Hackers exploit security testing apps to breach Fortune 500 firms

BIAS: Center
RELIABILITY: Mixed
Bleeping Computer
14:00Z

Threat actors are exploiting misconfigured web applications used for security training and internal penetration testing, such as DVWA, OWASP Juice Shop, Hackazon, and bWAPP, to gain access to cloud environments of Fortune 500 companies and security vendors. […]

Continue reading at the original source

Read Full Article at Bleeping Computer →