Congratulations to @CoreRuleSet co-lead Felipe Zipitría, winner of this year's WASPY Award! "Project Person of the Year" – you earned it.
Don't know Felipe? Read here: coreruleset.org/20231130/mee…
Congrats to the other winners Martin Knobloch and Shruti Kulkarni. And thanks to @owasp!
🎉 Exciting news! The 2024 OWASP WASPY Awards winners are here!
Big thanks to all candidates for their dedication to the Foundation.
🏆 Chapter Person of the Year: Martin Knobloch
🏆 Event Person of the Year: Shruti Kulkarni
🏆 Project Person of the Year: Felipe Zipitria
Meet the CRS team: Programming and entrepreneurship run in Jozef Sudolsky's family. When not working for his company or the @CoreRuleSet, he's in the gym or his garden. His office is his daughter's playroom. Read the portrait: coreruleset.org/20240507/mee…#waf#crs#itsecurity#owasp
I'm so happy and relieved to share that I provisionally passed my Certified Cloud Security Professional #CCSP exam today 🎉🍾💃
All the learning and hard work paid off!! Now, I'm looking forward to free time and free weekends again 🧘♀️
Valentine’s Day present from the first @CoreRuleSet chat of 2024: #CRS v4 to be released on Wednesday, February 14! In other news: due to a lack of capacity, CRS will skip this year’s Google Summer of Code. See the chat agenda with decisions here: github.com/coreruleset/corer…
This is fantastic. I started to build ModSecurity in 2002, full time in 2004. Twenty years later, it’s not only open source but open governance. I couldn’t have imagined a better outcome.
.@ModSecurity is becoming an @OWASP project!
After years in limbo, @Trustwave just announced the transition.
This is to a new life for the software! 🍾🎉
After serving as its steward for over a decade, @Trustwave has agreed to transfer the reins of the renowned open-source web application firewall (WAF) engine, ModSecurity, to the Open Worldwide Application Security Project (OWASP). Read more at owasp.org/blog/2024/01/09/Mo…
Meet the CRS team: As a South American, Felipe Zipitra has a special status in the @CoreRuleSet core team. The Uruguayan played basketball which taught him all about the value of teamwork. Read Felipe‘s portrait on the CRS blog: coreruleset.org/20231130/mee…#waf#crs#itsecurity
It’s finally here: the @CoreRuleSet Retreat 2023 in #Budapest, #Hungary! For the next week, we have a lot to discuss and to work (and to drink). Egészségére!
It’s finally here: the @CoreRuleSet Retreat 2023 in #Budapest, #Hungary! For the next week, we have a lot to discuss and to work (and to drink). Egészségére!
After a detour lasting 18 months, the CRSv4 RC2 is out.
The @OWASP#ModSecurity@CoreRuleSet team is proud to bring you detection capabilities exceeding everything else on the planet. Please test this throughly and help us with false positives.
coreruleset.org/20231026/crs…#CRS4
libModSecurity3 is affected by DoS vulnerability CVE-2023-38285. This also affects OWASP CRS / @CoreRuleSet users. Here is our take: coreruleset.org/20230802/lib…
Note: Users of the ModSec2 release line a (-> Apache) are not affected.
The #OWASP#ModSecurity@CoreRuleSet team is pleased to announce the release of #CRS3 version 3.3.5. This is a security release that mitigates CVE-2023-38199: a potential impedance mismatch vulnerability from requests with multiple Content-Type headers. coreruleset.org/20230724/crs…