Blog
How to write an Application Security Resume
November 29, 2019 · OpSecX
Introduction This post aims to help people to write appropriate resume for Application Security related roles like Security Consultant/Analyst, Security Engineer, Product Security Engineer, Security Researcher,.Read more
Bypassing Hotstar Premium with DOM manipulation and some JavaScript
September 7, 2018 · OpSecX
tl;dr Hotstar is a premium streaming platform like Netflix and Amazon Prime Videos.Read more
Exploiting Node.js deserialization bug for Remote Code Execution
February 9, 2017 · OpSecX
tl;dr Untrusted data passed into unserialize() function in node-serialize module can be exploited to achieve arbitrary code execution by passing a serialized JavaScript Object with an Immediately invoked function.Read more
Server Side Template Injection in Tornado
July 3, 2016 · OpSecX
Tornado is a great and easy to use Python web framework for developing dynamic web applications with ease.Read more
XSS in Instamojo Woocommerce Plugin
March 19, 2016 · OpSecX
We are using Instamojo as a payment gateway for Indian Customers. Instamojo provides a plugin that can be used with WooCommerce. To ensure our customers safety we used to do a code review and security analysis on the.Read more
OpSecX brings new Web Security Course, WebSec Ninja: Lesser Known WebAttacks
January 17, 2016 · OpSecX
OpSecX WebSecNinja: Lesser Known WebAttacks is a brand new and unique web security course that takes the learner to the next level of web security.Read more
Launching OpSecX | Security Education for Everyone
January 3, 2016 · OpSecX
We are glad to announce the launch of OpSecX, an online security education platform that provides quality and affordable security education for everyone.Read more