talk by @shehackspurple "Threat Modeling Developer Behaviour: The Psychology of Bad Code" at the #OWASP Global AppSec USA 2025 in Washington, DC: sched.co/28Rqq
#Django: Critical SQL Injection Vulnerability in Django (CVE-2025-64459): endorlabs.com/learn/critical…
The #OWASP Global AppSec conference in Washington, DC starts with @DanielMiessler's keynote:
The next OWASP London Chapter in-person Meetup will take place on Novembver 20th, 2025, kindly hosted by Amazon London HQ. Raffle prize is kindly sponsored by @semgrep. Talks from @InsiderPhD and @JohnSotiro Register to attend this event here: 👇 meetup.com/owasp-london/e…
#NPM: Details have emerged about a now-patched critical security vulnerability in the popular "@react-native-community/cli" npm package that could be potentially exploited to run malicious operating system commands: #Software SupplyChainSecurity 👇 thehackernews.com/2025/11/critic…
#Wordpress: CVE-2025-11833 (CVSS 9.8) Critical Flaw in #PostSMTP Plugin Exposes 400,000+ WordPress Sites to Unauthenticated Account Takeover: 👇 securityonline.info/cve-2025-11833…
United States เทรนด์
- 1. #UFC322 59.3K posts
- 2. Kirby 15.4K posts
- 3. Bo Nickal 5,734 posts
- 4. Georgia 78.2K posts
- 5. Sark 3,289 posts
- 6. Ole Miss 8,693 posts
- 7. Bama 20.7K posts
- 8. Ewing 6,837 posts
- 9. Arch 19.8K posts
- 10. #AEWCollision 9,179 posts
- 11. #GoDawgs 6,435 posts
- 12. Wingo 2,015 posts
- 13. UConn 6,352 posts
- 14. Cash Jones N/A
- 15. Oklahoma 32K posts
- 16. Bronny 7,190 posts
- 17. Dillon Danis 1,408 posts
- 18. Wellmaker 4,757 posts
- 19. Texas 184K posts
- 20. #Svengoolie 2,092 posts
คุณอาจชื่นชอบ
-
mohammed eldeeb
@malcolmx0x -
André Baptista
@0xacb -
ProjectDiscovery
@pdiscoveryio -
Nicolas Grégoire
@Agarri_FR -
YoKo Kho
@YoKoAcc -
BSides London
@BSidesLondon -
streaak
@streaak -
Jeff Foley
@jeff_foley -
spaceraccoon | Eugene Lim
@spaceraccoonsec -
Th3g3nt3lman
@Th3G3nt3lman -
Zoe Braiterman
@zbraiterman -
Vandana Verma
@InfosecVandana -
Inti De Ceukelaire
@securinti -
OWASP London
@OWASPLondon -
nikhil(niks)
@niksthehacker
Something went wrong.
Something went wrong.