Viewing profile — hkr_mag
hkr_mag
HN member- Joined
- Wed, Nov 20, 2013, 3:38 PM UTC
- HN karma
- 204
- Public activity
- 68 items
- HN profile
- View on Hacker News ↗
About hkr_mag
Recent public activity
- story
- story
-
comment
Comment #17577485
For those who is new to the world of SSRF vulnerabilities, check the SSRF Bible (full disclaimer: I'm with Wallarm): https://docs.google.com/document/d/1v1TkWZtrhzRLy0bYXBcdLUed...…
-
comment
Comment #17026755
This is a list of what you can do for application security with Nginx (mostly with open source tools): https://github.com/wallarm/awesome-nginx-security My talk from Nginx conferen…
-
comment
Comment #16277568
Awesome job, guys! We have several team members (mostly sales) using Polymail as a default email client.
- story
- story
- story
-
comment
Comment #14398969
One of the most promising companies among the whole S16 batch. Congatz!
- story
- story
- story
-
comment
Comment #12535729
+1. Success factor, API.ai, Evernote — three logos from my memory
- story
-
comment
Comment #12222274
The main idea about Wallarm is to get inner knowledge of how the application works and how users use it. Based on this data, we craft dynamic rules for every single applications or…
-
comment
Comment #12222230
Thanks!
-
comment
Comment #12220653
Thanks Jason! Will be at DEFCON this year? It'll be great to meet there.
-
comment
Comment #12220647
Hackerone and Bugcrowd do a great job. And we recommmend to run bug-bounty programs all the time. But companies which run fast and deploy code everyday with CI/CD (or several times…
-
comment
Comment #12220622
Thanks for feedback! 1. Customers analyze traffic with locally installed NGINX-based instances (there is not DNS take-over). They send applications/traffic statistics to Wallarm Cl…
-
comment
Comment #12220274
Hey there. Stepan, co-founder of Wallarm, here. Feel free to ask any questions.
-
comment
Comment #12006237
It's because all the security guys (as we're) troll a lot and always skeptical (reasonably!) about blackboxes
-
comment
Comment #12006189
It absolutely has. The vulnerability was detected with a vulnerability scanner built in Wallarm. As for detection of attacks, in many cases, it's much easier to identify the attack…
-
comment
Comment #12006032
Pity you get it in this way. Exploit for WebSphere is just an example of a complicated case with Base64 inside XML where Wallarm can detect malicious request other WAF usually fail…
-
comment
Comment #12005924
Cool. Let's catch up for a coffee than
-
comment
Comment #12005870
Signal Sciences launched a bit after us. The main difference is in the result: - Guys are helping to detect anomalies and attacks, and I believe they're doing this better than regu…