Reading ASP secrets for $17,000 | Sam Curry
One of the more common vulnerabilities on ASP.NET applications is local file disclosure. If you've never developed or worked with this technology, exploiting LFD can be confusing and often unfruitful. In the following write up I describe approaching an application that ended up being vulnerable to LFD, then going on to exploit it.
Hack The Box - RedCross write-up by 0xRick : netsec
r/netsec: A community for technical news and discussion of information security and closely related topics.
VPN - a Very Precarious Narrative
* In most circumstances, VPNs do very little to enhance your data security or privacy unless paired with other changes.

* Acting as they do, and promoting commercial VPN providers as a solution to potential issues does more harm than good.

Just stick around for a bit, and I will explain everything.

Before I start, though, let me clarify that I am writing this post with non-technical, but curious people in mind. This means that I will be using simplified terms and sometimes generalize a bit. However, I can assure you that all information is still very accurate. Sometimes, using technical words is necessary to avoid this post becoming inaccurate. If you do not understand something, just read on, the next paragraph might be more apparent.

Dennis Schubert
Security Belt
A framework for improving the IT-Security of your teams
