Application Security
Resources Blog

Application Security

Keep up to date with the latest offensive security news, knowledge, and resources.
Putting the Token Before the Cart? A Guide on E-Commerce API Pentesting
Feb 26, 2026

Putting the Token Before the Cart? A Guide on E-Commerce API Pentesting

Why traditional API pentests miss real commerce risk and how cart tokens, checkout flows, and cross-layer auth gaps expose customer data.
Ahead of the Breach - DK Koran, BISO at NerdWallet
Feb 25, 2025

Ahead of the Breach - DK Koran, BISO at NerdWallet

DK Koran, BISO at NerdWallet, brings this episode of Ahead of the Breach unique insights from his extensive background testing critical infrastructure to his role leading application security.
Ahead of the Breach - Nir Rothenberg, CISO/CIO, Rapyd
Feb 13, 2025

Ahead of the Breach - Nir Rothenberg, CISO/CIO, Rapyd

Nir Rothenberg, CISO/CIO at Rapyd, takes us behind the scenes of Pegasus, one of the most discussed cyber tools in recent history.
Ahead of the Breach - Sean Finley, Director of Application & Product Security, Eptura
Jan 28, 2025

Ahead of the Breach - Sean Finley, Director of Application & Product Security, Eptura

Sean Finley, Director of Application & Product Security at Eptura, shares invaluable insights on building effective application security programs. Learn why flooding backlogs with vulnerabilities isn't the answer and discover how to create security processes that truly serve business goals while managing risk effectively.