by Don Fried | May 11, 2020 | Application, Network, Wireless
Conducting pen tests might seem easy enough, with the right tools and some YouTube videos. Sure, you can do the test yourself, but here’s why you shouldn’t. Pen test certifications Pen testers should have certifications that show they know what they are...
by Don Fried | Apr 27, 2020 | Application, Compliance, Network, News
In speaking with many of our clients, MainNerve’s staff has fielded countless questions about the type of penetration testing and approach that will be used, such as black box testing. Often, clients are uncertain of what they are needing for their business, so...
by Don Fried | Feb 5, 2018 | Application
According to a report from Imperva, the number of new web application vulnerabilities disclosed in 2017 increased 212% over the previous year, jumping to 14,082 from 6,615. In addition, the report found more than half of all web applications have an exploit that is...
by Don Fried | Jan 9, 2018 | Application
An authentication bypass attack could allow a hacker to steal sensitive data, compromise your server and even take control of site administration. Are you doing enough to protect your applications from these attacks? Strong web application security systems evaluate...
by Don Fried | Dec 14, 2017 | Application
While cross-origin resource sharing (CORS) is a great way to enable open access across domain boundaries, it’s critical to test CORS requests as part of your web application security protocols. Without the proper testing, your site is at risk of security breaches. As...
by Don Fried | Oct 6, 2017 | Application
Cross-site scripting can severely compromise your network security and your company reputation. The most severe XSS (cross-site scripting) attacks allow an attacker to hijack your website visitors’ sessions and take over their accounts. According to OWASP, an XSS...