What to make of the new 2021 OWASP Top 10 vulnerability rankings? The industry comments

John Leonard
clock • 7 min read
What to make of the new 2021 OWASP Top 10 vulnerability rankings? The industry comments
Image:

What to make of the new 2021 OWASP Top 10 vulnerability rankings? The industry comments

This year's Open Web Application Security Project list is out, with novel categories and a new number one

The new OWASP Top 10 list, published this month,  has a new chief villain. Move over Injection vulnerabilities, the biggest and baddest category in town is now Broken Access Control. Injection v...

To continue reading this article...

Join Computing

  • Unlimited access to real-time news, analysis and opinion from the technology industry
  • Receive important and breaking news in our daily newsletter
  • Be the first to hear about our events and awards programmes
  • Join live member only interviews with IT leaders at the ‘IT Lounge’; your chance to ask your burning tech questions and have them answered
  • Access to the Computing Delta hub providing market intelligence and research
  • Receive our members-only newsletter with exclusive opinion pieces from senior IT Leaders

Join now

 

Already a Computing member?

Login

You may also like
Sumo Logic warns of unexplained breach

Security

Tracked breach to APIs, but says customer data remains safe

clock 10 November 2023 • 1 min read
Cisco warns of actively exploited zero-day in IOS XE software

Threats and Risks

No patch yet so disable web UI on affected devices

clock 17 October 2023 • 2 min read
JumpCloud says a state-sponsored threat actor compromised its systems

Hacking

Firm says the threat actor was 'sophisticated' and 'persistent'

clock 18 July 2023 • 2 min read

More on Threats and Risks

Microsoft warns of new ransomware campaign by the Twisted Spider group

Microsoft warns of new ransomware campaign by Twisted Spider group

Uses malvertising to spread Danbot Trojan, then Cactus ransomware

John Leonard
clock 01 December 2023 • 2 min read
Google rushes out patch for Chrome zero-day with exploit available in the wild

Google rushes out patch for Chrome zero-day with exploit available in the wild

Other Chromium-based browsers are also vulnerable to the flaw in the Skia graphics library

clock 30 November 2023 • 3 min read
18,000 customers at risk of phishing attacks after security firm Otka hacked

Customers at risk of phishing attacks after hack, Okta warns

Software security firm Otka has warned that some of its 18,000 corporate and government customers have been left vulnerable to phishing attacks after hackers broke into its computer systems a month ago.

clock 30 November 2023 • 1 min read