Last of OWASP’s Top 10 Still a Potent Threat
ID: 241d6063-b5ce-5f77-9461-21c5af68f8fa
STIX ID: report--241d6063-b5ce-5f77-9461-21c5af68f8fa
Feed Name: Security Ledger
Threat Score
Akamai's Threat Research Team analyzed an SEO manipulation campaign that abused open redirect functionality in 553 web pages (including sites belonging to large organizations and government entities), finding 270 of those pages vulnerable to reflected XSS; the report shows how the common "notify and confirm" redirection pattern can be exploited by attackers and recommends whitelisting, robots.txt disallow, and link/meta nofollow as mitigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
