Prototype pollution in grpc and @grpc/grpc-js

"The package grpc before 1.24.4 and the package @grpc/grpc-js before 1.1.8 are vulnerable to Prototype Pollution via loadPackageDefinition."Read More ...

Continue Reading
What does Zero Trust mean for API security?

The old mentality of building a moat around important assets and trusting anyone or anything that is already inside the castle perimeter has failed us. Attackers have developed many techniques to jump ...

Continue Reading
Meaning of WAF. What does stand for ?

The most wearisome and fundamental trouble in app-development is to ensure its high security. The enhanced security practices an application adopts, the better is its performance. While we consider ap ...

Continue Reading
What Is API Management ? All That Novices To Experts Should Learn

The world of mobile and web app development revolves around API or Application Programming Interface. It’s a magic wand using which an application developer lets the applications correspond with each ...

Continue Reading
CVE-2021-31350

An Improper Privilege Management vulnerability in the gRPC framework, used by the Juniper Extension Toolkit (JET) API on Juniper Networks Junos OS and Junos OS Evolved, allows a network-based, low-pri ...

Continue Reading
Juniper Junos OS Vulnerability (JSA11215)

The version of Junos OS installed on the remote host is affected by a vulnerability as referenced in the JSA11215 advisory. - An Improper Privilege Management vulnerability in the gRPC framework, us ...

Continue Reading
Guide: How to Hack API in 60 minutes or API Threats Simulation with Open-Source Tools

**What is API?** API is the abbreviation for Application Programming Interface, which is a product middle person that permits two applications to converse with one another. ![](https://cdn-images-1.me ...

Continue Reading
CVE-2021-41130

Extensible Service Proxy, a.k.a. ESP is a proxy which enables API management capabilities for JSON/REST or gRPC API services. ESPv1 can be configured to authenticate a JWT token. Its verified JWT clai ...

Continue Reading

Back to Main

Subscribe for the latest news: