Research and Blog Posts
A library of articles to help Web Application Defenders

Hiding a nasty surprise: How attackers sneak attacks past the WAF
This resource for defenders is a current snapshot of the techniques used to sneak attacks past WAFs
Article
Critical Chrome bug CVE-2025-2783: A Balanced Analysis for Web App Defenders
This article helps web app defenders understand and respond to exploitable risk CVE-2025-2783.
Article
Decode and Defend: WAF/Proxy Tactics Against CVE-2016-5983 Java Deserialization
This post provides a pragmatic analysis for teams operating WAFs and edge proxies, focusing on evaluating the efficacy of edge controls for CVE-2016-5983
Article