Live data from Hacker News

Viewing profile — hkr_mag

hkr_mag

HN member
Joined
Wed, Nov 20, 2013, 3:38 PM UTC
HN karma
204
Public activity
68 items

About hkr_mag

Wallarm, co-founder

Recent public activity

  1. story
  2. story
  3. comment
    Comment #17577485

    For those who is new to the world of SSRF vulnerabilities, check the SSRF Bible (full disclaimer: I'm with Wallarm): https://docs.google.com/document/d/1v1TkWZtrhzRLy0bYXBcdLUed...…

  4. comment
    Comment #17026755

    This is a list of what you can do for application security with Nginx (mostly with open source tools): https://github.com/wallarm/awesome-nginx-security My talk from Nginx conferen…

  5. comment
    Comment #16277568

    Awesome job, guys! We have several team members (mostly sales) using Polymail as a default email client.

  6. story
  7. story
  8. story
  9. comment
    Comment #14398969

    One of the most promising companies among the whole S16 batch. Congatz!

  10. story
  11. story
  12. story
  13. comment
    Comment #12535729

    +1. Success factor, API.ai, Evernote — three logos from my memory

  14. story
  15. comment
    Comment #12222274

    The main idea about Wallarm is to get inner knowledge of how the application works and how users use it. Based on this data, we craft dynamic rules for every single applications or…

  16. comment
  17. comment
    Comment #12220653

    Thanks Jason! Will be at DEFCON this year? It'll be great to meet there.

  18. comment
    Comment #12220647

    Hackerone and Bugcrowd do a great job. And we recommmend to run bug-bounty programs all the time. But companies which run fast and deploy code everyday with CI/CD (or several times…

  19. comment
    Comment #12220622

    Thanks for feedback! 1. Customers analyze traffic with locally installed NGINX-based instances (there is not DNS take-over). They send applications/traffic statistics to Wallarm Cl…

  20. comment
    Comment #12220274

    Hey there. Stepan, co-founder of Wallarm, here. Feel free to ask any questions.

  21. comment
    Comment #12006237

    It's because all the security guys (as we're) troll a lot and always skeptical (reasonably!) about blackboxes

  22. comment
    Comment #12006189

    It absolutely has. The vulnerability was detected with a vulnerability scanner built in Wallarm. As for detection of attacks, in many cases, it's much easier to identify the attack…

  23. comment
    Comment #12006032

    Pity you get it in this way. Exploit for WebSphere is just an example of a complicated case with Base64 inside XML where Wallarm can detect malicious request other WAF usually fail…

  24. comment
    Comment #12005924

    Cool. Let's catch up for a coffee than

  25. comment
    Comment #12005870

    Signal Sciences launched a bit after us. The main difference is in the result: - Guys are helping to detect anomalies and attacks, and I believe they're doing this better than regu…