Article 1
Laravel 12 introduced a seemingly minor change: image validation now excludes SVGs by default. 🤔 Let's take a look at why this is so important!...
View ArticleArticle 0
I don't normally post JS stuff, but CVE-2025-29927 is a whole lot of fun!"it was possible to skip running Middleware, which could allow requests to skip critical checks—such as authorization cookie...
View ArticleArticle 1
Temporary URLs for file access is an essential piece of the security puzzle, which up until "recently" were only available out-of-the-box for the S3 driver in Laravel. Now you can easily generate them...
View ArticleArticle 0
Proud pentester moment: One of my clients just hit me with a @ThinkstCanary Canary Token! 🤩🐷🔑
View ArticleArticle 0
Since my security review of the Laravel Starter Kits has stalled for <reasons>, I've embarked on a new In Depth article.👉 In Depth: What Actually Is MFA? 👈What do you folks wanna know? I'll try...
View Article