Blog

strongboxit

How an application firewall like Modshield SB could have saved the day

Freepik, a top-100 Alexa ranked popular website that provides access to free stock photos and design graphics, announced on Friday (21 August) that it had been subject to a major data breach due to a SQL injection vulnerability. In a statement released by the company, it is said that they immediately notified authorities of the […]
Read More
strongboxit

Installing Modshield SB from the AWS Marketplace

Step No: 1 Visit the marketplace page of the version that better suits your needs (Cloud / BYOL). Click on “Continue to Subscribe” button Step No: 2 Read and confirm that you accept the End User Licence Agreement (EULA) Step No: 3 You should see the status as “Pending” for a while when AWS processes your request, which should […]
Read More
strongboxit

Protection against API Credential Stuffing using Modshield SB Web Application Firewall

Ref: https://owasp.org/www-community/attacks/Credential_stuffing Credential stuffing is the automated injection of breached username/password pairs in order to fraudulently gain access to user accounts. This is a subset of the brute force attack category: large numbers of spilled credentials are automatically entered into websites until they are potentially matched to an existing account, which the attacker can then […]
Read More