Skip to main content

NGINX Length Hiding Module: Does It Actually Prevent BREACH Attacks?


by Danila Vershinin, February 2, 2026

The NGINX length hiding module is often recommended for BREACH attack mitigation, but security research shows it only slows down attacks, not prevents them. Learn what actually protects against BREACH: SameSite cookies, CSRF token rotation, and proper application architecture.

Read More...

Html.Exploit.CVE_2017_11793-6336854-1 FOUND. What is it?


by Danila Vershinin, October 14, 2017

Find out how to deal with Html.Exploit.CVE_2017_11793-6336854-1 and if you are affected

Read More...

Vulnerability in the Linux kernel’s TCP stack implementation


by Danila Vershinin, August 12, 2016

Announcement of discovered vulnerability in the Linux kernel’s TCP stack implementation

Read More...