Web App Security

Our Latest Research Around Web Application Security, Tools, Attacks, Insights and Resources
Web App Security
May 4, 2022

How to Choose Your Pentest Partner in 2022

Still confused about how to choose a competent Penetration Testing Technology Partner for your application or infrastructure? Here is a post to help you make this decision and understand the questions you should be asking.
Web App Security
May 4, 2022

The World of Web 3.0 & Blockchain

Interested in Blockchain? Want to understand what is Web3.0? Here is a short post to help you understand these..
Web App Security
May 25, 2021

Setting Up Web App Penetration Testing Lab Using ThreadsApp

Introduction With the sheer number of cyber threats which occur every day, a lot of individuals want to tackle that and to …
Web App Security
July 23, 2019

Markdown For Penetration testers & Bug-bounty hunters

why is Markdown For Penetration testers & Bug-bounty hunters Our guide “Markdown For Penetration testers & Bug-bounty hunters…
Web App Security
September 8, 2018

Finding and exploiting Blind XSS

If you are here, we are already presuming that you know what XSS is and the major types of XSS(i.e Reflected and Stored) …
Web App Security
June 22, 2018

Doing RECON the correct way

Hey guys, today we will discuss Information gathering aka Recon which is the foundation of every bug bounties or penetration …
Web App Security
June 18, 2018

How can Expired URLs lead to an all-new kind of vulnerability?

Hey guys. Actually, this is the 2nd part of the vulnerability which we discussed in the earlier post. You can read that post…
Web App Security
June 13, 2018

Bypassing Cloudflare WAF to get more vulnerabilities

Bypassing WAF (Web Application Firewall) Hey guys, If you have been doing penetration testing or bug bounties for some time…
Web App Security
June 6, 2018

A User can change the personal details of any other user broken access control

Broken Access Control Hi everyone. Welcome to this new post from ENCIPHERS. So recently, our team at ENCIPHERS conducted …