appsec.fyi

Sources

128 application security publishers with 5+ resources on appsec.fyi, indexed cross-topic.

Browse by source

Each page collects everything we’ve curated from a given publisher across all 25 active topics. Aggregator platforms (Medium, GitHub, X, Reddit, YouTube) are excluded so the list reflects original-publisher signal.

0xn3va.gitbook.io5 resourcesAuthN, GraphQL, JWT acunetix.com8 resourcesXSS, CSRF, Deser advisories.gitlab.com17 resourcesSSRF, Deser, Secrets aikido.dev15 resourcesSupply Chain, Python, XSS akamai.com6 resourcesRCE, API Sec, JWT appsec.guide6 resourcesFuzzing, Burp appsecsanta.com5 resourcesMobile, Secrets, Python arcticwolf.com7 resourcesRCE, SSRF, JWT arstechnica.com5 resourcesSupply Chain, AI, Python arxiv.org31 resourcesAI, Fuzzing, Deser assetnote.io5 resourcesRecon, GraphQL, SSRF aws.amazon.com6 resourcesAuthZ, Supply Chain, Secrets bankinfosecurity.com7 resourcesSupply Chain, RCE betterprogramming.pub5 resourcesgolang blackhat.com5 resourcesTalks, Deser, SSTI bleepingcomputer.com49 resourcesRCE, Supply Chain, SQLi blockchain-council.org10 resourcesAI blog.doyensec.com5 resourcesAPI Sec, AuthN, Deser blog.gitguardian.com16 resourcesSecrets, Supply Chain, AI blog.golang.org5 resourcesgolang blog.logrocket.com5 resourcesgolang, GraphQL blog.talosintelligence.com5 resourcesRCE, AuthN, Supply Chain blog.trailofbits.com7 resourcesFuzzing, golang, Deser blog.zsec.uk6 resourcesXXE, RCE, API Sec book.hacktricks.xyz12 resourcesSSRF, SSTI, API Sec bugcrowd.com11 resourcesXSS, Bug Bounty, AuthN cheatsheetseries.owasp.org18 resourcesAuthN, AuthZ, SSRF checkmarx.com5 resourcesPython, GraphQL cloud.google.com7 resourcesDeser, RCE, Mobile cloudsek.com5 resourcesSSRF, Supply Chain, OSINT cobalt.io10 resourcesAPI Sec, AuthN, CSRF corneacristian.medium.com6 resourcesBug Bounty, CSRF, IDOR csoonline.com35 resourcesRCE, Supply Chain, API Sec cxodigitalpulse.com15 resourcesSupply Chain, RCE cybernews.com19 resourcesSupply Chain, RCE, API Sec cyberpress.org126 resourcesRCE, XSS, Supply Chain cyberscoop.com7 resourcesSupply Chain, AI, RCE cybersecuritydive.com8 resourcesSupply Chain, RCE cybersecuritynews.com158 resourcesRCE, XSS, SSRF cyberw1ng.medium.com5 resourcesSSRF, AuthN, Bug Bounty dailycve.com5 resourcesCSRF, AuthN, IDOR danaepp.com9 resourcesBurp, API Sec, AuthN danielmiessler.com6 resourcesBug Bounty, AI, Recon darkreading.com15 resourcesSupply Chain, RCE, XSS dl.acm.org10 resourcesDeser, Fuzzing, SQLi docs.google.com5 resourcesSSRF, Talks, API Sec escape.tech6 resourcesGraphQL, IDOR esecurityplanet.com19 resourcesSupply Chain, RCE, SSRF exploit-db.com6 resourcesSQLi, SSTI, Deser gbhackers.com135 resourcesRCE, XSS, SSRF geeksforgeeks.org5 resourcesOSINT, SSRF, SSTI genai.owasp.org5 resourcesAI, Talks gigazine.net5 resourcesSupply Chain, Fuzzing, RCE github.blog7 resourcesSupply Chain, Secrets, AuthN hackerone.com33 resourcesSSRF, JWT, AuthN hackread.com16 resourcesRCE, AI, Supply Chain helpnetsecurity.com26 resourcesRCE, Supply Chain, Secrets hkcert.org21 resourcesRCE, Python imperva.com7 resourcesGraphQL, AuthZ, CSRF infosecurity-magazine.com15 resourcesSupply Chain, RCE, AI infosecwriteups.com50 resourcesSSRF, Bug Bounty, GraphQL infoworld.com6 resourcesSupply Chain, API Sec, RCE intigriti.com27 resourcesRecon, SSRF, Bug Bounty invicti.com16 resourcesJWT, Deser, SSRF kitploit.com8 resourcesBurp, SSRF, XSS labs.detectify.com9 resourcesBug Bounty, SSRF, XSS letsdatascience.com20 resourcesAPI Sec, RCE, AI levelup.gitconnected.com12 resourcesgolang, API Sec mas.owasp.org7 resourcesMobile microsoft.com15 resourcesSupply Chain, RCE, AI msn.com18 resourcesSupply Chain, AI, Fuzzing null-byte.wonderhowto.com5 resourcesSQLi, XSS, Recon onsecurity.io5 resourcesSSTI, AuthN, RCE opensourceforu.com5 resourcesSupply Chain, SQLi osintteam.blog5 resourcesBug Bounty, OSINT, Recon owasp.org35 resourcesAuthN, AuthZ, XSS ox.security19 resourcesSupply Chain, AI, API Sec paloaltonetworks.com9 resourcesSupply Chain, API Sec, AI penligent.ai8 resourcesAuthZ, AI, Bug Bounty pentesterlab.com6 resourcesJWT, Deser, SSRF picussecurity.com5 resourcesSQLi, AuthN, RCE portswigger.net97 resourcesBurp, XSS, SSRF projectdiscovery.io6 resourcesRecon, AuthN, SSRF python.plainenglish.io5 resourcesPython, OSINT radar.offseq.com7 resourcesSSRF, CSRF rapid7.com7 resourcesRCE, SSTI, CSRF realpython.com12 resourcesPython, AuthN rescana.com29 resourcesSupply Chain, RCE, SQLi resecurity.com6 resourcesRCE, SSRF, Deser reversinglabs.com9 resourcesSupply Chain, Secrets, Fuzzing scworld.com69 resourcesRCE, Supply Chain, Secrets secnews.gr5 resourcesXSS, Bug Bounty, Deser security.snyk.io5 resourcesSSRF, SSTI, XSS securityaffairs.com28 resourcesRCE, SQLi, SSRF securityboulevard.com69 resourcesSupply Chain, RCE, SSRF securitylab.github.com5 resourcesSupply Chain, Mobile, RCE securitylabs.datadoghq.com5 resourcesSupply Chain, SQLi securityweek.com63 resourcesRCE, Supply Chain, SQLi sentinelone.com35 resourcesPython, SSRF, CSRF slideshare.net7 resourcesXSS, Talks, XXE snyk.io14 resourcesSupply Chain, JWT, Python socprime.com5 resourcesSQLi, Mobile, RCE socradar.io6 resourcesMobile, OSINT, Python sonatype.com7 resourcesSupply Chain, Python, Deser sqmagazine.co.uk8 resourcesAPI Sec, RCE, Supply Chain stackoverflow.com10 resourcesXSS, CSRF, Python stepsecurity.io7 resourcesSupply Chain systemtek.co.uk5 resourcesXSS, Python, SQLi techcrunch.com10 resourcesSupply Chain, Mobile, Bug Bounty techrepublic.com5 resourcesRCE, AI, Mobile techtimes.com5 resourcesAPI Sec, Python, RCE techzine.eu12 resourcesSupply Chain, AI, API Sec tenable.com5 resourcesSSRF, Secrets, XXE thecyberexpress.com23 resourcesRCE, Supply Chain, XSS thehackernews.com119 resourcesRCE, Supply Chain, SSRF thehackerwire.com26 resourcesRCE, SSRF, Deser theregister.com27 resourcesSupply Chain, RCE, API Sec tipranks.com13 resourcesSupply Chain trendmicro.com10 resourcesSupply Chain, API Sec, AI trufflesecurity.com5 resourcesSecrets, AuthN undercodetesting.com6 resourcesXSS, Fuzzing, IDOR unit42.paloaltonetworks.com15 resourcesAI, Supply Chain, RCE vaadata.com8 resourcesGraphQL, API Sec, AuthN whiteoaksecurity.com8 resourcesBurp, AuthZ, Bug Bounty wired.com8 resourcesBug Bounty, OSINT, AI wiz.io44 resourcesXSS, Supply Chain, RCE yeswehack.com12 resourcesRecon, Bug Bounty, Burp zeropath.com5 resourcesAuthN, SSRF, Deser