<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Top AppDefects for January '21 in Threats</title>
    <link>https://community.isc2.org/t5/Threats/Top-AppDefects-for-January-21/m-p/43173#M279</link>
    <description>&lt;P&gt;Here is what&amp;nbsp;&lt;A href="https://www.bugcrowd.com/blog/common-bugs-of-2021/" target="_blank" rel="noopener"&gt;BugCrowd&lt;/A&gt;&amp;nbsp;is seeing as trends in application defects for the month of January 2021. No real surprises except for number 9 Open Redirects. Validating URLs is hard...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1 – SENSITIVE DATA EXPOSURE&lt;BR /&gt;2 – CROSS-SITE SCRIPTING&lt;BR /&gt;3 – SUBDOMAIN TAKEOVER&lt;BR /&gt;4 – BROKEN ACCESS CONTROL&lt;BR /&gt;5 – PRIVILEGE ESCALATION&lt;BR /&gt;6 – SENSITIVE INFORMATION PASSED TO HTTP BY DEFAULT&lt;BR /&gt;7 – AUTHENTICATION BYPASS&lt;BR /&gt;8 – CROSS-SITE REQUEST FORGERY (CSRF)&lt;BR /&gt;9 – OPEN REDIRECT&lt;BR /&gt;10 – REMOTE CODE EXECUTION&lt;/P&gt;</description>
    <pubDate>Mon, 09 Oct 2023 09:47:36 GMT</pubDate>
    <dc:creator>AppDefects</dc:creator>
    <dc:date>2023-10-09T09:47:36Z</dc:date>
    <item>
      <title>Top AppDefects for January '21</title>
      <link>https://community.isc2.org/t5/Threats/Top-AppDefects-for-January-21/m-p/43173#M279</link>
      <description>&lt;P&gt;Here is what&amp;nbsp;&lt;A href="https://www.bugcrowd.com/blog/common-bugs-of-2021/" target="_blank" rel="noopener"&gt;BugCrowd&lt;/A&gt;&amp;nbsp;is seeing as trends in application defects for the month of January 2021. No real surprises except for number 9 Open Redirects. Validating URLs is hard...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1 – SENSITIVE DATA EXPOSURE&lt;BR /&gt;2 – CROSS-SITE SCRIPTING&lt;BR /&gt;3 – SUBDOMAIN TAKEOVER&lt;BR /&gt;4 – BROKEN ACCESS CONTROL&lt;BR /&gt;5 – PRIVILEGE ESCALATION&lt;BR /&gt;6 – SENSITIVE INFORMATION PASSED TO HTTP BY DEFAULT&lt;BR /&gt;7 – AUTHENTICATION BYPASS&lt;BR /&gt;8 – CROSS-SITE REQUEST FORGERY (CSRF)&lt;BR /&gt;9 – OPEN REDIRECT&lt;BR /&gt;10 – REMOTE CODE EXECUTION&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 09:47:36 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Threats/Top-AppDefects-for-January-21/m-p/43173#M279</guid>
      <dc:creator>AppDefects</dc:creator>
      <dc:date>2023-10-09T09:47:36Z</dc:date>
    </item>
  </channel>
</rss>

