Thursday, January 16, 2025

Invicti's Web Application Security Blog Updates for 16 Jan 2025

View this email in your browser

Weekly Update – 16 Jan 2025


The role of an API scanner in API security


API security testing is a vital part of any modern application security program but requires automation to keep up with the pace of development. Having a comprehensive DAST solution that can act as an API scanner to find and scan API endpoints alongside other parts of your web application environment can make a big difference to AppSec efficiency and risk reduction.

The post The role of an API scanner in API security appeared first on Invicti.


 

First tokens: The Achilles' heel of LLMs


The Assistant Prefill feature available in many LLMs can leave models vulnerable to safety alignment bypasses (aka jailbreaking). This article builds on prior research to investigate the practical aspects of prefill security.

The post First tokens: The Achilles' heel of LLMs appeared first on Invicti.


 

3 types of vulnerability scanners that matter for application security


Application vulnerability scanning can mean different things depending on which part of the sprawling application stack you're looking at. There are at least three main types of vulnerability scanner that are relevant to securing modern cloud-based software, but dedicated application security scanners are especially important for covering your real-life application attack surface.

The post 3 types of vulnerability scanners that matter for application security appeared first on Invicti.


 

More Recent Articles

Black-box security testing
What is API Security? A comprehensive guide to API security
How to prevent CSRF attacks by using anti-CSRF tokens
How to select a DAST scanner
Ducks, dinosaurs, and XSS: A little knowledge is a dangerous thing in security
Twitter
Facebook
LinkedIn
Website
Copyright © 2025 Invicti, All rights reserved.
You are receiving this email because you opted in as a Blog Subscribers.

                                                                        Invicti Security Corp
1000 N Lamar Blvd Suite 300, Austin, TX 78703, United States

Want to change how you receive these emails?
You can update your preferences or unsubscribe from this list

No comments:

Post a Comment

LA fires: CoreLogic estimates $35bn to $45bn insured losses

CoreLogic is the first catastrophe risk modeller to make a public loss estimate available ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌...