What to make of the new 2021 OWASP Top 10 vulnerability rankings? The industry comments

John Leonard
clock • 7 min read
What to make of the new 2021 OWASP Top 10 vulnerability rankings? The industry comments
Image:

What to make of the new 2021 OWASP Top 10 vulnerability rankings? The industry comments

This year's Open Web Application Security Project list is out, with novel categories and a new number one

The new OWASP Top 10 list, published this month,  has a new chief villain. Move over Injection vulnerabilities, the biggest and baddest category in town is now Broken Access Control. Injection v...

To continue reading this article...

Join Computing

  • Unlimited access to real-time news, analysis and opinion from the technology industry
  • Receive important and breaking news in our daily newsletter
  • Be the first to hear about our events and awards programmes
  • Join live member only interviews with IT leaders at the ‘IT Lounge’; your chance to ask your burning tech questions and have them answered
  • Access to the Computing Delta hub providing market intelligence and research
  • Receive our members-only newsletter with exclusive opinion pieces from senior IT Leaders

Join now

 

Already a Computing member?

Login

You may also like
Qualys announces service to help organisations comply with UK NCSC cyber guidance

Security Technology

NCSC advises patching window of 5-7 days; UK currently stands at 15-17 days MTTR.

clock 17 April 2024 • 3 min read
Sumo Logic warns of unexplained breach

Security

Tracked breach to APIs, but says customer data remains safe

clock 10 November 2023 • 1 min read
Cisco warns of actively exploited zero-day in IOS XE software

Threats and Risks

No patch yet so disable web UI on affected devices

clock 17 October 2023 • 2 min read

More on Threats and Risks

Hackers launch brute-force attacks on business VPNs and more

Hackers launch brute-force attacks on business VPNs and more

The attacks rely on trial-and-error attempts to crack login credentials

clock 18 April 2024 • 2 min read
Palo Alto Networks patches 'critical' vulnerability under active exploitation

Palo Alto Networks patches 'critical' vulnerability under active exploitation

Volexity says a ‘spike in exploitation’ is likely

Kyle Alspach
clock 16 April 2024 • 2 min read
CISA issues emergency order on Microsoft breach by Russian hackers

CISA issues emergency order on Microsoft breach by Russian hackers

Affected bodies must take immediate action, agency says

Kyle Alspach
clock 12 April 2024 • 2 min read