Security News

Students Build Open Source Web-Based Threat Modeling Tool (Threatpost)
2015-04-01 19:00

Students at St. Mary's University in Canada released to open source a web-based threat modeling tool called Seasponge that they hope will provide an alternative to Microsoft's free tool.

Critical Vulnerabilities Affect JSON Web Token Libraries (Threatpost)
2015-04-01 18:58

Critical vulnerabilities exist in several JSON Web Token (JWT) libraries – namely the JavaScript and PHP versions – that could let an attacker bypass the verification step.