ModSecurity
@ModSecurityModSecurity is an Open Source web application firewall developed by Trustwave's SpiderLabs.
Similar User
@SpiderLabs
@jduck
@teamcymru
@zaproxy
@ToolsWatch
@qualys
@snort
@packet_storm
@netbiosX
@bartblaze
@hdmoore
@DidierStevens
@Trustwave
@xme
@ivanristic
CVE-2024-46292 was published related to ModSecurity: cve.mitre.org/cgi-bin/cvenam… Here is the team's resolution: modsecurity.org/20241011/about… If you have any question you can ask here: github.com/owasp-modsecur…
The CRS project has released version 4.6.0 for CRS 4 and version 3.3.6 for CRS 3. The new releases tackle two multipart file upload bypass methods. All users are requested to update to the new releases. Read more and get the new releases: coreruleset.org/20240829/crs-v…
New versions of ModSecurity have been released, see the blog post: modsecurity.org/20240903/new-v…
modsecurity.org/20240830/modse… After a long period, the modsecurity.org website is available again with renewed content and form.
Please save the date: we would like to organize a mini-event on June 5, 2024, where we can meet everyone in person and discuss future tasks. The venue is Leuven, Belgium - the exact location has yet to be determined. We will meet around 13:00 and will leave about 18:00.
This is a bit of a portrait of the #OWASP #WAF projects I am co-leading. Translation should be easy if you do not read German. CC @coreruleset, @ModSecurity
Seit Anfang Jahr verwaltet @owasp die "Web Application Firewall"-Engine, welche unter anderem das #Evoting-System der @swisspost schützt. Wir haben uns mit dem Verantwortlichen, @ChrFolini, unterhalten. inside-it.ch/open-source-fi…
#CRS is largely underestimated by new OpSec. Thanks for your work ;-)
Technical problems with Youtube for my OWASP ModSecurity presentation starting now. Organizers invite everybody directly into zoom call: us06web.zoom.us/j/85452777497?…
Our co-lead @ChrFolini will do an online OWASP ModSecurity presentation today at 19:00 CET with the @owasp_NL chapter. You can watch this live at youtube.com/watch?v=G_av5t… It's the first account of how ModSecurity moved under the OWASP roof and what the plans of the new team are.
Congratulations on a great #CRS4 release, @coreruleset It's awesome to live under the same #OWASP roof.
Let CRS4 be your valentine! The @OWASP CRS / @CoreRuleSet team is proud to release CRS 4.0. Years in the making, it brings your WAF the best detection ever and a new plugin architecture. Read more at coreruleset.org/20240214/let-c… #CRS4 #CRS3 #WAF no more #WAFBypass #bugbountytips
Hear our project co-lead @ChrFolini talk about the dramatic story that lead ModSecurity to @OWASP This is an online presentation later this week on Thu 15th, 7pm CET with the @owasp_NL chapter.
.@owasp_NL has invited me to talk about @ModSecurity and how it moved to become #OWASP #ModSecurity in Jan 2024: The story behind it all, interesting plot twists and what it means for OWASP going forward. This is an online presentation on Thu, 7pm, CET. meetup.com/owasp-chapter-…
Congratulations on version 3.1.0 @corazaio!
Valentine’s Day present from the first @CoreRuleSet chat of 2024: #CRS v4 to be released on Wednesday, February 14! In other news: due to a lack of capacity, CRS will skip this year’s Google Summer of Code. See the chat agenda with decisions here: github.com/coreruleset/co…
.@AndreaTheMiddle describes CVE-2024-1019 in greater detail and points out how #ModSecurity v2 users can be affected by a related problem depending on the rules being used. blog.sicuranext.com/modsecurity-pa…
The new #OWASP @ModSecurity team is happy to report that we successfully published libModSecurity 3.0.12. The first release done by the new organization. This is a fix for #CVE 2024-1019. Details and all the links at owasp.org/www-project-mo…
.@Trustwave #Spiderlabs has transferred @ModSecurity to @OWASP on Jan 25. The preliminary website of #OWASP #ModSecurity is at owasp.org/www-project-mo… The repo is at github.com/owasp-modsecur… OWASP ModSecurity will release version 3.0.12 later today (security fix).
United States Trends
- 1. Madison 96,1 B posts
- 2. #schoolshooting 11,8 B posts
- 3. Electoral College 17,4 B posts
- 4. For Good 509 B posts
- 5. #MyMastermind 1.970 posts
- 6. $CUTO 9.971 posts
- 7. USPS 24,5 B posts
- 8. Sacramento State 2.111 posts
- 9. Sayin 110 B posts
- 10. Sac State N/A
- 11. Clyde 5.782 posts
- 12. Superman 168 B posts
- 13. Mike Vick 2.065 posts
- 14. Abundant Life Christian School 42,9 B posts
- 15. #AlaskaHolidaySweater N/A
- 16. KMFDM N/A
- 17. Constitutional Amendment 4.536 posts
- 18. Air Noland 1.179 posts
- 19. Senate Democrats 10,6 B posts
- 20. #EndGunViolenceNow 2.721 posts
Who to follow
-
SpiderLabs
@SpiderLabs -
Joshua J. Drake
@jduck -
TEAM CYMRU
@teamcymru -
Zed Attack Proxy
@zaproxy -
NJ
@ToolsWatch -
Qualys
@qualys -
Snort 🐷
@snort -
packet storm
@packet_storm -
Panos Gkatziroulis 🦄
@netbiosX -
Bart
@bartblaze -
HD Moore
@hdmoore -
Didier Stevens
@DidierStevens -
Trustwave
@Trustwave -
Xavier Mertens @[email protected] 🇧🇪
@xme -
Ivan Ristic
@ivanristic
Something went wrong.
Something went wrong.