Skip to content

AppSec Observer

Contrast's application security blog provides the latest trends and tips in DevSecOps through instrumentation and security observability.

Subscribe Now
    Topics
    The Fast, Free, Fantastic Way to Find Cross-Site Scripting (XSS)

    The Fast, Free, Fantastic Way to Find Cross-Site Scripting (XSS)

    What Is XSS? Cross-site scripting (XSS) is really pretty simple. Any time untrusted data ends up an HTML page without..

    The Complexity of Web Applications

    Hear Jeff Williams, CTO of Contrast Security and Founding Member of the OWASP, as he discusses the complexity of web..

    The 10 Most Important Security Controls Missing in JavaEE

    The 10 Most Important Security Controls Missing in JavaEE

    JavaEE has some excellent built-in security mechanisms, but they don’t come close to covering all the threats that your..

    Staying Compliant with PCI DSS Can Be Easier Than You Think

    Staying Compliant with PCI DSS Can Be Easier Than You Think

    What Does PCI DSS Compliance Mean? In 2004, Visa, MasterCard, Discover, American Express, and JCB combined their..

    Point of View: Tesla opens up bug bounty program

    Point of View: Tesla opens up bug bounty program

    “Bug bounty programs have been surprisingly effective and I don’t see this being any different for Tesla. I think..

    Point of View: Army's Public Website Hacked by Unknown Intruders

    Point of View: Army's Public Website Hacked by Unknown Intruders

    All breaches are not created equal. The Army breach is actually considerably more disturbing than the IRS breach.

    Point of View: Federal Personnel Data Breach

    Point of View: Federal Personnel Data Breach

    Government agencies are in serious danger from cyber threats. While many have a continuous network security program in..

    IRS Hackers stole $39M and effected 2.7 million taxpayers

    It’s easy to jump all over the IRS for a seemingly obvious security problem. Congress and reporters are calling for a..

    IRS hit by data breach exposing 100,000 records

    Read what Jeff Williams has to say about the data breach the IRS experienced exposing over 100,000 records. What can..