All industries are at risk of credential stuffing and account takeover (ATO) attacks. However, some industries are at a greater risk because of the sensitive information or volume of customer data they possess. While cyber-attacks come in all forms and techniques, credential stuffing involves an interconnected network where cyber criminals access critical customer information from one site and then go on to launch account takeover (ATO) attacks on different sites by stuffing information into login…
Since 1991, Web Application Firewall, commonly referred to as WAF, has become one of the most common application security technologies…
Government bodies are clamping down heavily on institutions and organizations that handle sensitive customer data. For APIs, tokens are used…
Ensuring the security of web applications and APIs is more critical than ever. With threats becoming increasingly prevalent and sophisticated,…
In our Annual API ThreatStats report, we highlighted the increasing threat of API Leaks. An API Leak is the disclosure…
Credential Stuffing, a vital yet often overlooked aspect of cybersecurity, needs to be addressed with urgency. An alarmingly large segment…
Do you know what 23andMe, Jason’s Deli, North Face, and Hot Topic have in common? They’ve all been breached by…
Introduction On January 16 2024, Atlassian issued a significant alert on a critical Server-Side Template Injection (SSTI) vulnerability in Confluence…
The Wallarm Security Research team is pleased to share the latest version of our API ThreatStats report. This report serves…