Authorization • Access Control


All blog articles on the subject of Authorization • Access Control

Hannah Schneider

Published on 21.10.2021 in the category Web Application Security published.

The New OWASP Top 10 - 2021

The OWASP Top 10 - 2021 describes the ten most common security risks for web applications. They help developers implement applications securely. (read more)


Moritz Kaumanns

Published on 01.02.2021 in the category Security Advisories published.

Security Advisory: Amazon Secret Key Publicly Accessible (CVE-2020-28199)

A security vulnerability in an Amazon Pay plugin for Shopware 5 allows the unauthorized reading of the Amazon Secret Key (CVE-2020-28199). (read more)


Moritz Kaumanns

Published on 23.07.2020 in the category Communication Security published.

FIDO2 and WebAuthn: Login without a Password

FIDO2 and WebAuthn allow a secure and phishing-resistant authentication for web services in order to avoid data leakage. (read more)


Elisabeth Apicella

Published on 20.12.2018 in the category Security Advisories published.

Security Advisory: Three Findings at prescreen.io and jobbase.io

As aramido discovered, the cloud-based applicant management software of the company Prescreen had several security deficiencies. (read more)


Andreas Sperber

Published on 21.11.2018 in the category Web Application Security published.

What are the OWASP Top 10 - 2017?

The OWASP Top 10 - 2017 describes the ten most common security risks for web applications. They help developers implement applications securely. (read more)



Regina Okun

Published on 19.06.2018 in the category aramido published.

PHP Secure Coding Training: aramido launches external seminar offerings

Following the great success of the PHP Secure Coding training as an in-house seminar, the training can now also be booked as an external seminar. (read more)


Armin Harbrecht

Published on 03.03.2017 in the category Security Advisories published.

Multiple Vulnerabilities in the New CyberForum Portal

aramido found several security vulnerabilities on the CyberForum website. They show the typical dangers of websites with user-generated content. (read more)