SeanWrightSec's Avatar

SeanWrightSec

@seanwrightsec.com

Principal Application Security Engineer focused on all things #AppSec. Occasionally dabble in my own research. Also keen gamer and aspiring photographer.

1,909
Followers
124
Following
303
Posts
27.04.2023
Joined
Posts Following

Latest posts by SeanWrightSec @seanwrightsec.com

OWASP Top 10:2025 OWASP Top 10:2025

Looks like the final OWASP Top 10 (2025) has been published: owasp.org/Top10/2025/.

Based on commits, looks like this happened 5 days ago.

29.12.2025 12:24 πŸ‘ 5 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
MSN

Surprised it’s taken this long! Microsoft has finally killed off the RC4 cipher.

www.msn.com/en-gb/money/...

19.12.2025 13:15 πŸ‘ 1 πŸ” 1 πŸ’¬ 1 πŸ“Œ 0
CWE - 2025 CWE Top 25 Most Dangerous Software Weaknesses Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.

Mitre’s Top 25 list is out: cwe.mitre.org/top25/archiv...

12.12.2025 12:00 πŸ‘ 2 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

The candidate list for the OWASP Top 10 2025 list (owasp.org/Top10/2025/0...):

06.11.2025 21:59 πŸ‘ 5 πŸ” 1 πŸ’¬ 2 πŸ“Œ 0

So the release candidate has been will be released today (6 November 2025): owasp.org/www-project-...

Comments until 20 November 2025.

06.11.2025 21:57 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Holiday Hack Cybersecurity Challenge 2025 | SANS Institute Join the global cybersecurity community in the most festive and challenging event of the year! The SANS Holiday Hack Challenge cyber range offers FREE, high-quality, and super fun hands-on cybersecuri...

SANS Holiday Hack Challenge 2025 is now available!

www.sans.org/cyber-ranges...

05.11.2025 19:58 πŸ‘ 4 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0

Friendly reminder… the 2025 OWASP Top 10 should be dropping at the end of this week!

03.11.2025 18:25 πŸ‘ 5 πŸ” 2 πŸ’¬ 0 πŸ“Œ 1
Post image

Was getting confused as well, 15.7 was released, but so was macOS 26! It initially wasn't available, but is now πŸ˜†

15.09.2025 18:02 πŸ‘ 0 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0

Very true! Have that installing at this very moment as well.

15.09.2025 17:58 πŸ‘ 1 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Post image

2 update paths to go down today…

15.09.2025 17:20 πŸ‘ 3 πŸ” 0 πŸ’¬ 3 πŸ“Œ 0

You don’t have to like or agree with others. But a simple bit of humanity can go a long way.

14.09.2025 14:05 πŸ‘ 2 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

This is a really tough time of the year for me. I lost my own father 7 years ago. And while it does become easier to cope over time, it’s still difficult.
What makes it harder this time is seeing people celebrating the death of someone else’s father all because they don’t agree with their viewpoints

14.09.2025 14:05 πŸ‘ 4 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0

So this does look to have limited impact. Looks to only target cryptocurrency, and the window for downloading most of the malicious packages is only a few hours.

08.09.2025 22:17 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Hackers hijack npm packages with 2 billion weekly downloads in supply chain attack In a supply chain attack, attackers have injected malware into NPM packages with over 2.6 billion weekly downloads after compromising a maintainer's account in a phishing attack.

This is starting to look like this may have significant implications. 18 popular packages affected so far.

www.bleepingcomputer.com/news/securit...

08.09.2025 21:34 πŸ‘ 4 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Preview
The state of software development: 5 action items for AppSec teams | ReversingLabs Application security pros need to be ready to cope with security at the speed of code. Here's how to get a handle on modern software risk.

Great article by @jpmjr.bsky.social on @reversinglabs.com blog. Thank you for including my comments.

It’s going to be an interesting time ahead with AI now playing a larger role in development.

www.reversinglabs.com/blog/modern-...

20.08.2025 16:31 πŸ‘ 1 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Preview
US spy chief claims UK backdown on Apple backdoor demand : Tulsi Gabbard boasts Washington forced Blighty to drop iPhone encryption fight

I’m hoping that this is true!

www.theregister.com/2025/08/19/u...

19.08.2025 13:28 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Looks like you can import from other apps…

01.08.2025 18:12 πŸ‘ 2 πŸ” 1 πŸ’¬ 1 πŸ“Œ 0

I like the ability to sync using things like my iCloud account, not to mention the support for multiple platforms and OS’s. It also looks slick as well.

01.08.2025 18:11 πŸ‘ 0 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Preview
Authenticator app download: Get Proton Authenticator | Proton Download Proton Authenticator app for Windows, macOS, Linux, Android, and iOS. Protect your accounts with secure two-factor codes. No ads, no tracking.

Proton have released a new Authenticator app. Looks pretty cool!

proton.me/authenticato...

01.08.2025 00:17 πŸ‘ 5 πŸ” 0 πŸ’¬ 3 πŸ“Œ 2
Preview
Amazon AI coding agent hacked to inject data wiping commands A hacker planted data wiping code in a version of Amazon'sΒ generative AI-powered assistant, the Q Developer Extension for Visual Studio Code.

A good example of why understanding what the code of AI is doing.

www.bleepingcomputer.com/news/securit...

25.07.2025 22:00 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
VPN usage soars in Iran – but authorities may be trying to prevent it Proton VPN confirmed an hourly increase in sign-ups of over 1,400% starting from July 25, 2025

I’m completely shocked! Would have never expected this to happen!

www.techradar.com/vpn/vpn-priv...

25.07.2025 19:30 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
This major cybercrime forum might have just exposed all its users A leak forum did what leak forums do - but to its own users

Oh dear! What a shame… never mind 😁

The sweet taste of karma!

www.techradar.com/pro/security...

25.07.2025 18:43 πŸ‘ 5 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0

Never, totally legit 🀣

14.07.2025 20:40 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Exactly my thoughts πŸ˜‚

14.07.2025 20:40 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Where to start 😁

14.07.2025 12:00 πŸ‘ 1 πŸ” 0 πŸ’¬ 2 πŸ“Œ 0
Post image

Source: caniphish.com/blog/cyber-s...

10.07.2025 00:07 πŸ‘ 2 πŸ” 0 πŸ’¬ 0 πŸ“Œ 1
Preview
Humble Tech Book Bundle: The Pentesting & Hacking Toolkit by Packt Learn how to test your cyber defenses with the Pentesting & Hacking Toolkit by Packt. Protect yourself from cyberattacks and support charity!

Humble Bundle has an interesting bundle at the moment.

09.07.2025 18:40 πŸ‘ 4 πŸ” 2 πŸ’¬ 0 πŸ“Œ 0

Fingers crossed they see the errors of their way and improve. Sucks to be in these positions.

08.07.2025 16:37 πŸ‘ 1 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0

Yikes! That doesn’t sound good. Hope it gets sorted out.

07.07.2025 23:42 πŸ‘ 1 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0

Sorry to hear that. I hope it gets better! I would also say that often those postings are for the ideal candidate. So not always a case that you need to have everything on the job spec.

07.07.2025 22:50 πŸ‘ 1 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0